Cybersecurity Researcher Portfolio — Security researcher specializing in kernel exploitation, eBPF, CTF competitions, and conference speaking.

THREAT LEVEL: CRITICAL SYS: ONLINE

security researcher // kernel explorer

YLL
BERISHA

OFFENSIVE SECURITY RESEARCHER  /  CTF PLAYER & VULNEARABLE MACHINE BUILDER  /  CONFERENCE SPEAKER  /  DEFCON 34 SPEAKER

3 Conferences
Presented
2 CTFs
Co-Hosted
#1 Iowa CTF
Rank
3 Companies
Worked
1 Technical Article
Published

scroll to descend

01 — profile

WHO AM I

Offensive Cybersecurity professional focused on offensive security, penetration testing, and red teaming, with hands-on experience identifying security weaknesses and supporting the development of more resilient systems.

Skilled in vulnerability research, security tooling, and improving organizational defenses through practical assessment and validation techniques.

Familiar with SOC environments, cloud security concepts, and threat intelligence analysis.

Driven by a strong interest in ethical hacking, modern attack techniques, and defensive cybersecurity practices through continuous learning and community contribution.

$ whoami
security_researcher@kernel_space
$ cat /proc/specialties
eBPF_rootkits | kernel_exploitation | ctf_design
conference_speaking | threat_research
$ sudo cat /etc/clearance
[REDACTED] — clearance level: deep
THREAT PROFILE // SKILLS MATRIX
Web Application Security
eBPF / Kernel Internals
CTF Design & Operations
Malware / Rootkit Analysis
Network Forensics
Threat Research & Writing
02 — experience

OPERATIONS LOG

current

Penetration Tester

Novus //  CLASSIFIED

Conduct web, internal, network, and cloud penetration testing to identify vulnerabilities, validate security controls, and uncover realistic attack paths. Perform manual and automated testing, exploitation, privilege escalation, and security assessments, delivering clear technical findings and actionable remediation guidance.

prior

Security Consultant

Sentry  //  CLASSIFIED

Delivered web application penetration testing by identifying vulnerabilities such as authentication flaws, access control issues, and injection weaknesses, along with clear remediation guidance; performed mobile application security testing for Android and iOS using static and dynamic analysis to detect insecure data storage, API vulnerabilities, and misconfigurations; and conducted internal network penetration testing involving network enumeration, vulnerability exploitation, privilege escalation, and lateral movement to evaluate the organization’s internal security posture.

prior

Offensive Security Researcher

Findbug  //  CLASSIFIED

Conducted penetration testing for media organizations and NGOs, identifying security vulnerabilities and helping strengthen their overall security posture. Authored detailed, high-quality security reports outlining discovered vulnerabilities along with clear and actionable mitigation strategies. These penetration testing engagements were funded by the U.S. Embassy as part of a grant awarded to the company.

origin

Cyber Security Intern

Starlabs  //  CLASSIFIED

Developed a Python-based dark web monitoring tool to detect leaked emails and improve breach awareness. Integrated OSINT techniques into security tools to enhance reconnaissance capabilities and support more effective intelligence gathering. Assisted in penetration testing projects with a focus on web application security and network hardening to strengthen overall system defenses.

03 — intelligence

THREAT INTEL

1st place
// COMPETITION

Iowa CTF — First Place

Participated in a blue team CTF focused on securing an Active Directory environment, implementing defensive controls and monitoring to protect against live attacks from red team participants.

international
// ENISA

ENISA International CTF Participant

Competed in the European Union Agency for Cybersecurity's international CTF — one of the most prestigious security competitions in the European Cyber Security community.

organizer
// CTF OPS

CTF Co-Host & Vulnerable Machine Builder

Designed and operated multiple CTF competitions. Built infrastructure, wrote challenges across categories, and moderated competitive play for security communities.

speaker
// PUBLIC

3× Security Conference Speaker

Delivered talks at three conferences on offensive security and AI security topics: DEF CON 34 Demo Labs on weaponizing eBPF/XDP for covert triggered reverse shells, a session on prompt injection attacks and mitigation techniques, and another on deepfakes, focusing on their creation, real-world risks, detection methods, and broader societal impact.

published
// RESEARCH

eBPF Rootkit Article

Authored a detailed technical article on building a rootkit using the eBPF subsystem — covering hooking strategies, userspace/kernelspace communication, and detection evasion.

community
// RESEARCH

Defcon Prishtina Contributer & CO-Organizer | DC-38338

Co-organized DEF CON Prishtina (DC38338), a cybersecurity community event bringing together hackers and security researchers to share techniques, run hands-on “villages,” and collaborate on offensive security topics.

04 — research

PUBLICATIONS

Building an eBPF Rootkit: Persistence, Evasion, and Kernel-Level Control

TYPE: TECHNICAL ARTICLE DOMAIN: KERNEL / OFFENSIVE STATUS: PUBLISHED

Authored a technical article on building an eBPF-based rootkit, covering techniques such as hiding its own PID, evading detection from tools like bpftool, spawning an encrypted reverse shell, and using XDP hooks triggered by a predefined “magic packet” for activation.

Read the article on Medium →
Source on GitLab (0xBabar0ka/Phantasma) →

eBPF Linux Kernel Rootkit Persistence Evasion Offensive Security BPF Maps Syscall Hooking

DEF CON 34 — Demo Labs Presentation

TYPE: SLIDE DECK DOMAIN: eBPF / XDP STATUS: DECLASSIFIED
⬇ DOWNLOAD PDF
05 — speaking

FIELD OPERATIONS

02
// conference speaker

Manipulate AI with Prompt Injection

Presented a conference talk on prompt injection attacks, explaining how attackers manipulate AI models by crafting deceptive inputs to bypass safeguards, disclose sensitive information, or alter responses. Covered the underlying mechanics of prompt injection, real-world applications, and best practices for mitigation. The session concluded with a live demonstration showcasing both attack techniques and defensive mechanisms in action.

03
// conference speaker

Deepfake: Threats to Society

Delivered a speaker session on deepfake technology, explaining how AI-generated images and videos are created and the processes behind their production, along with their increasing accessibility across both the surface web and dark web. Discussed detection methods, production costs of deepfakes, and broader political and social implications, including misinformation, identity theft, and election interference. The presentation also provided practical guidance on identifying deepfakes and reducing associated risks.

06 — ctf

CAPTURE THE FLAG

// top ranking
#1

Iowa CTF
Overall Champion 2023

[EU]
ENISA International CTF
Participated in the European Union Agency for Cybersecurity's flagship international CTF — competing against elite teams across Europe in a high-stakes multi-category tournament.
[H]
CTF Co-Host — Cyber Defense Albania 2024
Designed challenge infrastructure and authored web-based CTF categories, including vulnerabilities such as IDOR, SQL injection, XSS, and other common web exploitation techniques.
[H]
CTF Co-Host — EX Machina CTF
Built AI agents for red teaming and web penetration testing to automate vulnerability discovery and simulate attacker behavior, improving security testing and assessment workflows.
[?]
Wireless Village Workshop
Worked on a wireless village initiative focused on demonstrating and analyzing various wireless attacks and security weaknesses in real-world environments, along with practical exploration of defensive techniques.

07 — contact

ESTABLISH
CONTACT

I don't respond to everyone. If you're building something interesting in the kernel or offensive security space, or want a speaker who actually knows what they're talking about — reach out.

↑