~/about/

About Me

From web dev to CTF player to professional pentester.

Synx

Synx

Junior Pentester @ Mayaseven

I'm Synx, a Junior Penetration Tester at Mayaseven, a cybersecurity company based in Thailand.

My journey into security started through web development — understanding how applications are built helped me understand how they break. I transitioned into CTF competitions in 2022, which sharpened my problem-solving skills and introduced me to the offensive security mindset.

I specialize in Active Directory security and Web Application Penetration Testing. I'm particularly fascinated by AD attack chains — from initial access through BloodHound path analysis to full domain compromise.

Currently pursuing CRTP (Certified Red Team Professional) and planning my OSCP journey. I also maintain an Active Directory home lab for continuous practice.

When I'm not hacking (legally), I write blog posts about security topics and contribute to the Thai cybersecurity community.

$ whoami

Name
Synx
Role
Junior Pentester
Company
Mayaseven
Location
Thailand 🇹🇭
Education
B.Eng CoE, KKU
Languages
TH / EN

$ interests

AD SecurityWeb AppSecCTFRed TeamingOSINTMalware Analysis

# Career Journey

1

B.Eng Computer Engineering

2020–2024
Khon Kaen University (KKU)

Studied Computer Engineering with focus on networks and systems programming.

2

Started CTF

2022
Self-taught

Began participating in Capture The Flag competitions. Fell in love with web challenges and binary exploitation.

3

Web Developer (Internship)

2023
Various

Worked as a web developer intern. Built full-stack apps — this gave me a deep understanding of how web vulnerabilities actually work.

4

CRTA Certified

2024
Altered Security

Earned Certified Red Team Analyst (CRTA). Specialized in Active Directory attack paths, Kerberos attacks, and lateral movement.

5

Junior Penetration Tester

2024–Present
Mayaseven

Performing web app and network pentests for clients. Building internal tooling. Working toward CRTP and OSCP.