Eigenguard
Signature rules fused with machine learning, so known signatures and novel attacks get caught in the same pass.
Computer Engineering student building systems, exploring security, and thinking several moves ahead.
I approach cybersecurity the same way I approach chess:
1…Nf6Network Security, Vulnerability Assessment, Penetration Testing, Traffic Analysis, Threat Detection, Intrusion Detection (IDS), Reconnaissance, Phishing Simulation
Wireshark, Nmap, Scapy, Metasploit, Linux/Unix, Git
AES, RSA, Digital Signatures, Secure Key Management
TCP/IP, DNS, HTTP/HTTPS, UDP
Python, SQL, PostgreSQL, JavaScript, HTML/CSS, Scikit-learn (Anomaly Detection, Classification)
React, REST APIs, Responsive Web Development, Deployment
English, Nepali, Hindi
Enumeration, exploitation, and a flag recovered before the clock did.
Kathmandu University championship. Position, candidates, calculation.
B.E. Computer Engineering, 2022 — 2027 (expected).
Packet analyzer throughput, 7.4× over the baseline. p99 442 μs.
Eigenguard — against 0.999 on a random split. Evaluation design matters.
Signature rules fused with machine learning, so known signatures and novel attacks get caught in the same pass.
A multithreaded capture pipeline that stays responsive under load — 8,200 packets per second with live alert rules.
Simulated phishing campaigns that measure what employees actually click — and what they report.
AES for the bytes, RSA for the key — one-command confidentiality for images and media.
A live site for a real restaurant — from first sketch to production traffic, designed and maintained end-to-end.
Chronological record — education, competitions, internships and the projects that came out of them.
Started my Computer Engineering degree in Dhulikhel, Nepal. Coursework that shaped everything since: Cryptography, Information Security, Computer Networks, Operating Systems and Data Structures & Algorithms.
Took first place in a Capture The Flag competition — enumeration, exploitation and a flag recovered before the clock did. It was the moment "I read the docs" turned into "I read the traffic".
Remote internship working on network defense and penetration testing. Analysed TCP, UDP, HTTP and DNS traffic with Wireshark and custom scripts, practised reconnaissance and vulnerability assessment, and applied symmetric and asymmetric cryptography on real lab targets.
Built a multithreaded capture pipeline that keeps a GUI honest under load. Removing redundant serialization bought a 7.4× throughput jump and fixed a 0.500 precision regression on the alert rules.
Designed a hybrid IDS for CICIDS2017 traffic, benchmarked classifiers, and added an SSH honeypot that captures attacker credentials alongside a React dashboard. The leave-one-tool-out result (0.40 recall vs 0.999 random-split F1) was the most useful number I learned all year.
A hybrid encryption CLI: AES protects the bytes, RSA protects the key. Automatic key pair generation and one-command workflows.
Designed, deployed and maintain a responsive website for a real restaurant — owning it from sketch to production.
Third place in the inter-department chess championship. Position evaluation, candidate moves, calculation — the same disciplined loop I bring to threat modelling.
Position evaluation, candidate moves, calculation — the same disciplined loop I bring to threat modelling.
Every section has a square. Click one to jump — start with e4 if you want the opening move.
Read the docs. Then read the traffic.
Every number earns its place.
Hypothesis, benchmark, result.
Assume the opponent is already moving.
The position never stops changing.
Internships, security work, collaborations, or a strong game of chess — the board is open.
neupaneaayush296@gmail.com