Penetration Testing

Obsessed with Pentesting

Hello, my name is Rian Friedt, and I am a penetration tester focused on offensive security, Active Directory exploitation, red teaming, web application security, and AI security. I have conquered many of the flagship offensive-security certifications, labs, and challenge paths across platforms like OffSec and Hack The Box, building a strong practical foundation in ethical hacking, wireless security, enterprise attack paths, adversary simulation, and modern AI security. I am focused on applying practical red teaming and penetration testing skills to help organizations strengthen their security posture against evolving threats.

Learn More

What I’m working on

...
HTB Academy Student Transcript
Learning Progress

Download here: HTB Academy Student Transcript.27.12.2024
Company: Hack the Box Academy (Active Directory Penetration Tester)

Projects

...
OffSec Experienced Penetration Tester (OSEP)
Certification

The OffSec Experienced Penetration Tester (OSEP) was a focused three-month advanced exploitation project. It strengthened my ability to chain attacks in mature environments, work through evasive tradecraft, perform client-side attacks, tunnel and pivot through networks, and document complex attack paths clearly.Focus areas: Windows exploitation, AV and application-control bypass concepts, client-side...
Company: OffSec Experienced Penetration Tester (OSEP)

...
Certified Penetration Testing Specialist (HTB CPTS)
Certification

The HTB Certified Penetration Testing Specialist (HTB CPTS) was a two-year practical learning path around end-to-end penetration testing methodology. It covered enumeration, exploitation, web attacks, privilege escalation, pivoting, Active Directory, and professional reporting before I passed the exam on 28 September 2025.Focus areas: structured enumeration, web application attacks, Linux and...
Company: Hack the Box Academy (Penetration Tester Job Role Path)

...
HTB Certified Active Directory Pentesting Expert (HTB CAPE)
Certification

The HTB Certified Active Directory Pentesting Expert (HTB CAPE) was a long-term Active Directory certification project. I spent roughly one year building depth in Windows tradecraft, AD exploitation, lateral movement, privilege escalation, evasion-aware methodology, and reporting before passing the exam on 26 January 2026.Focus areas: Active Directory attack paths, Kerberos,...
Company: Hack the Box Academy (Active Directory Penetration Tester)

...
Hack The Box: Grandmaster
Achievement

I reached Hack The Box Grandmaster rank on the ADonisRian #DE profile. This milestone reflects long-term hands-on progress across Hack The Box machines, labs, Academy content, challenges, and practical offensive security training.Profile: Level 91, Grandmaster rank.
Company: Hack The Box (Grandmaster)

Case Studies

Case Study: Bare-Metal Offensive Security Lab
Case Study: Bare-Metal Offensive Security Lab
Case Study

How the home-server lab supports repeatable AD, wireless, endpoint, and red-team practice.

Case Study: Active Directory Practice With Ludus and GOAT
Case Study: Active Directory Practice With Ludus and GOAT
Case Study

How I use Ludus and GOAT-style AD labs to practice attack paths and reporting.

Case Study: Payload Research Without Publishing Bypass Recipes
Case Study: Payload Research Without Publishing Bypass Recipes
Case Study

Responsible endpoint research focused on detection behavior and defensive value.

Experience

Cyber Security / Penetration Testing
Mindbytes GmbH, Cyber Security / Penetration Testing
Germany / Online | January, 2025 - May, 2026

Professional role at Mindbytes GmbH since January 2025, focused on cybersecurity, penetration testing, technical implementation, and practical security projects.

Hack the Box Academy (Penetration Tester Job Role Path)
Hack the box,
Online | September, 2023 - September, 2025

Two years of hands-on CPTS preparation through HTB Academy and practical labs, focused on end-to-end penetration testing methodology, exploitation, privilege escalation, pivoting, Active Directory, and reporting.

OffSec Experienced Penetration Tester (OSEP)
OffSec, OffSec Experienced Penetration Tester (OSEP)
Online | September, 2025 - December, 2025

Three months of advanced penetration testing preparation for OSEP, focused on exploit development, client-side attacks, antivirus and application control bypasses, lateral movement, pivoting, and reporting under exam-style constraints.

Hack the Box Academy (Active Directory Penetration Tester)
Hack the Box,
Online | January, 2025 - January, 2026

One year of focused Active Directory study and practice for the HTB CAPE certification, including Windows exploitation, AD attack paths, lateral movement, privilege escalation, evasion, and reporting.

Certifications

Badges & Skills

Education

High School
Gymnasium September, 2011 - July, 2019

College
September, 2021 - September, 2022

Cyber Security & Privacy

Self-directed learning
Self-directed / Online September, 2022 - May, 2026

Continuous self-directed learning in offensive cyber security, penetration testing, Active Directory security, exploit development, red teaming, AI security, and hands-on lab work.