Red Team Operator · Genoa, Italy

Thinking like an adversary. Building stronger defenses.

I'm Amirhossein Roustaei, an offensive security professional focused on adversary emulation, Active Directory exploitation, and OPSEC-aware C2 operations.

Selected work

Research and tooling shaped by hands-on offensive security practice.

C2 Framework

MadEzmaC2

Asynchronous SSH-based command-and-control framework with encrypted execution, secure file transfer, multi-session handling, and Ngrok-based tunneling.

Python · AsyncSSH · asyncio · SFTP · SOCKS5
View repository ↗
Active Directory

AD Attack Lab

Self-hosted enterprise lab for researching ADCS abuse, Kerberoasting, DCSync, RBCD, and ACL-based privilege escalation across complete attack chains.

ADCS · BloodHound · Kerberos · Rubeus · Certipy
Explore GitHub ↗

Credentials

Certified across practical penetration testing and red team operations.

CRTOCertified Red Team Operator
CPTSCertified Penetration Testing Specialist
CRTPCertified Red Team Professional

Capabilities

From infrastructure and initial access to lateral movement and domain dominance.

Adversary EmulationActive DirectoryKerberosADCS ESC1-ESC8C2 InfrastructureAV/EDR EvasionCredential AccessPythonPowerShellC#Burp Suite ProAPI Security