About
Jake Otte
Red Team Operator Security Researcher
I’m a red team operator at Armadin, running full-scope offensive engagements in enterprise environments and helping evaluate and improve an AI-assisted attack platform.
Work in practice
I work across AWS, Azure, Entra ID, Active Directory, internal networks, and web applications. I’ve owned engagements from scoping through executive readout and tested organizations across financial services, aviation, higher education, healthcare, and SaaS—including more than 70 penetration tests in a prior role.
Current interests
I spend most of my research time on Windows post-exploitation, cloud-to-AD attack paths, native-tool operations, and EDR evasion. At Armadin, I also contribute to attack-path collection and network misconfiguration detection for an AI-assisted offensive platform.
Why I write
This site is my working notebook for techniques that proved useful, assumptions worth challenging, and technical details that rarely survive an executive summary. My public work includes documenting klist.exe as a post-exploitation LOLBIN and building tooling to extract Kerberos tickets in ccache format.