ABOUT / MUHAMMAD ICHWAN, KNOWN AS BANUA

OFFENSIVE MINDSET.
PRACTICAL EXPERIENCE.

I’m Muhammad Ichwan, known as Banua. I specialize in offensive security,
with a focus on red teaming and penetration testing.

Muhammad Ichwan, known as Banua

I specialize in offensive security, with a focus on red teaming and penetration testing. My work focuses on understanding how an adversary could compromise a system and translating those findings into practical security improvements.

My experience

I have experience conducting red teaming and penetration testing across:

  • Web applications: assessing application behavior and identifying exploitable vulnerabilities.
  • Mobile applications: testing mobile applications and their supporting services.
  • APIs: examining authentication, authorization, and exposed functionality.
  • Networks and infrastructure: identifying weaknesses and exploring attack paths across connected systems.

My experience also includes phishing campaigns and source code review as part of offensive security assessments.

My approach

I approach assessments from an adversary's perspective, connecting individual weaknesses to their potential impact. Clear explanations matter as much as technical findings: the goal is to help people understand the risk and act on it.

What I share here

This blog contains my CTF writeups, offensive security notes, and practical lab walkthroughs. I document the techniques, reasoning, and lessons behind each challenge so others can follow the process.

For questions about my work, security assessments, or an article, visit the contact page.

DISCUSS YOUR NEXT SECURITY ASSESSMENT.

LET’S CONNECT.

GET IN TOUCH