Low-Level Engineer · Red Team Operator

Piyusha
Akash

// 0x3xp

Low-level engineer operating at the boundary where operating systems expose their internals. I build custom syscall stubs, dissect binaries, craft stealthy payloads, and conduct adversary emulation to stress-test real defenses — not a script kiddie, a researcher.

operator_profile.c
01/* Piyusha Akash — Low Level Engineer */ 02 03#include <windows.h> 04#include <ntdll.h> 05 06typedef struct { 07  LPCSTR role = "Low Level Engineer"; 08  LPCSTR ops[] = { 09    "Malware Dev", 10    "Reverse Eng", 11    "Penetration Testing", 12    "Exploit Dev", 13    "EDR Evasion" 14  }; 15  BOOL hireable = TRUE; 16  DWORD ring = 0x00; 17  LPCSTR origin = "LK"; 18} OPERATOR; 19 20// ring-0 or nothing 21// build it. don't use it.
8+Projects
R-0Ring Level
1+Publications
🇱🇰Origin
01 — About

Operator Profile

identity.struct
ROLELow Level Engineer
LAYERRing-0 / Kernel
FOCUSWin32 Internals
STYLEResearcher, not skiddie
STATUSHIREABLE
LOCATIONSri Lanka 🇱🇰
CLEARANCERED TEAM

I am a low-level engineer — not a script kiddie, not a tool user. I operate at the boundary where operating systems expose their internals: syscall tables, PE structures, callback arrays, and undocumented kernel routines.

My research focuses on Windows OS internals — understanding what the kernel permits, what EDRs monitor, and where the gaps between them live. I build custom tooling in C, C++, and x64 Assembly to explore and document these mechanisms. I also conduct penetration testing and full-scope red team engagements.

I approach security as a researcher: adversary emulation to harden defenses, reverse engineering to understand tradecraft, and low-level development to push the boundary of what detection can see.

WIN32 API WINDOWS INTERNALS SYSCALL FORGE EDR EVASION CALLBACK ABUSE NTDLL INTERNALS PE FORMAT SHELLCODE DEV ADVERSARY EMULATION PENETRATION TESTING IDA PRO GHIDRA EXPLOIT DEV
02 — Skills

Technical Arsenal

// Programming Languages
C / C++
x86-64 Assembly (NASM / MASM)
Bash / Shell Scripting
Rust  // learning
// Discipline Proficiency
Windows OS Internals
Malware Development & EDR Evasion
Reverse Engineering (IDA Pro / Ghidra)
Penetration Testing & Red Teaming
Exploit Development
// OS Layer
NT Internals Win32 API NTDLL Syscall Tables PEB / TEB PE Format
// Offensive
Shellcode Dev EDR Evasion Process Injection Direct Syscalls Stack Spoofing Callback Abuse
// Analysis Tools
IDA Pro Ghidra WinDbg x64dbg PE-Bear Procmon Frida
// Red Team Ops
Adversary Emulation Network Pentest Cobalt Strike Metasploit OSINT Web App Testing
03 — Projects

Project Portfolio

ARTEMIS
v1.0.0  ·  Syscall Forge Framework  ·  Latest Release

A modular offensive security framework written in C and x86-64 Assembly — operating entirely below the user-mode API layer, rendering EDR hook-based telemetry blind. Features a 14,869-entry SSN database, MASM stub generation, and multi-algorithm encryption.

HUNTER
Dynamic SSN discovery across 14,869 database entries · Win10/11 · x64/x86
BLACKSMITH
MASM-ready stub forge · Direct & Indirect syscall modes · Stack spoofing
CRYPTO VAULT
XOR / Rolling XOR / RC4 — shields stubs from memory scanners & static AV
C x64 ASM MASM Syscall Forge EDR Evasion RC4 SSN Discovery
View on GitHub ↗
05 — Credentials

Professional Certs

SecOps Group
NEW
CBFRPro
Certified Binary Fuzzing & Reverse engineering Professional, Reverse engineering, Binay exploitation, real-world methodology.
Verify Credential - 11705476 ↗
Hackviser
CAPT
Certified Associate Penetration Tester — Hands-on offensive security, vulnerability assessment, real-world methodology.
Verify Credential ↗
Red Team Leaders
COWA
Certified Offensive Windows API — Advanced Win32/NT exploitation, process injection, DLL hijacking, offensive tooling development.
Cisco Network Academy
Introduction to Cybersecurity
Threat landscape, attack vectors, and defensive practices.
Computer Hardware Basics
Hardware fundamentals and component-level understanding for security practitioners.
Getting Started with Packet Tracer
Network simulation, topology design, and Cisco Packet Tracer.
Security Blue Team
Introduction to OSINT
Intelligence gathering, target profiling, and passive reconnaissance methodology.
Introduction to Virtual Machines
Virtualization fundamentals, hypervisor types, and secure lab environment setup.
OPSWAT Academy
Introduction to Cybersecurity
Core security principles and critical infrastructure protection fundamentals.
Linux Foundation
LFS101 — Introduction to Linux
Linux fundamentals, shell, filesystem, process management, system administration.
08 — Interactive Lab

Terminal Session

piyusha@ring0 — ~/0x3xp
piyusha@ring0:~$ 
09 — Contact

Let's Work

Ready
to Breach.

Looking for a low-level engineer who understands the kernel, thinks like an adversary, and delivers research that actually matters? Available for red team engagements, malware research, and security consulting.

Available for Engagements
Send a Message
// Opens your mail client · contact.piyushaakash@gmail.com