___    _   ____________  ____  _   ____  __________  ____________
   /   |  / | / /_  __/ / / / __ \/ | / /\ \/ /_  __/ / / / ____/ __/
  / /| | /  |/ / / / / /_/ / / / /  |/ /  \  / / / / / / / /_  / /_
 / ___ |/ /|  / / / / __  / /_/ / /|  /   / / / / / /_/ / __/ / __/
/_/  |_/_/ |_/ /_/ /_/ /_/\____/_/ |_/   /_/ /_/  \____/_/   /_/

Cybersecurity Engineer with 7+ years of experience across offensive security, DevSecOps, cloud security, and security automation. Specialized in red teaming, penetration testing, and building automated security tooling — with a growing focus on AI-driven security solutions and LLM security research. 200+ engagements delivered across enterprise, government, and financial sectors.

4 Writeups
9 Articles
48 Topics
13 Total Posts

latest

Browse all posts and writeups

2026-06-28 AWSSSRFCloud SecurityIMDSv1Credential Theft

Configuring and Exploiting SSRF in AWS Cloud Environments

In this post I walk through how to configure a vulnerable AWS environment from scratch, deploy a custom banking application with multiple SSRF injection points, and exploit the Instance Metadata Service (IMDS) to steal live IAM credentials.

2026-06-25 red-team active-directoryGCP cloud-securityERTLRBCDkerberos delegationtunnelingevasion PetitPotamlateral-movementassumed-breachhybrid-cloudIAM service-accountssecret-manager

Lab Review Extreme Red Team Laboratories CALIPENDULA

CALIPENDULA is an Extreme Red Team Lab that simulates a hybrid GCP and Active Directory breach scenario, pushing you through cloud IAM enumeration, service account chaining, RBCD relay attacks, multi-hop tunnelling in a segmented network.

2026-05-29 Intial AccessRed TeamActive DirectoryLateral MovementTunnelling

Lab Review Extreme Red Team Laboratories MAILSERVICE

MAILSERVICE is a multi-domain Active Directory lab that covers the full attack chain. Initial access via mail server abuse, credential extraction, network pivoting, cross-domain trust exploitation, MSSQL privilege escalation, Kerberos delegation abuse, and DCSync.

2026-05-03 spring-boot-actuatoractuator-exploitjava-pentestingsecurity-researchmisconfigurations

Spring Boot Actuator A Closer Look at the Attack Surface

In this post I walk through how an exposed /actuator/heapdump endpoint becomes the starting point for extracting database credentials, payment keys, AML platform secrets, and live session tokens.

2026-04-22 USB Rubber DuckyRed TeamEvasionHacker gadgetsIntial Access

Weaponizing the Rubber Ducky with Adaptix C2 : Part 2

In Part 2 of the Hak5 Toolkit series, We will walktrough hor to chain together an AMSI bypass, a Constrained Language Mode bypass, and shellcode obfuscation to achieve in-memory code execution all delivered via the USB Rubber Ducky.

2026-04-19 Intial AccessRed TeamPhysical SecurityHacker gadgets

Getting Initial Access with USB Rubber Ducky + Adaptix C2

A walkthrough of USB Rubber Ducky from USB to Shell and Chaining with Adaptix C2 for Initial Access.

2026-04-12 artificial-intelligenceappsecautomationbug-bounty

Hooking Claude into Burp Suite with MCP

A walkthrough of connecting Burp Suite to Claude using the Model Context Protocol.

2025-09-23 application-securityappsecdevsecopsred-teaming

Exploiting a Banking Playground - Vulnerable Bank Application

A walkthrough of exploiting a purposely vulnerable banking application, replicating common issues encountered during real-world security assessments including SQL injection, mass assignment, JWT forgery, and business logic flaws.

2025-05-08 hak5lan-turtleinitial-accessred-teaming

Plug & Pwn Chronicles - LAN Turtle

A hands-on guide to deploying the Hak5 LAN Turtle for covert network access during Red Team engagements, covering setup, reverse SSH tunneling, and pivoting with ProxyChains.

2025-03-03 htbwindowsprivesc MEDIUM

HackTheBox - Forest

Windows AD box - AS-REP Roasting, BloodHound ACL abuse, DCSync with Cobalt Strike, and WriteDACL exploitation.

2025-02-16 htbwindowshackthebox-walkthroughprivilege-escalationactive-directory EASY

HackTheBox: Cicada

Walkthrough for the HackTheBox Cicada machine, involving RID brute-forcing, SMB enumeration, credential discovery, and privilege escalation via SeBackupPrivilege abuse to dump SAM hashes.

2025-01-20 htbwindowsprivesc MEDIUM

HackTheBox - Manager

Windows AD box - RID cycling, MSSQL exploitation, AD CS ESC7 attack for privilege escalation to Domain Admin.

2025-01-20 htbwindowshackthebox-walkthroughactive-directory MEDIUM

HackTheBox: Administrator

Walkthrough for the HackTheBox Administrator machine, a Windows Active Directory box.

root@blog:~# No matching posts found.

ESC