Skip to content
View Guilhermemury's full-sized avatar

Highlights

  • Pro

Block or report Guilhermemury

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Guilhermemury/README.md

Guilherme Mury

Cybersecurity Engineer • Penetration Tester & Security Researcher • Red Team


🔐 About Me

Information Security professional with a strong focus on Red Team Operations and Penetration Testing. My offensive approach is enhanced by a solid background in defense (Blue Team/SOC), where I led incident response and monitoring efforts. This hybrid perspective allows me to simulate attacks with higher strategic precision and a business-centric focus.


🛡️ Research & CVEs

I actively contribute to the cybersecurity community through vulnerability research and responsible disclosure.

  • CVE-2025-67877 – Vulnerability discovered through manual source code review.
  • CVE-2026-33288 – Security flaw identified during independent research.
  • CVE-2026-33289 – Security flaw identified during independent research.

💼 Technical Skills

  • Offensive Security: Pentesting (Web/Infra), Vulnerability Exploitation, Lateral Movement, Active Directory Attacks.
  • Defense & Management: Vulnerability Management, Hardening, Log Analysis.
  • Cloud & DevSecOps: Cloud Security and integration of analysis tools (SAST/DAST).

🛠️ Tech Stack & Frameworks

Category Tools & Frameworks
Pentest & C2 Burp Metasploit Cobalt HAVOC Nmap Nessus
Exploitation & AD Mimikatz BloodHound Impacket NetExec Responder
Methodologies MITRE OWASP NIST

📌 Projects & Activities

  • Sentinel – ASM Platform for attack surface assessment.
  • CTFHero – Framework for automating Capture-The-Flag activities.
  • Red Vs. Blue Lab – Dedicated environments for exploitation practice, exploit development, and security analysis.
  • Pentest Task Automation – Custom scripts to streamline enumeration and evidence collection.

🎓 Courses, Certifications & Education

  • B.S. in Analysis and Systems Development
  • DESEC Security: DCPT | DESEC Certified Penetration Tester
  • CyberWarfare: CRTA | Certified Red Team Analyst
  • (ISC)² CC | Certified in Cybersecurity
  • INE: eJPTv2 | eLearn Security Junior Penetration Tester V2
  • TheSecOpsGroup: CAPen | Certified APPSEC Pentester
  • TheSecOpsGroup: CNSP | Certified Network Security Practitioner

📫 Contact

LinkedIn Email Website


Profile Views

Pinned Loading

  1. ctfhero ctfhero Public

    Framework de automação de reconhecimento para desafios de CTF e Pentesting.

    Python