Security Researcher & Penetration Tester

PixRei

Developing Skills

Offensive security specialist. CTF challenges. Building portfolio. Hunting for opportunities.

About

Penetration testing methodology focused on systematic enumeration, vulnerability analysis, and exploitation. Experienced with web application security testing, network penetration testing, and Windows/Linux privilege escalation techniques.

Core competencies include reconnaissance and OSINT, service enumeration, manual and automated vulnerability assessment, exploitation, and post-exploitation. Comfortable working with industry-standard tools and custom scripting for automation.

Currently pursuing eJPT certification while actively documenting methodologies through detailed writeups. Background in IT operations and Python automation provides strong foundation for security tooling development.

3+
Upcoming Projects
Top 6%
THM Global Rank
45+
HTB Machines Pwned
2+
Learning Paths Done
pixrei@arch:~/security
$cat current_status.txt
→ Status: Available for opportunities
→ Location: Türkiye (Remote preferred)
→ Focus: Penetration Testing | Web App Security
$ls ./active_work/
→ eJPT_lab_progress.md
→ htb_writeups/
→ automation_scripts/
$

Featured Writeups

Detailed walkthroughs of HTB and TryHackMe machines

1Total Writeups
1HackTheBox
0TryHackMe

Security Guides

Hardening walkthroughs, tool setups, and offensive security guides

1Published
3Coming Soon
GuideArch LinuxHardening

Arch Linux Hardening for Pentesters

Step-by-step guide to securing an Arch Linux workstation — firewall, kernel hardening, Bluetooth lockdown, file integrity monitoring. Every parameter explained.

FirewallsysctlAIDE
Read
COMING SOON

VPN Kill Switch Setup

Configure a bulletproof VPN kill switch on Linux to prevent traffic leaks during pentesting engagements.

NetworkVPN
COMING SOON

Home Pentest Lab with Proxmox

Build an isolated penetration testing lab — vulnerable VMs, network segmentation, attack/defense scenarios on a budget.

LabProxmox

Certifications

Building verified proof of skills

Completed
🏆

TryHackMe Jr Pentester Path

Comprehensive learning path covering penetration testing methodology and tools.

Completed
🔴

TryHackMe Red Teamer Path

Advanced path covering red team operations, C2 frameworks, and adversary emulation.

In Progress
🔓

eJPT - Junior Penetration Tester

INE Security hands-on certification. 72-hour practical exam proving real pentesting skills. Target: April 2026.

Planned
🎯

CAP - Certified AppSec Practitioner

SecOps Group certification covering OWASP Top 10 and web application security fundamentals.

Planned
💥

CPTS - Certified Penetration Testing Specialist

HackTheBox advanced certification. Comprehensive practical exam covering full penetration testing methodology. OSCP alternative.

Projects

Security tools and research

PLANNED
🔍

Port Scanner

Custom Python port scanner with service detection. Building fundamental security tooling from scratch.

PythonNetworkingTool Dev
PLANNED
🛒

E-commerce Security Audit

Security assessment framework for Shopify stores. Combining business experience with security knowledge.

E-commerceAuditOWASP
PLANNED
🎣

Phishing Analysis Reports

Analysis of real phishing attempts with IOC extraction. Documenting threat intelligence from actual attacks.

Threat IntelAnalysisIOCs

Skills

Offensive Security

  • Penetration Testing Methodology
  • Web Application Security
  • Network Enumeration
  • Privilege Escalation
  • Active Directory Attacks

Tools

  • Nmap / Masscan
  • Burp Suite
  • Metasploit
  • Gobuster / Ffuf
  • Wireshark

Development

  • Python Scripting
  • Bash Automation
  • Linux Administration
  • Git / GitHub
  • Docker Basics

Platforms

  • TryHackMe (Top 6%)
  • HackTheBox
  • Linux (Arch BTW)
  • Windows Server
  • Kali Linux
Roadmap: Jr_Pentester → Red_Teamer
Phase 0
Stage 1
eJPT
Stage 2
Portfolio
Stage 3
CPTS
Stage 4
Job Hunt