Offensive security. I break things methodically and write about it.
- Pentesting methodology, AD exploitation, network pivoting
- Python and Bash tooling
- Currently pursuing CWES and CRTO
- ffuffer — Build ffuf commands from raw HTTP requests — like sqlmap -r
- recon_dns — Passive DNS recon + crt.sh subdomain discovery + HTTP probing
- xss-c2 — Lightweight XSS Command & Control framework for penetration testers.
- htbscan — adaptive nmap scanner that escalates through increasingly aggressive scan techniques until it finds open ports