eWPTX
Web Application Penetration Tester eXtreme
INE Security · Apr 2026
紫の死神
Junior penetration tester — web · network · AI/ML.
紫の死神 · focus
Web Application Pentesting
SQLi · XSS · auth flaws · Burp Suite — eWPTX, CWSE
Network Pentesting
Enumeration · exploitation · privesc — CNPen, THM PT1
AI / ML Security
Attacking ML models & LLM-powered apps — C-AI/MLPen
Writeups & Always Learning
TryHackMe & HTB rooms · HTB CWES in progress
I'm a final-year software engineering student in İstanbul. I got into offensive security a while back and never really left.
The software background helps more than I thought it would. I've spent years reading and writing code, so when I'm breaking a web app I'm not just poking at the surface — I'm thinking about the code behind it: where someone cut a corner, which input nobody bothered to validate. Turns out breaking things is easier once you've spent enough time building them.
I'm certified in web, network, and AI/ML pentesting. AI/MLis the one I keep coming back to. The tooling is still half-built and most people haven't really figured out how these systems break — that gap is the whole appeal. I'd rather be early on it than play catch-up in two years.
Right now most of my time goes into web exploitation. I'm prepping for Hack The Box CWES, and everything I learn turns into a writeup — half to prove I actually got it, half because writing it down is the fastest way to catch what I missed.
I'm looking for a junior pentester role, Türkiye or remote, somewhere I can keep leveling up fast.

rootmancer
Junior Pentester · 紫の死神
Six earned certifications across web, network and AI/ML security — every one verifiable, plus one more in the forge.
eWPTX
Web Application Penetration Tester eXtreme
INE Security · Apr 2026
CWSE
Certified Web Security Expert
Hackviser · Feb 2026
CNPen
Certified Network Pentester
The SecOps Group · May 2026
C-AI/MLPen
Certified AI/ML Pentester
The SecOps Group · May 2026
CAPT
Certified Associate Penetration Tester
Hackviser · Feb 2026
PT1
Junior Penetration Tester
TryHackMe · Apr 2026
In the forge
CWES — Certified Web Exploitation Specialist · Hack The Box
Beginner-to-intermediate CTF walkthroughs — I document every room I solve. More land as I level up toward CWES.
Enumeration → web exploitation via SQL injection, hash cracking, SSH access, then privilege escalation to root.
A full beginner pentest walkthrough: service enumeration, brute-forcing credentials, and privilege escalation, with notes.
Bypassing a file-upload filter to plant a PHP web shell, then escalating privileges to root.
A Rick-and-Morty themed web challenge: source-code recon, command execution, and hunting the three secret ingredients.
A custom Python brute-force script written to solve the Hammer challenge — automating the boring part of the attack.
Step-by-step exploitation, recorded end to end — TryHackMe rooms and PortSwigger labs on YouTube.
Open to junior penetration tester roles — Türkiye or remote. My inbox is open.