Cybersecurity trainer and SOC-focused security researcher.
I spend most of my time building security labs, testing SIEM workflows, creating student-friendly projects, and documenting practical attack and detection scenarios.
Portfolio: https://yoonas18.github.io/portfolio/
- SOC monitoring and log analysis
- SIEM labs and detection rules
- Azure Sentinel and Defender experiments
- Web and Android pentesting practice
- Python/FastAPI security tools
- Cybersecurity training labs for beginners
- Threat detection and triage workflow design
A defensive endpoint triage and detection platform I built to help spot RAT-like behavior across Windows, Linux, and Android ADB-connected devices.
It focuses on clear evidence, practical risk scoring, MITRE ATT&CK mapping, and a clean investigation workflow that is easy to explain during reviews and demos.
Tech used:
- Python
- FastAPI
- HTML/CSS/JavaScript
- psutil
- Pydantic
- Android ADB
Repo: https://github.com/Yoonas18/ratshield-xdr-pro Live page: https://yoonas18.github.io/ratshield-xdr-pro/
A file integrity monitoring project I built to understand how file change detection works in real environments.
It checks file hashes, records changes, and sends events to a small backend.
Tech used:
- Python
- FastAPI
- SQLite
- SHA-256 hashing
- n8n webhook testing
Repo: https://github.com/Yoonas18/fim-security-automation
A mini SIEM-style project made mainly for students and freshers.
The idea was simple: show how logs are collected, parsed, matched with rules, and converted into alerts.
Repo: https://github.com/Yoonas18/logsight-siem
Built and deployed an internal exam portal for conducting cybersecurity assessments.
This project was mainly created for practical batch evaluation.
Features included:
- student login
- MCQ exam flow
- scoring system
- result handling
- admin-side workflow
Set up a small honeypot-style lab to observe SSH brute-force attempts.
Worked with:
- Ubuntu VM
- Syslog
- Azure Sentinel
- KQL queries
- alert rules
- attacker IP investigation
This project helped me understand how real logs look when exposed systems start getting attacked.
Created SOC-style scenarios for training and practice.
Topics included:
- brute-force login attempts
- scanning activity
- suspicious RDP activity
- Azure log investigation
- SIEM alert triage
Repo: https://github.com/Yoonas18/soc-attack-simulations
Built Android testing labs using:
- AndroGoat
- DIVA
- Frida
- Drozer
- adb
- Burp Suite
Focused mainly on dynamic testing, app behavior review, and SSL pinning bypass practice.
- Defensive endpoint triage
- Malware indicator review
- MITRE ATT&CK mapping
- Android ADB inspection
- Risk scoring and reporting
- FastAPI dashboards
- Threat hunting lab design
- SIEM alert investigation
This repo contains my portfolio website.
Pages included:
index.html- landing pageprojects.html- project detailssoc-lab.html- SOC and detection lab notespentesting.html- pentesting practicecontact.html- contact details
Live: https://yoonas18.github.io/portfolio/
Wazuh, Splunk, ELK, Azure Sentinel, Burp Suite, Nmap, Wireshark, Python, FastAPI, SQLite, Frida, Drozer, adb, n8n.
Email: Yoonasy703@gmail.com
LinkedIn: https://linkedin.com/in/yoonusky
GitHub: https://github.com/Yoonas18
Bugcrowd: https://bugcrowd.com/Yoonas18