I'm icedracon, a cybersecurity specialist and open-source developer. I work across SOC and incident response, malware analysis, and authorized security assessment (Active Directory, web, and Android).
I build mostly in Rust. I'm especially interested in Windows identity, protocol engineering, and producing evidence that someone else can check.
These are my practice areas. Not every project below implements all of them.
|
Active Directory assessment, built around evidence. Open-source Rust CLI for directory assessment and structured reporting. A possible finding is not proof: capability support and open validation work are tracked in the validation ledger. |
| Area | Repositories |
|---|---|
| 🟢 Identity & cryptography | kerbcore · ntlmssp · dpapi-ng |
| 🟠 Transport & encoding | smb2-client · dcerpc · ms-ndr |
| 🟣 Windows evidence & access | windows-eventlog-native · windows-sddl · ad-access |
| 🔵 Native interfaces | win32-min |
ECHO: a pixel-art desktop companion. It's where I explore product design, animation, and local-first software.
Important
Scope before action. Explicit authorization and clear boundaries.
Tip
Evidence before conclusions. Observation, inference, and proof stay separate.
Note
Clarity before noise. Focused tools, readable reports, reusable components.
CYBERSECURITY / OPEN SOURCE / BUILT WITH INTENT



