Information Security Consultant

Offensive Security Professional & Red Teamer

Specializing in web, API, network, and Active Directory penetration testing. Passionate about securing critical systems and breaking things to make them stronger.

Core Expertise

Web App Pentesting

Deep expertise in OWASP Top 10, advanced injection attacks, logic flaws, and modern web framework vulnerabilities.

Network Security

Internal/external VAPT, firewalls review, endpoint security, and real-world attack simulations.

Active Directory

Advanced AD enumeration, privilege escalation paths, lateral movement, and post-exploitation.

Red Teaming

Adversary simulation, defense evasion, phishing campaigns, and full-chain exploit development.

Explore My Work

Dive into my detailed writeups on vulnerabilities I've discovered, check out my custom security tools, or read about the latest cybersecurity trends on my blog.

~ whoami

ruwantha_harshamal

~ cat skills.txt

['Web Pentesting', 'API Sec', 'Network', 'AD', 'Red Teaming']

_