About
I’m Bijay Upreti, an Offensive Security Consultant based in Brisbane, Australia. I focus on internal and external network penetration testing, Active Directory (on-prem, hybrid, and Entra ID), web and API testing, adversary simulation, and phishing campaigns for enterprise clients.
Day-to-day that means chaining small findings into full attack paths and writing reports that make sense to both technical teams and executives. Outside client work I build home labs — ProxMox, Windows AD, hybrid Entra setups — to research attack paths and tooling before they show up in engagements.
What you’ll find here
- Attack path walkthroughs — real lab captures, step-by-step from initial foothold to domain or tenant compromise.
- Notes — techniques, tooling, and methodology I want to document properly.
- Experiments — things I tried, what broke, and what actually worked.
Disclaimer
Everything here is for educational and authorized testing purposes only. Don’t use any of it against systems you don’t own or have explicit permission to test.
Contact
- Email: i@wingertries.net
- GitHub: @wingerbijay
- LinkedIn: bijayy-upreti
- TryHackMe: winger.bijay