Eric Labrador

Eric Labrador

Profiles

Bio

Eric Labrador is a Senior Red Team Operator with 6+ years of experience working across the full offensive security lifecycle — from Red Team and Purple Team exercises and physical intrusion operations to external and internal penetration tests — against enterprise and financial sector organizations, including SWIFT network environments.

His technical coverage spans web and API security, Android and iOS application assessments, thick client testing, endpoint security, cloud infrastructure across Azure, AWS, and GCP, Kubernetes cluster security, OT/ICS environments, and AI and LLM-based systems. Beyond hands-on testing, he brings source code review depth across NodeJS, PHP, C#, C++, Java, and other languages, and contributes actively to R&D initiatives.

Recognized contributor to the offensive security community through open-source tooling published on Burp Suite's BApp Store and published vulnerability research. Active bug bounty hunter on HackerOne with confirmed findings across multiple programs. Speaker at The Bug Hunter's Methodology Live from Jason Haddix on advanced reconnaissance techniques, and speaker at DEF CON 34 where he presented Certified Re-Pwned: Escalating All the Way Up.

Certifications & Trainings

BSCP OSCP CRTO CRTP eWPTXv2 PNPT OSWP

Research Portfolio

Talks & Conferences

Published Research

Featured

Tools & Automation