┌──────────────────────────────────────────────────────────────┐
│ $ whoami │
│ │
│ Cybersecurity-focused developer and security enthusiast │
│ interested in understanding how systems, networks and │
│ applications actually work underneath the surface. │
│ │
│ I learn by building, breaking, analyzing and rebuilding │
│ systems in controlled environments. │
└──────────────────────────────────────────────────────────────┘
TCP/IP IPv4 / IPv6 DNS
DHCP HTTP/HTTPS SSH
FTP SMTP/POP/IMAP Routing
Firewalls Proxies VPN
[ RECON / NETWORK SECURITY ]
Nmap • Wireshark • tcpdump • Netcat
Masscan • Amass • RustScan
Proxychains • Bettercap • NetCut
Aircrack-ng
[ WEB / API / APPLICATION SECURITY ]
Burp Suite • OWASP ZAP
Nuclei • Nikto • SQLMap
Metasploit • ffuf
[ VULNERABILITY MANAGEMENT ]
Nessus • OpenVAS / Greenbone
Qualys • Nuclei • Trivy
Lynis
[ IDENTITY / WINDOWS SECURITY ]
BloodHound • Mimikatz
Impacket • CrackMapExec
Responder • PowerShell
Active Directory Security
[ PASSWORD / CREDENTIAL SECURITY ]
Hashcat • John the Ripper
Hydra • SecLists
[ MALWARE / REVERSE ENGINEERING ]
Ghidra • Cutter • IDA
x64dbg • GDB
PEStudio • PE-Bear
Cuckoo • REMnux
FakeNet-NG • Regshot
[ FORENSICS / INCIDENT RESPONSE ]
Autopsy • Volatility
Sysinternals • Procmon
Velociraptor
[ SIEM / DETECTION / SOC ]
Splunk • Wazuh • ELK Stack
Suricata • Snort • Zeek
Microsoft Sentinel
[ CLOUD SECURITY ]
Prowler • ScoutSuite
AWS CloudTrail • AWS GuardDuty
Microsoft Defender for Cloud
Google Security Command Center
[ THREAT INTELLIGENCE ]
MITRE ATT&CK • Maltego
MISP • YARA
VirusTotal
[ CONTAINER / DEVSECOPS ]
Trivy • kube-bench
Docker Security • Kubernetes Security
Linux → Ubuntu • Kali Linux • REMnux • BlackArch
Windows → Security & Administration
Virtualization → VirtualBox • VMware
Containers → Docker
Subsystem → WSL2
Understand the system → Identify the attack surface → Think like the attacker → Build better defenses.


