Skip to content
View JoyGhoshs's full-sized avatar
🇧🇩
Bangladeshi
🇧🇩
Bangladeshi

Block or report JoyGhoshs

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
joyghoshs/README.md

Abdur Rahman Maheer

armx64 · Senior Penetration Tester · Offensive Security Researcher · Builder

GitHub followers Medium LinkedIn Location Profile Views


whoami

$ id
uid=1337(armx64) gid=security(researcher) \
groups=red-team,vapt,exploit-dev,ai-security,bangladesh

$ cat /etc/passwd | grep armx64
armx64:9+ years offensive security, pentesting, research, open-source tooling

9+ years breaking things professionally.

I work at CipherShield as a Senior Penetration Tester, focusing on offensive security and security assessments. Outside the day job, I run research and open-source work through System00 Security and publish hands-on vulnerability research at armx64.medium.com.

My work sits at the intersection of red teaming, vulnerability research, Windows/Linux internals, AI security, exploit development, and practical offensive tooling.

Recent research has focused on attack surfaces that live between traditional security boundaries — WSL/Windows interoperability, Microsoft Defender internals, MCP security, autonomous AI agents, and unconventional C2 infrastructure.


Latest Research

Article Focus
Abusing WSL Interop: An Offensive Deep-Dive into Microsoft's Stealth VM WSL2 · Endpoint Evasion · Persistence
RoguePlanet: From Defender to Attacker Windows Internals · Defender · LPE
A Pentester's Guide to the Model Context Protocol (MCP) AI Security · MCP Pentesting
Type Confusion in Adminer → Persistent DoS Vulnerability Research
Emergence Without Understanding: LLM Social Network Postmortem AI Agents · Security Research
Abusing Image Hosting Service as C2 Server C2 · Red Team Infrastructure
Chaining CVE-2024-24919 — Check Point LFI CVE Exploitation · LFI

Current Focus

  • Red Team Operations — OPSEC-aware adversary simulation and offensive security
  • Windows Internals — Defender attack surface, WSL, privilege boundaries, endpoint evasion
  • Vulnerability Research — type confusion, LFI chains, application and infrastructure flaws
  • AI × Security — MCP pentesting, agent security, tool poisoning and autonomous-system threats
  • Offensive Tooling — maintainable security tooling in Python, Go, TypeScript, Bash, C and PHP

Stack

Python Go TypeScript Bash C PHP Linux Windows


Research. Break. Understand. Build.

Pinned Loading

  1. ctf-challenges ctf-challenges Public

    CAPTURE THE FLAG CHALLENGES

    PHP 2

  2. HayaGuard HayaGuard Public

    Forked from System00-Security/HayaGuard

    Privacy-focused Facebook client with on-device ML content filtering, tracker blocking, and feed analytics.

    Kotlin 1

  3. ImgBB-c2 ImgBB-c2 Public

    Serverless C2 POC which Uses ImgBB as C2 Server & Transmitting command and recivng data

    Go 1

  4. EtherSRCPull EtherSRCPull Public

    pulls eth contract source from etherscan

    Python 1

  5. PenNoteAI PenNoteAI Public

    An Obsidian plugin that acts as an agentic AI assistant for penetration testing notes — it searches the web, crawls sources, and writes verified findings directly into your vault.

    TypeScript 2 1

  6. System00-Security/Ghost-Key System00-Security/Ghost-Key Public

    Android Bluetooth HID Emulation Framework

    Kotlin 6