Senior Cyber Security Consultant · Red Team & Offensive Security Researcher
[ CVEs & Research ] • [ Field Notes ] • [ Projects ] • [ Contact ]
I am a Senior Cyber Security Consultant at PwC Turkey, leading Red Team engagements, adversary simulations, and advanced vulnerability research. Over 13+ years in offensive security, my work spans low-level binary exploitation, cloud & identity security, mobile internals, and AI agent threat modeling.
I actively contribute to global application security standards and develop open-source offensive & defensive security frameworks.
| Project | Description | Technology |
|---|---|---|
mcpbait |
AI Agent & MCP Red Teaming framework proving whether agents can be hijacked via rogue servers. 13 local attack modules, in-process canary exfiltration, and automated resilience scoring. | Python · MCP · AI Security |
evilcorp-ios |
Modern intentionally vulnerable iOS security benchmark featuring 30 hands-on challenges mapped to OWASP MASVS v2 & CWE, with embedded Frida scripts and live logging console. | Swift · SwiftUI · MASVS v2 |
driftnet2 |
High-performance kernel-level network sniffer and credential extractor. Features eBPF/XDP in-kernel packet capture on Linux, libpcap fallback, 9 protocol parsers, and dual red/blue audit modes. | Go 1.24+ · eBPF · XDP · pcap |
ghostlink |
Surgical multi-channel Out-of-Band (OOB) data exfiltration & covert C2 framework in Go. Features 9 covert channels, Forward Error Correction (FEC), and dead-drop mode. | Go 1.21+ · C2 · Covert Channels |
PGP Fingerprint : FF0A 7D83 6751 CCE3 F9CC F574 FCF8 39FB 7F00 4626
GPG Key ID : 5FDB257F4AAE8C3F
Signed Comms : contact@jankesec.com
Website : https://jankesec.com
All research, field notes, and code releases are cryptographically signed with GPG.