I am an offensive security professional who finds how systems, applications, and networks fail before real attackers do. My edge is range — I don't just discover vulnerabilities, I understand how environments are built, operated, monitored, attacked, and recovered.
I run security assessments and red team-style engagements across applications, systems, and networks. I find real weaknesses before attackers do, then help teams prioritize and fix what actually matters.
- Offensive (red team) — I test how applications, networks, and infrastructure can be broken, and turn that into clear, prioritized risk that teams can act on.
- Defensive (blue team) — I help detect, investigate, and respond to threats, and harden environments so the same problem doesn't happen twice.
- Crisis response — incident investigation and recovery, bringing compromised environments back to a safe and stable state.
- Operator's range — 7+ years running and securing large production environments for enterprise clients. I have lived both sides, attacker and defender, so my findings are realistic and my recommendations are actually shippable.
- Automation-first — co-founder of Cyberforce Security, building tools that make security testing faster and more scalable.
Security tooling: Burp Suite · Metasploit · Nmap · Wireshark · ProjectDiscovery (subfinder/httpx/nuclei) · ffuf · BloodHound · Wazuh · SonarQube · Snyk
Methodologies: OWASP Top 10 · OWASP API Top 10 · MITRE ATT&CK · Cyber Kill Chain · Diamond Model · PortSwigger Academy
- CVE-2026-31431 · CopyFail Linux Kernel LPE — Educational rewrite of the Copy Fail PoC: Linux kernel local privilege escalation via
algif_aeadin-place crypto +splice()page-cache write. - Exploit_Sync_Breeze · CVE-2017-14980 — Public PoC: stack-based buffer overflow in Sync Breeze Enterprise 10.0.28 (
/loginusernameparameter). Reversing, shellcode, reproduction. - ClaudeStealer — Research on the attack surface of LLM coding-assistant runtimes.
- SSH_C2C — Command-and-control over the SSH protocol, multi-host orchestration.
- CNPJHarvest — Brazilian corporate OSINT pipeline.
- ShinobiRecon — Reconnaissance automation.
- SysAdmin-Toolkit — Linux automation for provisioning, hardening, and monitoring.
- terraform-security-baseline — Hardened AWS baseline (IAM least-privilege, S3 SSE-KMS, CloudTrail, security groups, KMS rotation) with
tfsec+checkovCI. - k8s-security-hardening — Pod Security Standards, NetworkPolicies, OPA Gatekeeper, Falco rules, Cosign verification.
- DCPT-Studies-Notes — Public study log for the DESEC Certified Pentester.
Email: lturossi at proton dot me · GitHub: @xn0kkx
Open to remote Penetration Testing · Red Team · Offensive Security · AI Security roles · AWS Certified · DCPT in progress · Fluent English · US/EU overlap · Brazil-based




