Location: Ceará, Brasil 🇧🇷
Nick: souzo / souzomain
Name: Vinicius Morais
Email: me@souzo.me
LinkedIn: https://www.linkedin.com/in/vinicius-m-a76ba51b5/
GitHub: https://github.com/souzomain
Blog: https://blog.souzo.me
Medium: https://medium.com/@souzo
X/Twitter: https://x.com/souzomain
Experienced cybersecurity engineer with a passion for open source and a strong background in software development. I've operated on both sides of the security spectrum — Red Team and Blue Team — working with large organizations and major banks across Brazil.
Conducted adversarial assessments across diverse environments, helping security teams identify and remediate vulnerabilities.
- Web exploitation
- Malware development
- Active Directory enumeration
- Engagement team leadership
- C2 framework design and development
Built and matured security operations programs from the ground up.
- SOC creation — team selection, policies, processes, and procedures
- SIEM implementation and tuning
- Detection engineering
- Detection rule development
| Certification | Issuer | Url |
|---|---|---|
| CRTO — Certified Red Team Operator | Zero-Point Security | Link |
| EWPTXv2 — Expert Web Penetration Tester v2 | eLearnSecurity / INE | Link |
| DCPT — Desec Certified Penetration Tester | Desec Security | Link |
Open source tools built from real-world security work:
| Project | Language | Description | Stars |
|---|---|---|---|
| Clickdetect | Python | Detection engine for generic data sources | |
| Shaco | C | Linux implant for Havoc C2 Framework | |
| Packer | C / Python | Fast serialization library for malware development | |
| MinLoader | C | Lightweight Windows in-memory PE loader library |
| Domain | Technologies |
|---|---|
| Low-level | ASM, C / C++ (CMake, CTest) |
| Scripting | Python, PHP |
| Web / Backend | JavaScript / TypeScript, NestJS, Bun |

