About
I'm Taranveer Tengurchittoo, a staff DevOps and security engineer based in Mauritius. I work across cloud infrastructure, container orchestration, and offensive security. This site documents my penetration testing practice through CTF platforms, alongside a weekly security bulletin covering notable vulnerabilities and incidents.
Every writeup here follows a consistent methodology: reconnaissance, attack surface analysis, vulnerability research, exploitation, post-exploitation, and defensive analysis. The goal is to explain the why behind each decision, not just reproduce the steps. Each post includes MITRE ATT&CK mappings, remediation priorities, and detection opportunities for defenders.
What you'll find here
- CTF machine writeups with full attack chains
- Vulnerability analysis with CVE, CVSS, and CWE context
- Exploit development and privilege escalation techniques
- Defensive analysis with detection and remediation guidance
- Weekly security bulletins covering CVEs, incidents, and advisories
Background
By day, I build and secure distributed systems: multi-region Kubernetes clusters, CI/CD pipelines, and cloud infrastructure. The offensive security work directly informs how I design defences, and vice versa.
Get in touch
Reach out via email or find me on the usual security community channels.