Leo Tsaousis

Security Consultant / Security Researcher

leo.tsaou@gmail.com
linkedin.com/in/leonidastsaousis
github.com/LAripping

Summary


Information security professional with over 5 years of experience in the industry. Always seeking new challenges and opportunities to escape the comfort zone.
Confident in delivering and leading security assessments across the entire attack surface of a given target, both individually or as part of a team. Combining technical expertise and a consulting skillset to best advise on how to protect and defend digital infrastructure.
Keen on performing in-depth technical research, which has resulted in the discovery of several significant vulnerabilities against major vendors and reputable organisations, published and awarded with CVE IDs.

Certifications


4/2021

Offensive Security Experienced Penetration Tester (OSEP) -

by Offensive Security

Certificate ID: OSEP-26733

1/2019

Offensive Security Certified Professional (OSCP) -

by Offensive Security

Certificate ID: OS-101-036020

8/2022

AWS Certified Cloud Practitioner -

by Amazon Web Services

Experience


3/2022-8/2022

Hellenic Army -

Hellenic Ministry of Defence


Cyber Defence Department (Red Team)


  • Conducted internal security assessments
  • Participated in international cyber-readiness exercises commissioned by NATO
  • SOC duties on a weekly basis
  • Contributed tooling, automation scripts and improved pentest workflow procedures
9/2019-8/2021

F-Secure Consulting (MWR Infosecurity) -

Manchester, United Kingdom


Security Consultant


  • Led and delivered security assessments for companies in the UK and around the world
  • Experienced across all core service areas (appsec/netsec/mobsec), also delivered bespoke services such as design reviews and threat modelling exercises. Established testing methodologies which align with well-known standards such as the OWASP Security Testing Guides or CIS benchmarks
  • Interfaced directly with client Subject Matter Experts (SMEs) on a daily basis, effectively communicating status updates and explaining any critical issues. Focused on the continuous improvement of reporting skills, with an aim to abstract technical details to key stakeholders while proposing high level, yet to-the-point remedial plans
  • Avid and ongoing support to F-Secure's delivery pipeline by frequently taking up scoping opportunities (2nd top scoper in the UK as of leaving date) and performing Quality Assurance (QA) reviews on fellows' reports
  • Served as the Tech Lead for a strategic telecommunications organisation, establishing solid relationships with client contacts and greatly improving F-Secure's business presence in the sector while raising significant revenue. Responsibilities also included oversight of all relevant projects and leading of key assessments
  • Participated in advanced threat actor simulations such as Purple Team assessments and Attack Path Mapping exercises, against large Active Directory environments. Used frameworks such as Cobalt Strike and the MITRE ATT&CK matrix alongside veteran Red Teamers. Supported setting up Red Team Infrastructure
  • Vital, ongoing contributions to the mobsec service area - Delivered mobile security training internally
  • Developed internal tools and methodologies to automate testing and share knowledge among the team
3/2017-7/2019

NSO Group (CS Circles) -

Limassol, Cyprus


Information Security Researcher


  • Member of the Research and Reverse Engineering (RARE) team focusing on vulnerability discovery against mobile and WiFi platforms
  • Established a versatile reverse engineering approach combining a thorough static analysis skillset and proficiency with dynamic instrumentation frameworks
  • Developed thorougly documented Proof of Concent (PoC) deliverables in several programming/scripting languages, accompanied by write-ups/HowTos both detailing efforts and concisely summarising research activities
  • Led a team of 3 researchers, preserving efficient communication with the upper management while keeping the team motivated and curating their training
  • Volunteered in and created challenges for "Pentest Cyprus" a regional CTF competition co-hosted by UClan Cyprus and the University of Cyprus
7/2016-2/2017

Intracom Telecom -

Athens, Greece


Software Engineer


  • Worked on Intracom's proposed solution for management of multiple WiFi Access Points, built on top of the OpenStack Cloud platform
  • Contributed in the development (Python & Java), deployment, and end-to-end testing/automation processes, while familiarising with cloud and SDN fundamentals
  • Investigated OpenStack's authentication mechanism ("Keystone"), identified and corrected bad security practices including passwords disclosed in the logs and web interface
  • Wrote Bash and Puppet scripts to automate the working environment setup

Education


2012-2017

University of Athens (BSc)


Department of Informatics and Telecommunications


  • Specialisations in "Communications and Networking" and "Signal and Information Processing"
  • Certificate degree 8.93 / 10 : "Excellent"
  • 1.000€ Scholarship awarded by the Greek Post Offices (ELTA)
  • Notable software created as part of course assignments include: a C/C++ rainbow table-based password cracking tool (PassCrack), an ebay-like web marketplace written in Java (3bay), and a distributed network scanner system for Android devices (DistributedScanner)
7/2022

Antisyphon Training

(3 day training) -

Online/Remote


"SOC Core Skills with John Strand"

6/2019

Hack in Paris Trainings

(3 day training) -

Paris, FR


"Hacking IPv6 Networks"

5/2018

CanSecWest Dojos

(2 day training) -

Vancouver, CA


"Reversing for the JVM and Android"

9/2017

Systems and Networks Training Ltd

(2 day training) -

Limassol, CY


"Radio Frequency Fundamentals"

3/2016

Intracom Telecom & EESTEC LC Athens

(3 day training) -

Athens, GR


"Java Enterprise Edition Workshop"

Publications


CVE-2021-22268
CVE-2021-22269
CVE-2021-22270
CVE-2021-22271

"Click Here For Free TV! - Chaining Bugs to Takeover Wind Vision Accounts"

CVE-2020-26062
CVE-2020-26063

Cisco IMC Server - Authorisation Bypass and Username Enumeration

N/A

Xiaomi Redmi 5 Plus - Second Space Password Bypass

Languages


5/2010

English

- Excellent / Near-Native Level

"Certificate of Profieciency in English" -

The University of Michigan

6/2010

German

- Intermediate Level

"Goethe-Zertifikat B2" -

Goethe Institut Athen

Greek

- Native Languange