About
Information Security Student
Hi, I'm Nguyễn Giáp Anh Khoa.
I explore offensive security through hands-on labs, CTF competitions, and projects that turn security concepts into practical experience.
Focus
What I am working toward
My primary interest is Offensive Security, especially Web Application Penetration Testing. My goal is to become a professional penetration tester who can identify vulnerabilities and help organizations improve their security posture.
Web Security
Testing modern web applications, APIs, authentication flows, and access controls.
Network Security
Enumeration, traffic analysis, service assessment, and attack-path discovery.
Active Directory
Building foundational knowledge of Windows domains, privilege paths, and exploitation.
Toolkit
Technical skills
Programming
Security tools
Operating systems
Knowledge
Hands-on
Practical experience
I continuously improve through security labs and Capture The Flag competitions. I participated in BKISC CTF 2026 and THCon CTF 2026, solving beginner Web and OSINT challenges.
Build
Featured projects
Phishing Simulation Lab
A controlled lab using OWASP Juice Shop, Nginx, Evilginx2, and GoPhish to study Browser-in-the-Browser, clickjacking, homograph attacks, and proxy phishing.
DoS / DDoS Home Lab
A virtual environment with Kali Linux, Ubuntu, and Windows for simulating attacks, analyzing traffic in Wireshark, and evaluating firewall and IP-blocking mitigations.
Now
Current learning
- Hack The Box Academy Penetration Tester Path
- Web Application Security
- Active Directory Exploitation
- Privilege Escalation
- Malware Analysis
- Technical Report Writing
Learning platforms
Hack The Box AcademyTryHackMe PortSwigger AcademypicoCTF Cisco Ethical HackerElsewhere
Find me online
Let's connect