OFFENSIVE SECURITY // RF RESEARCH // ADVERSARY SIMULATION

Erick Tafel

operator: g1gs · Q2jDoG8gYuG6oW4h

I test networks, web apps, and radio protocols. Curiously dedicated...

Web Application Testing Active Directory Red Team Operations Exploit Development RF / SDR Security
Inspect my work Establish contact
OPERATION: BREADCRUMB · browser CTF0/5 flags
g1gs@portfolio:~$
SYSTEMS ONLINE
ENCRYPTION: AES-256
SECURE COMMS: ACTIVE
THREAT LEVEL: ELEVATED
LAST SYNC: LIVE
SECTOR: CYBER OPS
SYSTEMS ONLINE
ENCRYPTION: AES-256
SECURE COMMS: ACTIVE
THREAT LEVEL: ELEVATED
LAST SYNC: LIVE
SECTOR: CYBER OPS

$ whoami

Cybersecurity engineer experienced in offensive security, penetration testing, and red team operations. Specializing in Web App, Active Directory, Network, and wireless security testing/RF security research. Currently pursuing advanced certifications, improving my home lab, and building practical skills through online resources. Passionate about breaking things to make them more secure.

$ cat certifications.txt

RTCP

Red Team Certified Professional

Advanced adversarial operations certification validating the ability to plan, orchestrate, and execute full-scope red team engagements against hardened enterprise networks, mimicking real-world threat actors.

Adversarial Simulation Red Team Infrastructure Command & Control (C2) Evasion Methodologies

GXPN

Exploit Researcher and Advanced Penetration Tester

Advanced certification covering exploit development across Linux and Windows, including memory protection bypasses, ROP chains, shellcode, fuzzing, cryptographic exploitation, and network traffic manipulation.

Exploit Writing - Linux & Windows Cryptography Product Security and Code Coverage Advanced Network Attacks

OSCP+/OSCP

Offensive Security Certified Professional

Practical penetration testing certification focused on exploit development and privilege escalation.

Exploit Development Privilege Escalation

PNPT

Practical Network Penetration Tester

Real-world network penetration testing with focus on Active Directory.

Web App Security OWASP Top 10 Active Directory Network Pentesting

PJPT

Practical Junior Penetration Tester

Foundational penetration testing skills and methodology.

Web App Security OWASP Top 10 Active Directory Network Pentesting

CompTIA Certifications

CASP+ | Security+ | Network+ | A+

Foundational IT and cybersecurity certifications covering infrastructure, security concepts, and advanced security operations.

Security Fundamentals Networking

$ cat skills.conf

Penetration Testing

  • Network Penetration Testing
  • RF Security / Wireless
  • Web Application Penetration Testing
  • Vulnerability Assessment
  • Exploit Development
  • Python
  • PowerShell
  • Bash Scripting
  • JavaScript

Systems & Methodologies

  • Linux
  • Windows
  • Active Directory
  • Docker
  • Cloud (AWS/Azure)
  • OWASP
  • MITRE ATT&CK

Tools & Frameworks

  • Metasploit Framework
  • Impacket
  • Burp Suite Professional
  • Nmap
  • Rustscan
  • aircrack-ng
  • Kali Linux
  • Wireshark / tcpdump
  • Ghidra
  • SQLMap

Interests

  • RF Security
  • CTFs
  • HackTheBox
  • Electronics
  • Aviation
  • Video Games
  • Hiking
  • Calisthenics
  • Travel

$ ls -la projects/

CTF Writeups & Notes

HackTheBox | PwnedLabs | HackSmarter

Detailed writeups and notes from various CTF challenges, boxes, and competitions including techniques, tools, and methodologies used.

FOCUSReproducible attack paths & methodology
Lab Boxes CTF Challenges Writeups

View on GitHub →

RF Playground & SDR Projects

Software Defined Radio | RF Security

Software-defined radio experiments and RF security projects using HackRF One, exploring signal analysis, replay attacks, and wireless protocol research.

ARTIFACTSSignal captures, tooling & research notes
SDR HackRF RF Security Signal Analysis

View Projects →

Azure Honeypot Project

Cloud Security | SIEM

Deployed and configured Azure-based honeypot to analyze real-world attack patterns and implement SIEM monitoring.

PIPELINETelemetry → detection → investigation
Azure SIEM Threat Intelligence

View Documentation →

Raspberry Pi Security Projects

Hardware Security | IoT

Collection of Raspberry Pi projects including network monitoring tools, wireless security testing, and custom security appliances.

BUILDLow-cost defensive & wireless hardware
IoT Security Wireless Testing Network Monitoring

View Projects →

Security Automation Scripts

Python | PowerShell | Bash

Custom scripts for reconnaissance, enumeration, and security automation tasks used in penetration testing engagements.

VALUERepeatable enumeration & operator efficiency
Automation Python PowerShell

View Scripts →

Python Projects

Harvard CS50 | Python Practice

Projects and exercises demonstrating Python programming fundamentals and problem-solving skills.

Python Algorithms Problem Solving

View Projects →

Front-End Development

HTML | CSS | JavaScript

Web development projects demonstrating understanding of client-side technologies and web application architecture.

HTML/CSS JavaScript Web Security

GitHub → | CodePen →

$ cat contact.txt