I'm Aruvasaga Chithan A β an Offensive Security Researcher, eJPT-certified penetration tester, and Top 1% TryHackMe learner. I break things ethically, find vulnerabilities, and responsibly disclose them to make software more secure.
$ cat mission.txt
> Mastering Windows Internals to transition from Pentester β Red Teamer
> Researching and responsibly disclosing real-world vulnerabilities
> Publishing root-cause analyses & Active Directory attack writeups
> Building offensive security tools from scratch to understand attacks deeplyπ‘ Live feed from Medium β new entries appended as they're published
- How I Found an Auth Flaw in a Government Site: From GraphQL Introspection to Unauthorized Access
- How I Abused a Group Policy Object (GPO) in Active Directory (And How to Fix It)
- How I Escalated to Domain Admin Using AD CS (And How to Fix It)
- How I Reset Another Userβs Password Without Domain Admin (And How to Fix It)
- How I AES-Roasted My Active Directory Lab (And How to Fix It)
[β] HOF-KNAW
[β] CERT-In (2)
[β] NASA VDP (4)
[β] Microsoft Security Response Center (1)
[β] Open Source Security Report (Accepted)
