Expertise & Skills Matrix
A breakdown of technical competencies, methods, and technologies used in active engagements.
Languages & Development
- Python - Exploit scripting, custom scanner development, data parsing.
- Go (Golang) - High-performance tools, custom C2 agents, recon automation.
- C# / .NET - Red team tool adaptation, post-exploitation tooling, tradecraft.
- PowerShell / Bash - Automation, system administration, post-exploitation scripting.
- Nim / Rust - AV/EDR evasion loaders, low-level process manipulation, shellcode wrappers.
Red Teaming & Active Directory
- Active Directory - Kerberoasting, AS-REP Roasting, Delegation abuse (Constrained/Unconstrained).
- AD CS - Certificate services security auditing, ESC1-ESC8 exploitation paths.
- Lateral Movement - WMI, WinRM, PsExec, Overpass-the-Hash, Pass-the-Ticket, Cobalt Strike/Sliver routing.
- C2 Operations - Sliver, Havoc, Empire, Mythic configuration, and custom Malleable profiles.
Evasion & Defense Bypass
- API Hooking Bypass - Direct/Indirect system calls, API unhooking, custom NTDLL loading.
- EDR Evasion - Process injection (CRT, APC, Mockingjay), ETW patching, AMSI bypasses.
- Payload Obfuscation - Entropy reduction, XOR/AES shellcode encryption, UUID/MAC address encoding.
- Sandboxing - Local virtualization tests, analyzing EDR logs in controlled environments.
Web & Cloud Security
- Vulnerabilities - Advanced SQLi, SSRF (Cloud Metadata), XXE, OAuth bypasses, Race Conditions.
- Source Code Audit - PHP, Java, C#, Python vulnerability analysis in code.
- AWS Pentesting - IAM role delegation abuse, S3 exfiltration, metadata service hijacking.
- Azure Pentesting - Azure AD enumeration, application registration hijacking, KeyVault dumps.