Skip to content
Hwat Sauce avatarhwat.sauce
~/about.mdx

$ whoami && cat about.mdx

Muhammad Abdullah aka Hwat Sauce

_

About

Muhammad Abdullah aka Hwat Sauce


Creative, passionate, and self-taught individual with a love for Offensive Security, Penetration Testing, Red Teaming, Reverse Engineering, CTFs and Little bit of Crypto. Willing to work with others in the hopes of learning new things and creatively providing solutions to complex problems and collaborating with them.

By day, I'm a coffee-fueled coder and nerd, hammering out lines of code like there's no tomorrow. But when the sun sets, the real fun begins. I don my virtual cape, pull on my digital gloves, and dive deep into the cyber-verse. I'm not just a hacker — I safeguard the digital landscape.

I dance through encryption like it's a rhythm game, always two steps ahead of the cyber crooks. Don't worry, though — I mostly focus on keeping things secure.

In this age of digital goldmines, I'm the silent protector, watching over your data while you sleep. If there's a breach to be patched or a botnet to be busted, you can count on me. So if you need a partner in code or just someone to talk shop about the latest infosec trends, I'm your go-to. Here's to being a keyboard ninja by night and a security enthusiast by day!

Skills#

  • Programming Languages: Python, C++, C#, Java, Bash, and Assembly.
  • Tools & Frameworks: Docker, Metasploit, Burp Suite, Nessus, and Nmap.
  • Platforms: Linux, Windows, AWS, GCP, Azure, and Cloudflare.
  • Blogging: As a hobby, I periodically blog about cybersecurity. You can find my posts on Medium.

Experience#

Education#

Certifications#

Publications:#

Achievements#

Projects#

  • DeepTrace: DeepTrace is an Internet Protocol Detail Record (IPDR) system that captures, parses, and visualizes network traffic data at flow level. It supports both offline PCAP file analysis and real-time packet capture, with a multi-layer security analysis engine capable of detecting 23 distinct attack types.
  • pathhound-mcp: An MCP (Model Context Protocol) server that lets an LLM reason over an Active Directory attack graph already collected by BloodHound — shortest paths to Tier 0, blast radius from a principal, the highest-leverage choke points to remediate, and defender-facing remediation text — with every action scoped to an authorized engagement and logged.
  • ActiveDecoy: An automated ITDR (Identity Threat Detection and Response) framework designed to orchestrate and deploy believable Active Directory honey-objects for proactive lateral movement detection.
  • GPO-Audit: GPO-Audit audits Microsoft Group Policy Object (GPO) reports exported via Get-GPOReport (HTML or XML). It focuses on identifying common hardening gaps, risky delegation, and unresolved (orphaned) security principals, and it can export results and compare drift against a baseline.
  • HeepHound: HeapHound is a Python-based tool built with my dear friend Muhammad Munib and Radeel Ahmed for analyzing Java heap dump files (.hprof) to extract sensitive data, assess risks, and generate forensic reports. It identifies credentials, tokens, and other artifacts using built-in heuristics, producing reports in JSON, HTML, and text formats. Ideal for security investigations, malware analysis, and incident response.
  • NetEye: Net-Eye is an all-in-one Python-based network reconnaissance tool that detects live hosts, scans ports, grabs banners, resolves DNS, performs GeoIP lookups, and runs detailed Nmap scans. It also identifies known vulnerabilities based on discovered services, helping users assess and secure their networks effectively.
  • hwatlib: A practical pentesting and exploitation python library with wrappers for recon, web enumeration, reverse shells, and privilege escalation.
  • Blockchain Implementation: Developed a Java-based blockchain with features like user authentication, transaction tracking, and dynamic coin rate fluctuation. This project was a collaborative effort with Muhammad Munib, [Radeel Ahmed]

Additional Experiences#

Contact Me#