Skip to content
View AnBapDan's full-sized avatar
๐Ÿ˜
๐Ÿ˜

Highlights

  • Pro

Organizations

@energify

Block or report AnBapDan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please donโ€™t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
anbapdan/README.md

Hi there, I'm a Security Researcher ๐Ÿ‘‹

Welcome to my GitHub profile.

I work in offensive security with a strong focus on Active Directory, Kerberos abuse, AD CS, Windows privilege escalation, and internal network penetration testing.

๐Ÿง  About Me

  • ๐Ÿ”ด Offensive security professional focused on Active Directory and enterprise attack paths.
  • ๐Ÿฐ Strong interest in Kerberos abuse, delegation attacks, AD CS abuse, and identity-centric privilege escalation.
  • ๐Ÿงช Hands-on with red team operations, infrastructure assessments, lab building, and security research.
  • ๐Ÿง Comfortable across both Windows and Linux environments.

๐ŸŽฏ Current Focus

  • Advanced Active Directory tradecraft
  • AD CS research and abuse paths
  • Kerberos attack chains and delegation abuse
  • Network penetration testing and internal assessments
  • Threat hunting and realistic lab design
  • Building practical tools, modules, and documentation for operators

๐Ÿงพ Certifications

  • โœ… Offensive Security Certified Professional (OSCP)
  • โœ… HTB Certified Active Directory Pentester Expert (CAPE)
  • โœ… HTB Dante
  • โœ… HTB Alchemy

๐Ÿš€ What You'll Find Here

  • Active Directory and Windows-focused security tooling
  • Red team utilities and research projects
  • NetExec modules and offensive automation
  • Notes, proof-of-concepts, and lab-driven experiments
  • Write-ups related to real-world enterprise attack surfaces

๐Ÿ”— Links

๐Ÿงฐ Core Areas

Area Topics
Active Directory ACL abuse, delegation, trusts, LDAP and DNS manipulation
Kerberos S4U2Self, S4U2Proxy, constrained delegation abuse, ticket operations
AD CS Template abuse, ESC paths, certificate-based attack surface analysis
Windows Security Privilege escalation, identity abuse, enterprise misconfiguration research
Infrastructure Testing Internal network assessment, segmentation testing, service abuse
Tooling NetExec, Impacket, Certipy, Evil-WinRM, BloodHound

๐ŸŽฎ Outside of Work

  • Home automation with Home Assistant and Zigbee
  • Gaming: Wolfenstein, Halo, Gears, Fallout
  • Labs, CTFs, and Hack The Box challenges
  • Raves, Festivals and every kind of electronic music!

Pinned Loading

  1. schemati schemati Public

    Forked from mynameisvasco/schemati

    Schemati is a programming language built to make games and animations programming easier to beginner developers. Schemati has a simple and easy to use syntax but it implements the best practises ofโ€ฆ

    Java 2

  2. Oauth2.0 Oauth2.0 Public

    ๐Ÿ“ This project implements a game client using an Oauth2.0 Server Provider as well as CMD (Portuguese authentication using Citizen Card)

    TypeScript 2 2

  3. energify/energify-backend-v2 energify/energify-backend-v2 Public

    This repository hosts the backend v2 infrastructure of the Energify project.

    TypeScript 3 1

  4. Revolut_demo Revolut_demo Public

    Dart