About Me#

I’m a penetration tester from Myanmar working in the fintech space, with a strong focus on offensive security. My interests revolve around Windows exploit development, antivirus and EDR evasion, reverse engineering, binary exploitation, and Active Directory red teaming.

Outside of my day job, I spend sometimes hunting for vulnerabilities through platforms like Synack Red Team.

This blog is where I document my journey sharing research, experiments, and insights from the work I’m doing along the way.

Achievements#

  • OffSec Experienced Penetration Tester (OSEP)
  • OffSec Wireless Professional (OSWP)
  • Certified Red Team Operator (CRTO)
  • Certified Red Team Expert (CRTE)
  • Malware Development by Maldev Academy
  • eLearn Mobile Application Penetration Tester (eMAPT)
  • eLearn Certified Professional Penetration Tester (eCPPTv2)
  • API Penetration Testing from APISec University
  • HTB Prolabs - Dante, Zephyr, Rastalabs, Wutai

Bug Bounties and HOF#

  • TripAdvisor, Victoria University, Hackerone, Zerocopter, Synack Red Team, U.S. Dept Of Defense, Stitch Fix, Flexport, Sophos, etc…

Projects & Tools#

shanekhantaun9
/
RemoteLoader
Waiting for api.github.com...
00K
0K
0K
Waiting...
shanekhantaun9
/
SharpLoader
Waiting for api.github.com...
00K
0K
0K
Waiting...
shanekhantaun9
/
win32-exploit-development
Waiting for api.github.com...
00K
0K
0K
Waiting...
shanekhantaun9
/
linux-exploit-development
Waiting for api.github.com...
00K
0K
0K
Waiting...
shanekhantaun9
/
pwn101
Waiting for api.github.com...
00K
0K
0K
Waiting...
shanekhantaun9
/
firex
Waiting for api.github.com...
00K
0K
0K
Waiting...
shanekhantaun9
/
otx
Waiting for api.github.com...
00K
0K
0K
Waiting...
shanekhantaun9
/
gitfinder
Waiting for api.github.com...
00K
0K
0K
Waiting...