I am an Offensive Security Engineer and Bug Bounty Hunter dedicated to identifying and exploiting complex vulnerabilities before adversaries do. My focus lies in breaking down enterprise systems, web applications, and emerging AI infrastructures to build stronger security postures.
- Network & Infrastructure: Active Directory exploitation, Privilege Escalation, Protocol Data Exfiltration.
- Application Security: Source code review, API probing, identifying systemic flaws (e.g., LFI, DLL Hijacking).
- Emerging Threats: AI Infrastructure Red Teaming, LLM prompt injection, and enterprise AI risk assessment.
- Custom Reconnaissance Frameworks: Developed localized utilities and API scanners for automated target data gathering.
- Vulnerability Advisories: Researched and documented technical deep-dives on vulnerabilities, such as local file inclusions and DLL hijacking mechanics in enterprise software.
- Security Tooling: Building tools and environment sandboxes to streamline penetration testing workflows.