Ngawang Sherpa
Offensive security researcher & cybersecurity enthusiast. Exploring exploit development, malware analysis, and network defense with AI as a practical edge.
WHO AM I
Bridging the gap between Silicon and Security.
I am Ngawang Sherpa, a cybersecurity enthusiast and offensive security researcher. My work lives at the crossroads of offensive security and applied AI — using automation and intelligent tools to sharpen penetration testing, malware analysis, and network defense.
From reverse engineering binaries to building YOLO-based detection systems, I'm driven by the challenge of understanding how systems break — and how to harden them. AI is my edge, not my identity.
Offensive Security
Malware Analysis | Exploit Research | Penetration Testing
Applied AI
Security Automation | Object Detection | LLM-assisted Analysis
ARSENAL
Security Tools & Skills
Offensive Security
- Malware Analysis & Development
- Reverse Engineering & Binary Analysis
- Penetration Testing & Exploit Research
- Network Defense & Firewall Architecture
- Phishing Simulation & Social Engineering
Applied AI for Security
- YOLO-based Object Detection
- AI-assisted Malware & Spam Analysis
- LLM-powered Security Automation
- Intelligent Surveillance Systems
JOURNEY
My Story So Far
Security Research Begins
Started deep-diving into low-level programming — C/C++ and Assembly — with a focus on how software vulnerabilities arise and how to exploit them ethically.
First AI & IoT Projects
Built VONBOT — a Telegram-integrated robotic claw agent, and MILEX — a fully local CLI AI agent powered by Ollama. Bridging hardware, AI, and automation.
Global IOT Nepal Workshop
Completed an intensive 4-month program covering Cybersecurity, AI, and ML. Graduated with an A — Excellent grade. Hands-on experience with real-world attack simulations and defensive tooling.
Cisco Networking Academy Certified
Earned dual Cisco credentials: Introduction to IoT and Introduction to Cybersecurity. Strengthened understanding of network architecture, device security, and threat mitigation.
Building & Researching
Actively developing advanced security tools, AI automation pipelines, and LLM agents. Open to collaboration, research opportunities, and challenging projects.
CREDENTIALS
Certifications Achieved
Cybersecurity ADBI E-Learning
Successfully completed the Cybersecurity ADBI E-Learning certification.
Cyber Security, AI, and ML Workshop
Completed an intensive 4-month workshop covering Cyber Security, Artificial Intelligence, and Machine Learning by Global IOT Nepal (Grade: A - Excellent).
Introduction to IoT
Exploration of the Internet of Things, covering network architecture, device security, and smart system integration.
Introduction to Cybersecurity
Foundational certification covering essential security principles, threat mitigation, and network defense strategies.
LATEST WORKS
Featured Projects
Custom Malware Development
Research project focused on understanding attack vectors, binary exploitation, and developing defensive countermeasures.
Firewall & Surveillance
Enterprise-grade firewall combined with an intelligent camera surveillance system.
Phishing Simulation
Comprehensive simulation platform to test and educate users on sophisticated attacks.
VONBOT
Open claw-like agent that executes remote tasks via Telegram integration.
CLI Agent (MILEX)
LLM-powered CLI tool for security automation and agentic workflows. Applied AI for offensive security research.
Spam Detection System
NLP-based classification system for real-time high-accuracy message filtering.
YOLO Object Detection
Real-time security object detection using YOLOv8 for professional applications.
n8n AI Chatbot
Workflow automation chatbot for security operations and alert triage. Applied AI for SOC and incident response pipelines.
Metasploitable Attack
End-to-end penetration test against Metasploitable2 — exploiting VSFTPd, Samba, UnrealIRCd, and more using Metasploit Framework.
COMMON QUESTIONS
Frequently Asked Questions
What kind of cybersecurity work do you do?
I'm a cybersecurity enthusiast focused on offensive security. My core areas include malware analysis, exploit development, penetration testing, reverse engineering, firewall architecture, and phishing simulation.
When do you use AI in security work?
As a practical edge. I apply AI and machine learning selectively — for YOLO-based object detection, spam classification, LLM-assisted analysis, and automation pipelines. I believe AI should amplify cybersecurity fundamentals, not replace them.
Are you available for hire or collaboration?
Yes — currently open to opportunities. I'm available for freelance projects, security audits, research collaborations, and full-time roles in offensive security and applied AI. I work remotely from Kathmandu, Nepal.
Where are you based and do you work remotely?
I'm based in Kathmandu, Nepal. I'm available for remote collaboration globally and have experience with international security research and AI projects.
What makes your projects unique?
My work bridges offensive security with applied AI — combining exploit research with intelligent automation. From reverse engineering to YOLO-based surveillance, every project has strong technical depth and practical security value.
STATUS
Open to Opportunities
Open to freelance projects, security audits, research collaborations, and full-time roles in offensive security and applied AI. Based in Kathmandu, Nepal — available remotely.
Hire MeGET IN TOUCH
Let's Collaborate
Open to security audits, research collaborations, exploit research, or applied AI security projects.