Dectrax
Active Research · Available for security engineering & sync
(01) INTRO

MD Sadman
Shovik

Founder, security researcher, and engineer.

I work on cybersecurity systems, threat research, and the engineering problems behind active defense and threat intelligence.

MD Sadman Shovik
Dhaka, Bangladesh
(02) ABOUT

Understanding how systems break to build better defenses.

I am a security researcher and engineer. My work focuses on active cyber deception, honeypot telemetry ingestion, edge API proxy architecture, and vulnerability research.

Defensive security often suffers from an overwhelming volume of log data that creates analyst fatigue without delivering clear signal. I focus on building systems where interaction produces absolute certainty—eliminating false alarms and turning adversary activity into actionable telemetry.

(03) CURRENTLY

Current focus

Researching

AST sandbox execution escapes, parser type mismatches, and edge API threat routing.

Building

Distributed honeypot telemetry pipelines and HMAC-SHA256 authenticated ingestion mechanisms.

Exploring

Deceptive endpoint state synthesis and dynamic External Dynamic List (EDL) enforcement integration.

(04) AREAS OF WORK

Technical domains

01

Security Research

Vulnerability analysis, OS execution path dissection, and responsible disclosure.

02

Cyber Deception

Distributed honeypot networks, decoy endpoints, and zero-false-positive signal traps.

03

Threat Intelligence

HMAC telemetry ingestion models, threat signal enrichment, and dynamic enforcement lists.

04

Security Engineering

Edge-native reverse proxies, API schema validation, and system surface hardening.

05

Distributed Systems

Low-latency telemetry pipelines, edge worker routing, and queue-based data processing.

(05) RESEARCH & WRITING

Selected publications & notes

Research Portal
Technical Note·Aug 2026·DataCite DOI: 10.5281/zenodo.21909087

DentiGrid: From Distributed Cyber Deception to Automated Threat Intelligence and Enforcement

Threat Advisory·2026·Analysis of RTF document parsing bypass and WebDAV loader staging

APT28 Weaponizes Microsoft Office CVE-2026-21509

Vulnerability Analysis·2026·Sandbox sanitization escapes via TypeScript AST evaluation vectors

Critical n8n Flaw CVE-2026-25049: System Command Execution

(06) PRINCIPLES

Engineering beliefs

01

Understand the system before attempting to secure it.

02

False alarms destroy operational clarity; signal certainty enables action.

03

Defensive infrastructure should adapt dynamically to adversary interaction.

04

Public research strengthens the ecosystem; commercial execution requires rigor.

(07) AFFILIATION

Founder & CEO, Dectrax

I founded Dectrax to turn offensive research into high-fidelity active defense infrastructure, zero-trust edge reverse proxies, and honeypot platforms for security teams.

(08) CONNECT

Let's connect.

For security research, technical discussions, or inquiries, reach out directly.