hey, I'm cyberbuff 👋
I'm a security researcher, developer, and open source advocate who
brings a unique blend of offensive cybersecurity skills and software
engineering expertise. I currently work in Red Team at , where I specialize in Adversary Emulation, designing and
executing realistic attack simulations. Prior to that, I led the
software engineering team that built applications for the Cyber
Deception, Security Operations Center, and SOAR platforms.
Outside of work, I contribute to and maintain open source projects
including
Atomic Red Team
,
Invoke-AtomicRedTeam
,
LOLRMM
, and 🍎 LOAS . I also speak at security conferences and meetups on topics like
adversary emulation, detection engineering, and cyber deception.
I also helped start
Cyber Deception Village
, a community focused on advancing cyber deception research
and practice. The village hosts talks and demos to emphasize the dynamic
context of how cyber deception can be operationalized to influence
attacker decision-making and enhance detection and protection of
enterprise networks.
If you'd like to collaborate on a project, have a speaking opportunity, or just want to connect, feel free to reach out to me on LinkedIn or X .
Latest posts
My posts are cross-published here and on Substack . This blog supports hierarchical posts with an integrated table of contents, making it easier to navigate longer topics or skip sections you're already familiar with. Substack, on the other hand, makes it easy to subscribe and get notified of new posts. Use whichever suits you best.