narycyber@sh:~#

Justus Juvenary

Offensive Security Consultant

Specialized in offensive security and red teaming, helping organizations identify and exploit vulnerabilities across web applications, APIs, networks, and infrastructure.

terminal — narycyber@sh:~#

Expertise

Enterprise Infrastructure Security

Advanced security assessment of complex enterprise infrastructure, identifying deep weaknesses across systems, networks, identity, and trust boundaries. Trace realistic attack paths from initial access through privilege escalation and lateral movement to assess overall resilience.

Web Application & API Security

Advanced offensive security assessments of web applications and APIs, focusing on authentication, authorization, business logic, and complex attack chains. Identify vulnerabilities that can be chained to compromise functionality, access sensitive data, or achieve unauthorized control.

Adversary Emulation & Red Team Operations

Conduct realistic adversary emulation against mature security environments, replicating sophisticated threat actor tradecraft and attack objectives. Validate defensive capabilities by demonstrating how an attacker can move from initial access to mission impact.

$ whoami --stats
0

posts published

0

certifications

0+

years in offensive security

Latest Research

View all posts →

Showing all posts — search below to filter.

api-penetration-testing.md

OWASP API Security Top 10 via VAPI Walkthrough

A hands-on walkthrough of identifying and exploiting OWASP API Security Top 10 vulnerabilities using VAPI, a lab environment.

April 28, 2023 27 min read
$ cat api-penetration-testing.md
windows-service-misconfigurations.md

Windows Service Misconfigurations: A Practical Guide to Privilege Escalation

Weak service permissions and unquoted paths are still a top privilege-escalation vector on Windows. Here's how to spot, exploit them safely

February 23, 2023 13 min read
$ cat windows-service-misconfigurations.md
abusing-sudo-rights.md

Abusing Sudo Rights: How Misconfigured Permissions Lead to Root

Weak service permissions and unquoted paths are still a top privilege-escalation vector on Windows. Here's how to spot them, exploit them safely in testing, and fix them for good.

February 23, 2023 10 min read
$ cat abusing-sudo-rights.md
accesschk-user-guide.md

Accesschk.exe User Guide

Weak service permissions and unquoted paths are still a top privilege-escalation vector on Windows. Here's how to spot them, exploit them safely in testing, and fix them for good.

February 15, 2023 2 min read
$ cat accesschk-user-guide.md