Skip to content
View xn0kkx's full-sized avatar
🌐
Online
🌐
Online

Organizations

@Cyberforce-Security @Black-Army-Security @Privmodel @WebRAD-Team @nichoplus-org

Block or report xn0kkx

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
xn0kkx/README.md

Lucas Turossi · @xn0kkx

Offensive Security · DevSecOps · Exploit Dev

pixel-art hacker

Who I am

I am an offensive security professional who finds how systems, applications, and networks fail before real attackers do. My edge is range — I don't just discover vulnerabilities, I understand how environments are built, operated, monitored, attacked, and recovered.

What I do

I run security assessments and red team-style engagements across applications, systems, and networks. I find real weaknesses before attackers do, then help teams prioritize and fix what actually matters.

  • Offensive (red team) — I test how applications, networks, and infrastructure can be broken, and turn that into clear, prioritized risk that teams can act on.
  • Defensive (blue team) — I help detect, investigate, and respond to threats, and harden environments so the same problem doesn't happen twice.
  • Crisis response — incident investigation and recovery, bringing compromised environments back to a safe and stable state.
  • Operator's range — 7+ years running and securing large production environments for enterprise clients. I have lived both sides, attacker and defender, so my findings are realistic and my recommendations are actually shippable.
  • Automation-first — co-founder of Cyberforce Security, building tools that make security testing faster and more scalable.

Stack

linux aws kubernetes terraform ansible jenkins github actions grafana python bash c go fastapi postgresql redis nginx

Security tooling: Burp Suite · Metasploit · Nmap · Wireshark · ProjectDiscovery (subfinder/httpx/nuclei) · ffuf · BloodHound · Wazuh · SonarQube · Snyk

Methodologies: OWASP Top 10 · OWASP API Top 10 · MITRE ATT&CK · Cyber Kill Chain · Diamond Model · PortSwigger Academy

Featured Work

Exploit development & security research

Offensive tooling (where infra meets attack)

  • SSH_C2C — Command-and-control over the SSH protocol, multi-host orchestration.
  • CNPJHarvest — Brazilian corporate OSINT pipeline.
  • ShinobiRecon — Reconnaissance automation.

Infrastructure & DevSecOps

  • SysAdmin-Toolkit — Linux automation for provisioning, hardening, and monitoring.
  • terraform-security-baseline — Hardened AWS baseline (IAM least-privilege, S3 SSE-KMS, CloudTrail, security groups, KMS rotation) with tfsec + checkov CI.
  • k8s-security-hardening — Pod Security Standards, NetworkPolicies, OPA Gatekeeper, Falco rules, Cosign verification.

Studies & content

Stats

activity-graph

Contact

Email: lturossi at proton dot me · GitHub: @xn0kkx

Open to remote Penetration Testing · Red Team · Offensive Security · AI Security roles · AWS Certified · DCPT in progress · Fluent English · US/EU overlap · Brazil-based

Pinned Loading

  1. musashi musashi Public

    MusashiOS — gesture-controlled Debian VM (MediaPipe hand tracking -> uinput touchscreen -> Phosh), pivoting to a voice-driven multi-LLM personal mainframe

    Python

  2. ClaudeStealer ClaudeStealer Public

    C

  3. CVE-2026-31431_CopyFail_LinuxKernel_LPE CVE-2026-31431_CopyFail_LinuxKernel_LPE Public

    Educational rewrite of the Copy Fail PoC (CVE-2026-31431) — Linux kernel LPE via algif_aead in-place crypto + splice() page-cache write

    Python 2

  4. Exploit_Sync_Breeze_v10.0.28_CVE-2017-14980 Exploit_Sync_Breeze_v10.0.28_CVE-2017-14980 Public

    Buffer overflow in Sync Breeze Enterprise 10.0.28 allows remote attackers to have unspecified impact via a long username parameter to /login.

    C

  5. nFTPBrute nFTPBrute Public

    Simple brute force for FTP

    Python 7

  6. SysAdmin-Toolkit SysAdmin-Toolkit Public

    A collection of Shell scripts to automate common Linux system administration tasks. Ideal for sysadmins looking to save time, standardize operations, and maintain more secure and organized environm…

    Shell 2