Blake Grosskopf · Offensive Security Researcher

I build cloud and enterprise labs, then break them, and write the defense that stops me.

I'm an aspiring red teamer, currently shadowing a red team while I build and break my own labs. I stand up cloud and enterprise environments from scratch, get in from the outside, and push through to full control, then write the defense that would have stopped me.

Operation Vermillion Drift · AzureGoat public URL → resource-group Contributor
  1. 01 Public blob recon T1526
  2. 02 App source disclosure T1530
  3. 03 Hardcoded secrets T1552.001
  4. 04 Forged admin JWT HS256
  5. 05 SSRF → file:// T1190
  6. 06 Storage key + SSH keys T1552.004
  7. 07 VM managed identity T1078.004
  8. 08 RG Contributor Impact
Walk the full chain

Approach

How I work

  1. Build

    I stand up the range myself in Terraform, on real cloud with real constraints, so the attack path is genuine rather than a screenshot.

  2. Break

    External-attacker lens, end to end: public exposure → tokens → secrets → subscription-level control. Evidence, not adjectives.

  3. Document

    Every finding maps to MITRE ATT&CK and ships with its defense: the control, the detection, and the one change that breaks the chain.

03Cert spine

  • SC-900 Security, Compliance & Identity Fundamentals Completed
  • CARTP Cloud Attack & Red Team Professional Active
  • SC-500 Cloud & AI Security Engineer Target
  • PNPT Practical Network Penetration Tester Target

Looking for an offensive, cloud, or web-app security researcher?

I'm open to roles and collaboration. The fastest way to gauge fit is to read a case study, then say hello.