AMVAT Labs
AMVAT Labs is a cyber security practice and documentation platform my teammate and I co-founded, publicly sharing hands-on work across both blue team (network security, threat detection, SIEM/IDS) and red team (web application penetration testing, ethical hacking write-ups) sides of the discipline.
Overview
AMVAT Labs is a hands-on homelab my teammate and I co-founded and continue to operate together, built to practice and document both sides of security work end to end — blue team detection engineering and red team offensive testing — rather than just reading about either.
Highlights
Blue team
- Designed a segmented virtual network using Proxmox and OPNsense, implementing VLANs and zone-based firewall policies to simulate an enterprise environment for security testing.
- Deployed Wazuh as a SIEM/XDR platform for centralized monitoring and automated incident response, configuring Active Response to automatically block threats in real time.
- Integrated Suricata IDS with custom detection rules and Emerging Threats rulesets, validating network-level threat detection through packet capture analysis and MITRE ATT&CK mapping.
Red team
- Conducted web application penetration testing exercises, documenting findings in pentest report format with remediation guidance.
- Publish ethical hacking write-ups and walkthroughs alongside the defensive work — attacking the same kind of environment we spend the rest of our time defending.
Full write-ups are published at amvatlabs.com.