Skip to content

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

26 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Yoonus K Y

Cybersecurity trainer and SOC-focused security researcher.

I spend most of my time building security labs, testing SIEM workflows, creating student-friendly projects, and documenting practical attack and detection scenarios.

Portfolio: https://yoonas18.github.io/portfolio/


What I Work On

  • SOC monitoring and log analysis
  • SIEM labs and detection rules
  • Azure Sentinel and Defender experiments
  • Web and Android pentesting practice
  • Python/FastAPI security tools
  • Cybersecurity training labs for beginners
  • Threat detection and triage workflow design

Recent Work

RATShield XDR Pro

A defensive endpoint triage and detection platform I built to help spot RAT-like behavior across Windows, Linux, and Android ADB-connected devices.

It focuses on clear evidence, practical risk scoring, MITRE ATT&CK mapping, and a clean investigation workflow that is easy to explain during reviews and demos.

Tech used:

  • Python
  • FastAPI
  • HTML/CSS/JavaScript
  • psutil
  • Pydantic
  • Android ADB

Repo: https://github.com/Yoonas18/ratshield-xdr-pro Live page: https://yoonas18.github.io/ratshield-xdr-pro/


Projects

FIM Security Watchdog

A file integrity monitoring project I built to understand how file change detection works in real environments.

It checks file hashes, records changes, and sends events to a small backend.

Tech used:

  • Python
  • FastAPI
  • SQLite
  • SHA-256 hashing
  • n8n webhook testing

Repo: https://github.com/Yoonas18/fim-security-automation


LogSight SIEM

A mini SIEM-style project made mainly for students and freshers.

The idea was simple: show how logs are collected, parsed, matched with rules, and converted into alerts.

Repo: https://github.com/Yoonas18/logsight-siem


Exam Portal

Built and deployed an internal exam portal for conducting cybersecurity assessments.

This project was mainly created for practical batch evaluation.

Features included:

  • student login
  • MCQ exam flow
  • scoring system
  • result handling
  • admin-side workflow

SSH Honeypot Lab

Set up a small honeypot-style lab to observe SSH brute-force attempts.

Worked with:

  • Ubuntu VM
  • Syslog
  • Azure Sentinel
  • KQL queries
  • alert rules
  • attacker IP investigation

This project helped me understand how real logs look when exposed systems start getting attacked.


SOC Attack Simulations

Created SOC-style scenarios for training and practice.

Topics included:

  • brute-force login attempts
  • scanning activity
  • suspicious RDP activity
  • Azure log investigation
  • SIEM alert triage

Repo: https://github.com/Yoonas18/soc-attack-simulations


Android Pentesting Practice

Built Android testing labs using:

  • AndroGoat
  • DIVA
  • Frida
  • Drozer
  • adb
  • Burp Suite

Focused mainly on dynamic testing, app behavior review, and SSL pinning bypass practice.


Skills and Labs

  • Defensive endpoint triage
  • Malware indicator review
  • MITRE ATT&CK mapping
  • Android ADB inspection
  • Risk scoring and reporting
  • FastAPI dashboards
  • Threat hunting lab design
  • SIEM alert investigation

Portfolio Website

This repo contains my portfolio website.

Pages included:

  • index.html - landing page
  • projects.html - project details
  • soc-lab.html - SOC and detection lab notes
  • pentesting.html - pentesting practice
  • contact.html - contact details

Live: https://yoonas18.github.io/portfolio/


Tools I Use Often

Wazuh, Splunk, ELK, Azure Sentinel, Burp Suite, Nmap, Wireshark, Python, FastAPI, SQLite, Frida, Drozer, adb, n8n.


Contact

Email: Yoonasy703@gmail.com
LinkedIn: https://linkedin.com/in/yoonusky
GitHub: https://github.com/Yoonas18
Bugcrowd: https://bugcrowd.com/Yoonas18

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

Packages

Contributors

Languages