Ken Sager

Senior Information Security Analyst

Flagstaff, Arizona, United States
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

👤
Senior
Ken Sager is a Senior Information Security Analyst with 11 years of hands-on experience across offense, defense, incident response, and tooling. Based in Flagstaff, he blends practical exploit development and bug hunting with defensive operations, contributing Metasploit modules and protocol-specific crackers (notably RAdmin2.x for THC-Hydra) as well as improvements to cryptographic tooling like SJCL. He has a knack for filling gaps with compact, effective code—from WiFi Pineapple modules and a Bash Bunny password cracker to a Python Apache config parser—and often turns playful experiments into reusable security utilities. Comfortable across low-level protocol work and web application exploits, Ken pairs creative curiosity with disciplined engineering to improve both attack and defense toolchains.
code11 years of coding experience
github-logo-circle

Github Skills (23)

json10
javascript10
md510
xslt10
meta10
web-application-security10
cracking10
exploit10
bruteforce10
network-security10
meta-framework10
metasploit10
c119
windows9
http9

Programming languages (8)

PowerShellC#CJavaScriptPerlHTMLRubyPython

Github contributions (5)

github-logo-circle
vanhauser-thc/thc-hydra

Nov 2016 - Jul 2017

hydra
Role in this project:
userSecurity Engineer
Contributions:13 commits, 1 PR, 1 comment in 7 months
Contributions summary:Ken primarily contributed to the `thc-hydra` repository by implementing and refactoring code related to a specific cracking module: RAdmin 2.x. Their work included adding functionality to communicate with the RAdmin server, incorporating encryption using a password key and the Twofish cipher, and adapting the MD5 hashing algorithm. The user also focused on improving memory management, and correcting potential buffer issues to enhance code stability.
bruteforcerpassword-crackingpentestbruteforcingbrute-force-attacks
rapid7/metasploit-framework

Oct 2016 - Oct 2016

Metasploit Framework
Role in this project:
userSecurity Engineer
Contributions:23 reviews, 7 commits, 6 PRs in 20 days
Contributions summary:Ken primarily contributes to a security-focused Metasploit module, specifically developing an exploit for a vulnerability in Ektron CMS. The commits demonstrate the user's understanding of web application vulnerabilities, including XSLT injection, and their ability to translate these vulnerabilities into functional Metasploit modules. Contributions encompass the full cycle, from initial exploit implementation to subsequent refinements, bug fixes, and documentation.
metasploitmetasploit-framework
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial
Ken Sager - Senior Information Security Analyst