Lucas 'luriel' Carmo

Offensive Security Researcher

Penetration Tester

Red Team Operator

Hacking n' Roll

About Me
I'm Lucas Carmo, also known as Luriel.

I'm an Offensive Security Researcher and Senior Cybersecurity Engineer with more than 10 years of hands-on experience in penetration testing, vulnerability research, exploit development, red teaming, and security engineering.

My work spans web applications, APIs, mobile platforms, internal infrastructure, wireless environments, and adversary simulation. Over the years, I have disclosed 15+ CVEs affecting widely used products from vendors including Nagios, PRTG, 3CX, Centreon, ManageEngine, and Trend Micro.

I hold the OSWE, OSWP, and GIAC GMOB certifications and have presented offensive security research at international conferences including Security BSides Las Vegas and OrangeCon Amsterdam. I also contribute to open-source security projects and publish technical research focused on understanding systems deeply enough to break assumptions, uncover attack paths, and turn complex vulnerabilities into reproducible findings.

  • Age: 28
  • Residence: Canada
  • Location: Toronto, ON
  • Focus: Offensive Security & Vulnerability Research
What I Do
Offensive Security Assessments

Deep technical security assessments across web applications, APIs, mobile platforms, external attack surfaces, internal infrastructure, and complex enterprise environments, with an emphasis on manual testing, exploitation, attack-path discovery, and demonstrable impact.

Vulnerability Research

Security research focused on discovering previously unknown vulnerabilities through source-code analysis, reverse engineering, dynamic analysis, protocol inspection, attack-surface mapping, and systematic exploration of unexpected application behavior.

Exploit Development

Development of reliable proof-of-concept exploits and technical demonstrations designed to validate exploitability, understand root cause, measure real-world impact, and support responsible vulnerability disclosure.

Red Team & Adversary Simulation

Threat-driven offensive operations that emulate realistic adversaries by combining application, infrastructure, identity, wireless, social, and physical attack vectors to evaluate detection, response, and organizational resilience.

Highlights
Started studying offensive security at the age of 14 and entered the cybersecurity industry professionally at 18.
Disclosed 15+ CVEs affecting widely deployed enterprise products, including software from Nagios, PRTG, 3CX, Centreon, ManageEngine, and Trend Micro.
Maintains a hands-on security lab built around mobile devices, wireless hardware, embedded systems, and specialized offensive-security equipment.
I see vulnerability research as a creative discipline: understanding how individual components interact, challenging assumptions, and connecting seemingly unrelated behaviors until an attack path emerges.
Experience
Professional Experience
2026 - Present
Senior Cybersecurity Engineer
Elytron Cybersecurity

Executing offensive security assessments across web applications, APIs, mobile platforms, and infrastructure environments. Responsible for manual exploitation, attack-path analysis, vulnerability validation, technical reporting, and translating complex security findings into actionable remediation guidance.

September 2022 - October 2025
Co-Founder & Offensive Security Research Lead
Hakai Offensive Security

Co-founded an offensive security consultancy focused on penetration testing, red teaming, vulnerability research, and exploit development. Led technical initiatives to improve assessment quality, research methodology, team development, and offensive-security capabilities while conducting independent vulnerability research and contributing to the security community.

February 2022 - September 2022
Information Security Specialist
PicPay

Performed offensive security assessments and security engineering activities with a strong emphasis on mobile application security. Evaluated protections including SSL pinning, root and jailbreak detection, Frida and instrumentation detection, anti-tampering mechanisms, runtime protections, and application hardening controls.

August 2021 - February 2022
Technical Lead - Research & Development
Stone Co.

Led offensive security research and development initiatives supporting Stone and organizations across the broader group, including Pagar.me, Mundipagg, Equals, Cappta, and Elavon. Conducted vulnerability research, developed offensive techniques and tooling, and contributed to STOlabs security research activities.

June 2021 - August 2021
Information Security Specialist
Mercado Bitcoin

Conducted penetration testing and security engineering activities across application and mobile environments, including analysis of runtime protections, SSL pinning, anti-tampering controls, root and jailbreak detection, instrumentation resistance, and application security architecture.

December 2019 - June 2021
Senior Information Security Analyst
Stone Co.

Performed penetration testing and vulnerability research across enterprise applications and infrastructure supporting Stone and other organizations within the group. Participated in STOlabs, contributing to security research, vulnerability disclosure, offensive tooling, and the identification of vulnerabilities affecting widely adopted technologies.

July 2019 - December 2019
Red Team Analyst
Black Skull Security

Executed offensive security operations across web applications, mobile platforms, internal infrastructure, wireless networks, physical security, and adversary-simulation scenarios, focusing on realistic attack paths and practical exploitation.

June 2019 - July 2019
Information Security Analyst
Itaú Unibanco

Supported application security and penetration-testing activities with emphasis on mobile security engineering, runtime protections, SSL pinning, anti-tampering mechanisms, instrumentation detection, root and jailbreak detection, and defensive control validation.

Core Expertise
Offensive Security
  • Web & API Security
  • Mobile Security
  • Penetration Testing & Red Teaming
  • Vulnerability Research
Languages
  • Brazilian Portuguese
  • English
  • Spanish
Development
  • Python
    95%
  • JavaScript / TypeScript
    80%
  • Swift
    65%
  • Ruby
    55%
Research & Achievements
  • Offensive Security Web Expert (OSWE)
  • Offensive Security Wireless Professional (OSWP)
  • GIAC Mobile Device Security Analyst (GMOB)
  • Speaker — Security BSides Las Vegas 2025: Who Scans the Scanner? Exploiting Trend Micro Mobile Security
  • Speaker — OrangeCon 2025, Amsterdam: Who Scans the Scanner? Exploiting Trend Micro Mobile Security
  • Speaker — Hackers 2 Hackers Conference (H2HC): BEERUS.APK - Spotlighting Sandbox Exfiltration
  • Speaker — BSidesSP: Reconnaissance Like a Cyber Ninja
  • Speaker — NullByte Conference: Security Audit in Blockchain
  • Open-source contributor — ReconFTW Web Interface
  • Nagios — CVE-2019-15898, CVE-2021-28924, CVE-2021-28925
  • PRTG Network Monitor — CVE-2018-10253 / Exploit-DB 44500
  • 3CX — CVE-2018-14905, CVE-2018-14906, CVE-2018-14907
  • Centreon — CVE-2018-19311, CVE-2018-19312
  • ManageEngine ADAudit Plus — CVE-2018-19118
  • 15+ CVEs disclosed across enterprise software and security products