CrowdSec Locked Me Out of My Own Server
A post-mortem: how an intrusion-prevention system banned my homelab IP and removed all access at once, how I got back in, and the two-layer whitelist that stops it happening again.
$ whoami
Cybersecurity Engineer · Pentester
$ cat about.txt
5+ years of experience in technical audits and penetration testing across Web/API, Mobile, and Internal/AD scopes. Specialized in business-risk-oriented reporting and automation.
$ ls ~/skills
web-api-pentest/mobile-ios-android/active-directory/red-team/config-audits/code-review/osint/reporting/
$
A post-mortem: how an intrusion-prevention system banned my homelab IP and removed all access at once, how I got back in, and the two-layer whitelist that stops it happening again.
Building and running Headplane against a self-hosted Headscale control server — the requirements the docs get wrong, and the two permissions traps that keep it in a crash loop.
Centralising logs from ten machines into Loki with rsyslog and Alloy, adding metrics with Prometheus, and building the dashboards that answer security questions.
4461b49(HEAD -> present)WorkItOut — Founder
Mar 2026 – present
Full-stack web, iOS, and Android platform with security-by-design approach.
bfa3bbdAmaris France — Pentester Consultant
Sep 2025 – Feb 2026
White-box tests on web apps and Azure infrastructure, cloud IAM audits.
d3b7b94CS Novidy's — Pentester
Mar 2022 – Jul 2024
Web, mobile, internal/AD pentests and red teaming engagements.
fc358c6Orange Cyberdefense — Pentester
Oct 2019 – May 2021
Penetration tests across multiple scopes; internal AD compromise of 1,500 servers.
0264792Eureden / Triskalia — Apprentice
Sep 2016 – Aug 2019
Vulnerability analysis, security automation, Zscaler deployment.