Skills
Offensive Security: Web & Network Penetration Testing, OWASP Top 10, Vulnerability Assessment, Exploitation & Post-
Exploitation, Privilege Escalation (Linux/Windows), Broken Access Control Testing, API Security Testing, Firewall & WAF Evasion,
403 Bypass Techniques
Tools: Burp Suite Professional, OWASP ZAP, Nmap, Metasploit, Nessus, Wireshark, SQLmap, Hydra, John the Ripper, Ghidra,
IDA, HxD
Programming & Automation: Python (Security Automation), Bash, C, C++, FastAPI, React, TypeScript, Playwright, SQLite
Systems & Networking: Kali Linux, Red Hat Enterprise Linux (RHEL), TCP/IP, DNS, DHCP, System Hardening, Network
Configuration & Troubleshooting
Specialized Domains: Cloud Security (AWS / Azure), SOC Analysis, Digital Forensics, Reverse Engineering, AI-Driven Security
Reporting: Penetration Testing Reports, Executive Summaries, Remediation Guides, CVSS Risk Scoring, PoC Documentation
About
Network and Information Security Engineer and penetration tester specializing in offensive security, web and network exploitation, and
security automation. eJPT-certified, with hands-on experience conducting vulnerability research on live bug bounty programs.
Designer and sole developer of PENTRA, a self-built platform covering the full testing workflow and replacing the majority of standard
pentesting tools, and of ADIS, an AI-driven intrusion detection layer. Currently advancing toward HTB CPTS and CWES certifications