I do all types of penetration testing, application security engineering, and vulnerability research. currently an ambassador at not the hidden wiki, writing technical content, mentoring, and running CTFs.
- offensive — web/api pentesting · osint · network recon · binary exploitation · active directory · mobile security · llm pentesting
- appsec — sast · dast · iast · secure code review · ci/cd security
- infra — docker · kubernetes · gitlab ci/cd · linux · windows · android