Skip to content
View jusot99's full-sized avatar
🏴‍☠️
Deep in security research 🔬 may reply slowly.
🏴‍☠️
Deep in security research 🔬 may reply slowly.

Block or report jusot99

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
jusot99/README.md

Elimane D.

Offensive Security Specialist


👋 About

I focus on hands-on offensive security and practical penetration testing. Most of my time is spent breaking systems in controlled lab environments so I can understand how they fail and how to make them more secure.

I work across Linux and Windows machines, web applications, internal networks, and identity-based environments, practicing real-world techniques like privilege escalation, lateral movement, and post-exploitation. I document what I learn through tools, scripts, and writeups that I share publicly.

Everything here is built for learning, research, and improving security in a responsible and ethical way.


Core Capabilities

  • End-to-end offensive security assessments across Linux and Windows environments
  • Web application exploitation and internal network compromise
  • Active Directory attack paths, privilege escalation, and lateral movement
  • Wireless security testing and internal threat simulation
  • Secure development with focus on attack surface reduction
  • Custom tooling for reconnaissance, exploitation, and automation

Technical Stack

Kali Linux

Selected Work

  • 👉 🧰 pwnhub → My main repository containing offensive security tools, scripts, and lab writeups
  • 🛡️ netlabguard → Enterprise-grade Linux network auditing toolkit with ARP discovery, MITM simulation, and device containment for authorized security testing.
  • 🚀 semok → Multi-threaded network stress simulation tool built for controlled testing and research. Supports proxy chaining, header manipulation, and response analysis.
  • 🌐 dnsinfo → DNS enumeration and analysis utility used to map exposed records and identify external attack surfaces.
  • 🐚 (More coming soon… because the lab never sleeps)

Featured Writeups

  • 🧠 HTB CDNio (Web Cache Poisoning)
    Analysis of a chained cache poisoning vulnerability involving unsafe CDN caching, regex route bypass, and JWT worker desynchronization. Includes exploit automation and defensive remediation notes.

Signal

Operate quietly. Measure impact. Leave systems stronger than you found them. And always have a backup… or two. 😉


Operational Focus

  • Advanced Active Directory abuse paths and delegation scenarios
  • Covert command-and-control concepts and payload delivery
  • Deep kernel-level Linux hardening
  • Stealth-oriented Wi-Fi post-exploitation workflows

💬 Get In Touch


jusot99's Stats

Pinned Loading

  1. pwnhub pwnhub Public

    Hand‑curated offensive security toolkit, scripts, and writeups for ethical hackers, pentesters, and IT pros eager to level up.

    Python 24

  2. jusot99.github.io jusot99.github.io Public

    Shell 9

  3. jusot99 jusot99 Public

    7