Offensive Security Professional & Red Teamer
Specializing in web, API, network, and Active Directory penetration testing. Passionate about securing critical systems and breaking things to make them stronger.
Core Expertise
Web App Pentesting
Deep expertise in OWASP Top 10, advanced injection attacks, logic flaws, and modern web framework vulnerabilities.
Network Security
Internal/external VAPT, firewalls review, endpoint security, and real-world attack simulations.
Active Directory
Advanced AD enumeration, privilege escalation paths, lateral movement, and post-exploitation.
Red Teaming
Adversary simulation, defense evasion, phishing campaigns, and full-chain exploit development.
Explore My Work
Dive into my detailed writeups on vulnerabilities I've discovered, check out my custom security tools, or read about the latest cybersecurity trends on my blog.
~ whoami
ruwantha_harshamal
~ cat skills.txt
['Web Pentesting', 'API Sec', 'Network', 'AD', 'Red Teaming']
_