Expertise & Skills Matrix

A breakdown of technical competencies, methods, and technologies used in active engagements.

Languages & Development

  • Python - Exploit scripting, custom scanner development, data parsing.
  • Go (Golang) - High-performance tools, custom C2 agents, recon automation.
  • C# / .NET - Red team tool adaptation, post-exploitation tooling, tradecraft.
  • PowerShell / Bash - Automation, system administration, post-exploitation scripting.
  • Nim / Rust - AV/EDR evasion loaders, low-level process manipulation, shellcode wrappers.

Red Teaming & Active Directory

  • Active Directory - Kerberoasting, AS-REP Roasting, Delegation abuse (Constrained/Unconstrained).
  • AD CS - Certificate services security auditing, ESC1-ESC8 exploitation paths.
  • Lateral Movement - WMI, WinRM, PsExec, Overpass-the-Hash, Pass-the-Ticket, Cobalt Strike/Sliver routing.
  • C2 Operations - Sliver, Havoc, Empire, Mythic configuration, and custom Malleable profiles.

Evasion & Defense Bypass

  • API Hooking Bypass - Direct/Indirect system calls, API unhooking, custom NTDLL loading.
  • EDR Evasion - Process injection (CRT, APC, Mockingjay), ETW patching, AMSI bypasses.
  • Payload Obfuscation - Entropy reduction, XOR/AES shellcode encryption, UUID/MAC address encoding.
  • Sandboxing - Local virtualization tests, analyzing EDR logs in controlled environments.

Web & Cloud Security

  • Vulnerabilities - Advanced SQLi, SSRF (Cloud Metadata), XXE, OAuth bypasses, Race Conditions.
  • Source Code Audit - PHP, Java, C#, Python vulnerability analysis in code.
  • AWS Pentesting - IAM role delegation abuse, S3 exfiltration, metadata service hijacking.
  • Azure Pentesting - Azure AD enumeration, application registration hijacking, KeyVault dumps.