Penetration Testing

Obsessed with Pentesting

Hello, my name is Rian Friedt, and I am a penetration tester focused on offensive security, Active Directory exploitation, red teaming, web application security, and AI security. I hold certifications and achievements including HTB CAPE, OSEP, HTB CPTS, OSCP+, OSCP, CRTO, CRTP, OSWP, C-ADPENX, and Hack The Box Grandmaster. These have provided me with a strong practical foundation in ethical hacking, wireless security, Active Directory exploitation, adversary simulation, and modern AI security. I am particularly focused on gaining real-world experience in red teaming and penetration testing to help organizations strengthen their security posture against evolving threats.

Learn More

What I’m working on

...
HTB Academy Student Transcript
Learning Progress

Download here: HTB Academy Student Transcript.27.12.2024
Company: Hack the Box Academy (Active Directory Penetration Tester)

...
My Journey: A Personal Hacking Blog

This blog is a project of mine to share what I’ve learned along the way. Here, you'll find write-ups of my hacking experiences, insights from penetration testing, and reviews of CAPE certification modules. My goal is to document my journey and connect with others who share a curiosity for the...

Projects

...
Certified Red Team Professional (CRTP)
Certification

I am proud to announce that I successfully passed the **Certified Red Team Professional (CRTP)** exam on **October 18, 2024**. This certification is a testament to my expertise in attacking and exploiting Active Directory environments, focusing on advanced red teaming techniques, including privilege escalation, lateral movement, and bypassing security controls....
Company: Altered Security (CRTP)

...
Hacking Lab (VM)
Hacking Lab

My secure network sandbox for practicing hacking skills and learning in a safe virtual machine environment is a custom-built lab designed to simulate real-world penetration testing scenarios. The lab includes an Active Directory (AD) environment along with intentionally vulnerable Windows and Linux machines, providing a comprehensive platform for honing offensive...

...
Certified Penetration Testing Specialist (HTB CPTS)
Certification

The HTB Certified Penetration Testing Specialist (HTB CPTS) was a two-year learning project around practical penetration testing methodology. It covered enumeration, exploitation, web attacks, privilege escalation, pivoting, Active Directory, and professional reporting before I passed the exam on 28 September 2025.
Company: Hack the Box Academy (Penetration Tester Job Role Path)

...
HoneyPot

I'm currently using a powerful honeypot called Tpot, provided by Telecom, to expose the constant barrage of hackers attempting to infiltrate servers from all corners of the globe. A honeypot is essentially a trap I've set up to attract these malicious individuals and observe their tactics in action. By live-streaming...

Experience

Hack the Box Academy (Penetration Tester Job Role Path)
Hack the box,
Online | September, 2023 - September, 2025

Two years of hands-on CPTS preparation through HTB Academy and practical labs, focused on end-to-end penetration testing methodology, exploitation, privilege escalation, pivoting, Active Directory, and reporting.

The SecOps Group (C-ADPENX)
The SecOps Group,
Online | April, 2025 - May, 2025

One month of intensive Active Directory preparation for C-ADPENX, focused on enterprise attack paths, privilege escalation, lateral movement, and domain compromise techniques.

Hack The Box Pro Labs (Zephyr)
Hack The Box,
Online | May, 2025 - June, 2025

One month in Hack The Box Pro Labs: Zephyr, focused on enterprise Active Directory enumeration, pivoting, relay attacks, privilege escalation, web application issues, and trust boundaries.

OffSec Experienced Penetration Tester (OSEP)
OffSec, OffSec Experienced Penetration Tester (OSEP)
Online | September, 2025 - December, 2025

Three months of advanced penetration testing preparation for OSEP, focused on exploit development, client-side attacks, antivirus and application control bypasses, lateral movement, pivoting, and reporting under exam-style constraints.

Certifications

Badges & Skills

Education

High School
Gymnasium September, 2011 - July, 2019

College
September, 2021 - September, 2022

Cyber Security & Privacy

Self-directed learning
Self-directed / Online September, 2022 - May, 2026

Continuous self-directed learning in offensive cyber security, penetration testing, Active Directory security, exploit development, red teaming, AI security, and hands-on lab work.