Scope, plan, and run a full penetration testing engagement under rules of engagement, from OSINT and attack-surface mapping to a client-ready report
Test web applications, APIs, and JSON Web Tokens for authentication, authorization, injection, and business-logic weaknesses
Exploit Windows and Linux hosts, escalate privileges, and attack Active Directory environments the way modern adversaries do
Evade perimeter defenses, move laterally, and pivot through segmented networks to reach protected targets
Perform reverse engineering, fuzzing, and binary exploitation, and assess IoT devices and their supporting infrastructure
Use AI-assisted techniques to accelerate reconnaissance, analysis, and reporting, and sit the 24-hour CPENT practical exam with a tested methodology