Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
security-portfolio — Security portfolio of original responsible-disclosure findings, CTF and lab write-ups, methodology notes, and purpose-built pentest tooling covering web, Active Directory, and detection engineering. | Kitploit
Tools/GitHubGitHub/mitsu-bis/security-portfolio
Privilege EscalationVulnerability AnalysisInformation GatheringCTFPenetration TestingLearning & EducationRed TeamingCurated ResourcesLabs & Practice

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
GitHubmitsu-bis/security-portfolio

security-portfolio

Security portfolio of original responsible-disclosure findings, CTF and lab write-ups, methodology notes, and purpose-built pentest tooling covering web, Active Directory, and detection engineering.

View Repository
322 days agoNot yet reviewed

Skyler M. — Security Portfolio

IT Infrastructure & Security Engineer · Offensive security · Detection engineering · Vendor risk USMC veteran · Sole IT & security owner for a ~200-user firm across 23 states · Top 2% on TryHackMe

LinkedIn · GitHub @Mitsu-bis · HackerOne · TryHackMe · Resume


I'm a USMC veteran and the primary IT infrastructure and security owner for a ~200-user construction firm operating across 23 states, so I defend a real, live environment every day rather than a lab. My work spans offensive security, detection engineering, and vendor risk, and I rank in the top 2% on TryHackMe. I'm building toward my own security consulting practice. The principle that runs through everything here is simple: I test only what I'm authorized to, scope my work carefully, and disclose responsibly.

This repository is my working portfolio — original findings, lab write-ups, methodology notes, and the tooling I build. Findings against third-party systems are published only after responsible disclosure and remediation, and are sanitized of any live data.


Focus Areas

Offensive securityWeb app & authentication testing — enumeration, access control, session handling
Windows / Active DirectoryEndpoint security, AD attack paths, privilege escalation
Detection engineeringSecurity monitoring, alerting, telemetry
Vendor / third-party riskDisclosure-program maturity, security posture assessment
Physical & social engineeringPhysical intrusion testing, social-engineering assessment
Research & toolingHome-lab-driven research and purpose-built security tools

Certifications

CompTIA Security+ ce   Cisco Certified Support Technician (CCST) Cybersecurity   Cisco Certificate in Ethical Hacking

CompTIA Security+ (ce) · Cisco Certified Support Technician — Cybersecurity (Lifetime) · Cisco Certificate in Ethical Hacking · OSCP — in progress

Cisco Networking Academy course badges

Cyber Threat Management   Network Defense   Endpoint Security   Junior Cybersecurity Analyst Career Path

Every badge links to its public verification on Credly.


Tooling & Projects

Things I've built and run.

StrikeOps — PenTest Command Center

A purpose-built command center for running professional penetration-testing engagements end to end — a single local cockpit driving the full lifecycle (Recon → Enumeration → Exploitation → Reporting), with evidence capture, MITRE ATT&CK mapping, CVSS 3.1 scoring, a findings-driven relevance engine, an attack-chain builder, and one-click client-ready report export. Runs fully local, OPSEC-conscious by design.

View the StrikeOps showcase →

ProjectDescriptionLink
StrikeOpsLocal pentest engagement command center — methodology, evidence, reportingShowcase
Home labWindows/AD + Linux target range used to validate techniques and detections

Original Findings & Responsible Disclosures

Real-world findings discovered in authorized contexts, validated within scope, and disclosed responsibly. Published after remediation only.

FindingClassSeverityStatusWrite-up
Account enumeration via password reset — construction-safety SaaSCWE-204Low–ModerateReported; awaiting remediation(pending disclosure — link when cleared)

Each disclosure follows a consistent structure: Summary · Discovery Context · Scope & Authorization · Methodology · Impact & Severity · Disclosure Timeline. More will be added here as they are reported and resolved.


Labs & CTF Write-Ups

Documented exploitation and methodology from training platforms and CTFs. These are guided / known-vulnerability exercises — included to demonstrate documentation, tooling, and process, not original research.

Write-upPlatformFocusLink
EternalBlue (CVE-2017-0144) — SMBv1 RCETryHackMeWindows SMB remote code execution: recon → exploitation → post-exploitation → looting, fully screenshottedRead →

Methodology & Notes

Process-focused write-ups that show how I approach a problem, independent of any single target.

NoteTopicStatus
Validating an authentication finding safelyControlled testing, scoping, ruling out confounders(planned)
Vendor disclosure maturity: bounty vs VDP vs security.txtThird-party risk framing(planned)

A note on scope & ethics

Every finding here was discovered in a context I was authorized to assess — systems I administer, platforms that authorize testing, or training environments built for it — validated only against assets in scope, and, where a third party is involved, disclosed responsibly before publication. Nothing here was obtained by testing systems I had no authorization to touch.

Download Tool
(write-up planned)