Galahad
Senior Ethical Hacker, Attack Chaining and Domain Compromise
Read profileClose profile
He has spent more than ten years in offensive security, testing web applications, APIs, mobile apps, cloud environments and internal networks, with and without source code. His speciality is chaining findings that look minor on their own into full compromise of the application and the domain behind it. In one assessment he found a blind SQL injection hidden in a cookie header, unauthenticated and rate limited, and turned it into a complete customer database extracted over DNS. His fastest route to Domain Admin took one minute from the start of an internal test. He writes his own exploit code and tooling in Python, PHP and JavaScript, and audits source code in those languages and in Java. He has led penetration testing teams and built their vulnerability database and reporting method from scratch. He has delivered assessments for organisations in banking, e-commerce, the public sector and retail.
Certifications: OSCP