Security researcher working on Windows offensive tradecraft: credential access, process injection, and adversary technique analysis. Everything I publish is validated in an isolated lab and mapped to MITRE ATT&CK, with expected results per hardening stage.
⚠️ All research here runs in isolated lab environments and is published for educational and authorized red team use only.
| Project | Focus | ATT&CK |
|---|---|---|
| cred-harvester | Credential access: LSASS, DPAPI, browser stores, offline SAM | T1003.001/.002 · T1555.003/.004 |
| process-injection-arsenal | Process injection: remote thread, APC, hijacking, hollowing, stomping, mapping | T1055 · T1055.012 |
| osint-recon | Passive OSINT recon framework in Rust: subdomains, DNS, ASN, CT, GitHub dorking, Brazilian context | T1590 · T1591 · T1592 · T1593 · T1589 · T1596 |
| defender-evasion-research | Windows Defender evasion research: signatures, AMSI, ETW, cloud protection, 2026 verdict matrix | T1562 · T1027 |
| discord-recon | Discord OSINT CLI in Rust: invite/guild/webhook/snowflake/user intel, read-only, keyless + bot tiers | T1593.001 · T1589.002 |
| xerxes-project | Modular pentest harness in Rust: plugin architecture, port scanner, subdomain brute, web fuzzer, cred testing | TA0007 · T1046 · T1595 · T1110 |



