___    _   ____________  ____  _   ____  __________  ____________
   /   |  / | / /_  __/ / / / __ \/ | / /\ \/ /_  __/ / / / ____/ __/
  / /| | /  |/ / / / / /_/ / / / /  |/ /  \  / / / / / / / /_  / /_
 / ___ |/ /|  / / / / __  / /_/ / /|  /   / / / / / /_/ / __/ / __/
/_/  |_/_/ |_/ /_/ /_/ /_/\____/_/ |_/   /_/ /_/  \____/_/   /_/

Cybersecurity Engineer with 7+ years of experience across offensive security, DevSecOps, cloud security, and security automation. Specialized in red teaming, penetration testing, and building automated security tooling — with a growing focus on AI-driven security solutions and LLM security research. 200+ engagements delivered across enterprise, government, and financial sectors.

4 Writeups
11 Articles
57 Topics
15 Total Posts

latest

Browse all posts and writeups

2026-07-22 Click FixSocial EngineeringPayload DeliveryPhishing

How attackers abuse Clickfix for intial Access

In this post, we will go through how to set up ClickFix and see how attackers leverage it for delivering payloads.

2026-07-03 HTML SmugglingThreat EmulationAdvesary EmulationBob SmugglerPackmyPayload

HTML Smuggling for Initial Access

In this post I will demonstrate HTML smuggling attack and build an initial access delivery chain from scratch, generating an Adaptix C2 agent, crafting a convincing LNK shortcut, packing everything into an ISO container to bypass Mark-of-the-Web, embedding the ISO into a password protected archive, and wrapping it all in an OneDrive lure page..

2026-06-28 AWSSSRFCloud SecurityIMDSv1Credential Theft

Configuring and Exploiting SSRF in AWS Cloud Environments

In this post I walk through how to configure a vulnerable AWS environment from scratch, deploy a custom banking application with multiple SSRF injection points, and exploit the Instance Metadata Service (IMDS) to steal live IAM credentials.

2026-06-25 red-team active-directoryGCP cloud-securityERTLRBCDkerberos delegation

Lab Review Extreme Red Team Laboratories CALIPENDULA

CALIPENDULA is an Extreme Red Team Lab that simulates a hybrid GCP and Active Directory breach scenario, pushing you through cloud IAM enumeration, service account chaining, RBCD relay attacks, multi-hop tunnelling in a segmented network.

2026-05-29 Intial AccessRed TeamActive DirectoryLateral MovementTunnelling

Lab Review Extreme Red Team Laboratories MAILSERVICE

MAILSERVICE is a multi-domain Active Directory lab that covers the full attack chain. Initial access via mail server abuse, credential extraction, network pivoting, cross-domain trust exploitation, MSSQL privilege escalation, Kerberos delegation abuse, and DCSync.

2026-05-03 spring-boot-actuatoractuator-exploitjava-pentestingsecurity-researchmisconfigurations

Spring Boot Actuator A Closer Look at the Attack Surface

In this post I walk through how an exposed /actuator/heapdump endpoint becomes the starting point for extracting database credentials, payment keys, AML platform secrets, and live session tokens.

2026-04-22 USB Rubber DuckyRed TeamEvasionHacker gadgetsIntial Access

Weaponizing the Rubber Ducky with Adaptix C2 : Part 2

In Part 2 of the Hak5 Toolkit series, We will walktrough hor to chain together an AMSI bypass, a Constrained Language Mode bypass, and shellcode obfuscation to achieve in-memory code execution all delivered via the USB Rubber Ducky.

2026-04-19 Intial AccessRed TeamPhysical SecurityHacker gadgets

Getting Initial Access with USB Rubber Ducky + Adaptix C2

A walkthrough of USB Rubber Ducky from USB to Shell and Chaining with Adaptix C2 for Initial Access.

2026-04-12 artificial-intelligenceappsecautomationbug-bounty

Hooking Claude into Burp Suite with MCP

A walkthrough of connecting Burp Suite to Claude using the Model Context Protocol.

2025-09-23 application-securityappsecdevsecopsred-teaming

Exploiting a Banking Playground - Vulnerable Bank Application

A walkthrough of exploiting a purposely vulnerable banking application, replicating common issues encountered during real-world security assessments including SQL injection, mass assignment, JWT forgery, and business logic flaws.

2025-05-08 hak5lan-turtleinitial-accessred-teaming

Plug & Pwn Chronicles - LAN Turtle

A hands-on guide to deploying the Hak5 LAN Turtle for covert network access during Red Team engagements, covering setup, reverse SSH tunneling, and pivoting with ProxyChains.

2025-03-03 htbwindowsprivesc MEDIUM

HackTheBox - Forest

Windows AD box - AS-REP Roasting, BloodHound ACL abuse, DCSync with Cobalt Strike, and WriteDACL exploitation.

2025-02-16 htbwindowshackthebox-walkthroughprivilege-escalationactive-directory EASY

HackTheBox: Cicada

Walkthrough for the HackTheBox Cicada machine, involving RID brute-forcing, SMB enumeration, credential discovery, and privilege escalation via SeBackupPrivilege abuse to dump SAM hashes.

2025-01-20 htbwindowsprivesc MEDIUM

HackTheBox - Manager

Windows AD box - RID cycling, MSSQL exploitation, AD CS ESC7 attack for privilege escalation to Domain Admin.

2025-01-20 htbwindowshackthebox-walkthroughactive-directory MEDIUM

HackTheBox: Administrator

Walkthrough for the HackTheBox Administrator machine, a Windows Active Directory box.

root@blog:~# No matching posts found.

ESC