Skip to content
View WNobsi's full-sized avatar

Block or report WNobsi

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
WNobsi/README.md

Nobex Wahengbam

PJPT-Certified Penetration Tester | Active Directory & Web Application Security

PJPT Certified Active Directory OWASP Top 10 Portfolio

πŸ“ Mumbai, India Β· 🎯 Open to Penetration Testing & Red Team Roles


πŸ’Ό Professional Summary

PJPT-certified penetration tester with hands-on experience in Active Directory exploitation (17 documented attack techniques) and web application security testing (32 OWASP Top 10 findings). Proven ability to build realistic enterprise attack scenarios, document complete kill chains, and provide actionable remediation recommendations.

What I Bring to Your Team:

  • βœ… Real-world penetration testing methodology (PTES, OWASP Testing Guide)
  • βœ… Complete attack documentation from reconnaissance to post-exploitation
  • βœ… MITRE ATT&CK framework mapping for threat intelligence alignment
  • βœ… Professional-grade security reports with CVSS scoring and business impact analysis
  • βœ… Defensive mindset β€” every attack paired with detection and mitigation strategies

πŸŽ“ Certifications

Certification Issuer Year Verification
βœ… PJPT (Practical Junior Penetration Tester) TCM Security 2026 Verify Certificate

πŸ—οΈ Featured Projects

🏰 Active Directory Home Lab β€” Complete VAPT

View Project

Enterprise-grade AD penetration testing lab simulating realistic attack chains from initial access to Domain Admin compromise.

Key Achievements:

  • 🎯 17 documented attack techniques across full kill chain
  • 🏒 3-machine Windows domain (BATMAN.local) β€” DC + 2 workstations
  • πŸ”‘ Complete credential access chain β€” LLMNR poisoning β†’ Kerberoasting β†’ Golden Ticket
  • πŸ›‘οΈ Defense-aware β€” every attack paired with Event ID detection and GPO hardening
  • πŸ“Š MITRE ATT&CK mapped β€” 15+ TTP IDs documented

Attack Coverage:

Technique MITRE ID Impact
LLMNR/NBT-NS Poisoning T1557.001 NTLMv2 hash capture
SMB Relay T1557.001 SAM/LSA dumping
Kerberoasting T1558.003 Service account compromise
Pass-the-Hash T1550.002 Lateral movement
Mimikatz / LSASS Dumping T1003.001 Credential extraction
Golden Ticket T1558.001 Persistent DA access
ZeroLogon (CVE-2020-1472) CVE-2020-1472 DC takeover
PrintNightmare (CVE-2021-1675) CVE-2021-1675 SYSTEM escalation

Tools Used: Responder, Impacket Suite, Bloodhound, Mimikatz, Hashcat, NetExec, mitm6


🌐 Web Application VAPT Lab β€” OWASP Top 10

View Project

Comprehensive web security testing across DVWA and PortSwigger Web Security Academy with professional pentest reporting.

Key Achievements:

  • 🎯 32 documented vulnerabilities with full exploitation walkthroughs
  • πŸ”΄ 9 Critical findings β€” SQL injection, command injection, unrestricted file upload β†’ RCE
  • 🟠 19 High severity β€” XSS (reflected, stored, DOM), authentication bypass, CSRF, IDOR
  • πŸ“‹ Enterprise report β€” CVSS v3.1 scoring, remediation recommendations, Burp Suite evidence
  • βœ… 100% OWASP Top 10 (2021) coverage

Vulnerability Classes:

Category Findings Severity
A03: Injection SQL Injection (6), XSS (6), Command Injection (2) Critical/High
A01: Broken Access Control CSRF, IDOR, Unprotected Admin (4) Critical/High
A07: Authentication Failures 2FA bypass, Brute-force, Session fixation (5) Critical/High
A04: Insecure Design File Upload RCE, API flaws (5) Critical/High
A05: Security Misconfiguration LFI, Info disclosure (2) High/Medium

Tools Used: Burp Suite, sqlmap, Nmap, Hydra, netcat, msfvenom


πŸ–₯️ CTF & Machine Writeups

Recent Completions:

Platform Machine/Challenge Type Key Techniques
HTB Cyber Apocalypse 2026: Gatery Web CTF Session management bypass, broken authorization
TCM BlackPearl Linux Web exploitation, privilege escalation
TCM Butler Windows Jenkins RCE, unquoted service path β†’ SYSTEM
TCM Dev Linux Boltwire LFI, NFS enumeration, sudo abuse
TCM Academy Linux FTP disclosure, file upload, cron job abuse β†’ root
VulnHub Kioptrix Level 1 Linux Samba trans2open exploit, mod_ssl buffer overflow

πŸ› οΈ Technical Skills

Active Directory & Internal Network

  • Credential Access: LLMNR poisoning, SMB relay, Kerberoasting, LSASS dumping, NTDS.dit extraction
  • Lateral Movement: Pass-the-Hash, PSExec, WMIExec, SMBExec
  • Privilege Escalation: Token impersonation, Golden Ticket, ZeroLogon, PrintNightmare
  • Enumeration: Bloodhound, ldapdomaindump, NetExec, PingCastle
  • Tools: Responder, Impacket, Mimikatz, Hashcat, mitm6, Metasploit

Web Application Security

  • OWASP Top 10: SQL injection (UNION, blind, auth bypass), XSS (reflected, stored, DOM), command injection
  • Access Control: CSRF, IDOR, authentication bypass, session management flaws
  • File Security: Unrestricted upload β†’ RCE, LFI/RFI, path traversal
  • API Security: Mass assignment, parameter pollution, SSRF, endpoint enumeration
  • Tools: Burp Suite, sqlmap, Nmap, Hydra, ffuf, Nikto

Exploitation & Post-Exploitation

  • Linux PrivEsc: SUID abuse, sudo misconfiguration, cron jobs, kernel exploits
  • Windows PrivEsc: Unquoted service paths, weak service ACLs, registry exploitation
  • CVE Research: Exploit-DB, GitHub PoCs, Metasploit modules
  • Reverse Shells: bash /dev/tcp, PHP, Groovy, netcat, msfvenom payloads
  • Tools: LinPEAS, winPEAS, GTFOBins

Scripting & Automation

  • Python 3: pwntools, Paramiko, custom exploitation scripts
  • Bash: Automation, enumeration scripts, reverse shell one-liners
  • PowerShell: Windows post-exploitation, service manipulation

Methodologies & Frameworks

  • MITRE ATT&CK: 15+ techniques mapped with detection strategies
  • OWASP Testing Guide: Web application testing methodology v4.2
  • PTES: Penetration Testing Execution Standard
  • CVSS v3.1: Vulnerability severity scoring and risk assessment

πŸ“Š Portfolio Statistics

🎯 Active Directory Attacks Documented:    17
🌐 Web Vulnerabilities Found:              32
πŸ† Machines Compromised:                   6
πŸ“ Technical Writeups Published:           9
πŸ› οΈ Tools Mastered:                        30+
πŸ“‹ Professional Reports Generated:         2
πŸ”΄ Critical Findings:                      9
🟠 High Severity Findings:                 19

πŸ“ž Contact & Links

Portfolio LinkedIn Email

TryHackMe HackTheBox


🎯 What I'm Looking For

Open to roles in: Penetration Testing, Red Team Operations, Security Assessment, Application Security Testing

Preferred location: Mumbai, India (open to remote opportunities)

Why hire me?

  • βœ… Production-ready penetration testing skills backed by 50+ documented vulnerabilities
  • βœ… PJPT certification validating real-world AD and network pentesting ability
  • βœ… Strong documentation skills β€” every attack includes methodology, evidence, and remediation
  • βœ… Defensive mindset β€” understand both offensive techniques and detection/mitigation strategies
  • βœ… Continuous learner β€” active on HTB, THM, and TCM platforms with ongoing CTF participation

πŸ’‘ "Understanding why an attack works, how defenders detect it, and how to document findings in a professional consulting style."

⚠️ All techniques demonstrated in isolated, self-owned virtual labs for educational purposes only.

Pinned Loading

  1. TCM-Academy-Machine-Walkthrough TCM-Academy-Machine-Walkthrough Public

    A detailed walkthrough of the Academy (TCM) machine covering the complete penetration testing lifecycleβ€”from reconnaissance and enumeration to exploitation, privilege escalation, and root compromis…

    1

  2. TCM-BlackPearl-Machine-Walkthrough TCM-BlackPearl-Machine-Walkthrough Public

    BlackPearl walkthrough from the TCM Security Practical Ethical Hacking lab, documenting a methodology-driven penetration test from reconnaissance to root compromise. Covers enumeration, web exploit…

    1

  3. TCM-Dev-Machine-Walkthrough TCM-Dev-Machine-Walkthrough Public

    A detailed penetration testing walkthrough of the Dev machine from TCM Security's VulnHub series. This writeup covers the complete attack chain from reconnaissance and enumeration to exploitation, …

    1

  4. Active-Directory-Home-Lab-VAPT Active-Directory-Home-Lab-VAPT Public

    A hands-on penetration testing lab simulating real-world Active Directory attack and defense scenarios. Covers LLMNR Poisoning, SMB Relay, Kerberoasting, Token Impersonation, Mimikatz, Golden Ticke…

  5. web-application-vapt-lab web-application-vapt-lab Public

    Documented web application penetration testing lab covering OWASP Top 10 across DVWA and PortSwigger Web Security Academy β€” 32 hands-on findings with Burp Suite evidence, CVSS scoring, and enterpri…