Senior Penetration Tester with 4+ years in offensive security and 80+ projects delivered, specializing in internal infrastructure and Active Directory β mapping attack paths, escalating privileges, and driving assessments to full domain compromise. My work spans finance, enterprise, and tech/SaaS environments, extending to external engagements β Web, Wi-Fi, Phishing / Social Engineering β when the scope calls for it. I also run APT attack simulations, train SOC teams to detect real-world TTPs, and work the Purple Team side. Every engagement ends with clear, prioritized, fix-focused reporting.
- π’ Internal Infrastructure β My main focus: Active Directory, FreeIPA, Linux, CI/CD, Kubernetes & IoT devices
- π Web & External β External-perimeter breach testing & internal corporate web services
- π‘ Wi-Fi β Wireless network security testing
- π£ Phishing & Social Engineering β Simulated phishing across multiple vectors (email, Telegram & more)
| Project | Description |
|---|---|
| π§ Redposture | Red-Team CLI for auditing exposed services |
| π§© OpenAPI-Sampler | Burp extension β OpenAPI/Swagger |
| π gdns2tcp | File transfer and reverse SOCKS5 tunnel over DNS |
| π‘οΈ ForgeVeil | Build & obfuscation framework for C/C++ and C#/.NET |
βοΈ Red Team & Pentest
π» Languages & Scripting
