Khizar ALi Shah
Β a.k.a Β eros
π¨βπ» Hardware Penetration Tester at HIRG
π Hardware and Embedded Systems Pentester
π οΈ Reverse Engineering Enthusiast
π Passionate about Low-Level Development + Blockcahin Web 3.0 & Security
π Education
π Bachelors in Cybersecurity (2023 - 2027) β Air University
π Intermediate β Govt Degree College
π Achievements & Notable Work
- IoT Security Analysis: Conducted security Research on CAN BUS implementing Digital Twin providing solutions to the shorcomings in AutoMobiles (Submitted for Publishhing).
- Firmware Reverse Engineering: Discovered vulnerabilities in embedded firmware & secured supply chain processes.
- Hardware Pentesting: Performed key fob relay attacks & embedded system penetration testing.
- CTF Challenge Development: Designed & deployed security challenges using Docker & CTFd.
- Linux & Anonymization: Developed a project that transforms Linux commands into a TOR network client.
- ShellCode Process Injector: Developed an educational Shell Code Process Injector.
- GDrive 3.0 : Developed an advanced cloud storage solution that seeks to address the shortcomings of traditional centralized platforms such as, Google Drive by leveraging the power of Blockchain.
π CTF Competitions
- Top 10 in Ignite CTF - Team Hashash
- Top 5 Air Range Phase - Solo (eros98)
π§ Skills & Expertise
- IoT Security & Embedded Systems (Firmware security, Bluetooth security, MCU encryption)
- Reverse Engineering & Low-Level Development (ARM Assembly, Binary Analysis, Firmware Extraction)
- Cryptography & Secure Boot Implementations
- CTF Challenge Development & Exploit Research
- Linux Security & TOR Network Integration
- Programming: C++, React Native, Python, ARM Assembly, ESP-IDF, FreeRTOS
- Network Protocols: MQTT, HTTP, SSL/TLS, Radio Security
π Projects & Research
- IoT Security Analysis: Conducted security Research on CAN BUS implementing Digital Twin providing solutions to the shorcomings in AutoMobiles (Submitted for Publishhing).
- ESP32 Secure IoT System: Designed firmware with AWS IoT integration, SSL/TLS security, and OTA updates.
- Graph Visualizer Implemented BFS, DFS, and Dijkstra Algorithm to traverse nodes with visuals and user control
- Automated TOR Command Routing: Built a system that anonymizes Linux commands via the TOR network.
- ShellCode Process INjector: Educational 64 bit masm Shell code Process Injector.
- GDrive 3.0 : Developed an advanced cloud storage solution that seeks to address the shortcomings of traditional centralized platforms such as, Google Drive by leveraging the power of Blockchain.
π― Currently Working On
- IoT Security Freelancing: Providing security analysis, firmware development, and embedded security solutions.
- Mobile App Development: Building and Developing Mobile Applications in React Native.
- Rust Development: Expanding expertise in secure and efficient system programming.
- Advanced Hardware Pentesting Techniques
π« Let's Connect
π LinkedIn: https://www.linkedin.com/in/khizar-ali-shah-410214233/
π© Email: khizaralishah938@gmail.com π Portfolio: eros938.github.io
π‘ Always learning, always building, always breaking!