( 05 )ABOUT
SYNC0x4A1F
profile/about
profile
0xraiven profile

r41n

•Profileactive
@0xraivenComputer Science Engineering Student
View Resume

Offensive security, web application security, Linux internals, detection engineering (Wazuh / auditd), and cloud security. Driven by the Build ➔ Break ➔ Observe ➔ Detect ➔ Document ➔ Improve methodology.

Focus: Offensive Security & Detection Engineering
Environment: Arch Linux · KVM / libvirt

I am a Computer Science Engineering student working across offensive security, web security, systems internals, detection engineering, and cloud security.

The work focuses on understanding systems from both offensive and defensive perspectives—approaching cybersecurity not by merely collecting tools or memorizing vulnerability definitions, but by investigating how systems are built, how they fail under controlled exploitation, what telemetry attacks generate, and how security tooling can be engineered around those observations.

Operational Philosophy#

  1. Proof of Work Over Claims: Practical capability is demonstrated through reproducible laboratory environments, manual exploitation walk-throughs, and custom tooling rather than unsupported assertions.
  2. Defense Informed by Attack: Effective detection rules and hardened configurations require a fundamental mechanical understanding of exploitation primitives.
  3. Engineering-First Security: Emphasizing the ability to build security-related software and infrastructure from scratch rather than solely operating existing tools.
  4. Iterative Verification: Every finding, vulnerability test, and detection signature is validated against controlled targets before documentation.

Core Engineering Approach

Iterative Cycle
01

BUILD

Deploy repeatable environments, services, and software architectures.

02

BREAK

Perform controlled manual exploitation to identify attack vectors and system failure modes.

03

OBSERVE

Capture endpoint activity, process lineage, system calls, and network traffic.

04

DETECT

Ingest telemetry into detection platforms (Wazuh, auditd) and author tuned rules.

05

DOCUMENT

Record root causes, reproduction steps, and defensive implications.

06

IMPROVE

Harden configurations, remediate vulnerabilities, and automate repeatable checks.

Technical Focus & Research Areas

7 focus areas

Web Security

Manual OWASP Top 10 exploitation, payload crafting, root cause analysis

Linux Security

Internals, process lifecycle, permissions, endpoint telemetry, auditing

Windows / Active Directory

AD architecture, domain enumeration, attack paths, credential defense

Offensive Security

Controlled exploitation, privilege escalation, persistence, adversary emulation

Detection Engineering

Wazuh FIM/SCA, auditd event rules, process genealogy, attack-to-detection

Cloud Security

AWS IAM least-privilege scoping, cloud attack surfaces, misconfiguration analysis

Security Automation

Custom Python/TypeScript tooling, repeatable assessment workflows

Selected Projects

Open Source Repositories

Practical Security Work

Hands-On Practice

OverTheWire — Bandit

Levels 0 → 33 Completed

Practical foundational training covering Linux CLI navigation, multi-tier filesystem permissions, SSH configurations, shell pipes, process inspection, and text processing.

DVWA (Damn Vulnerable Web Application)

Manual OWASP Top 10

Manual exploitation against intentionally vulnerable web application behaviors: SQL Injection, XSS, CSRF, Command Injection, File Inclusion, File Upload, and Broken Authentication.

PortSwigger Web Security Academy

Hands-on Labs Completed

Practiced manual vulnerability exploitation: Path Traversal, Unprotected Admin Functionality, Cookie Tampering, Privilege Escalation, Authentication Vulnerabilities, and Basic SSRF.

Controlled Security Tooling

Security Utilities

Hands-on usage of Burp Suite, Wazuh (Manager, Indexer, Dashboard, Agent), Auditd, Kali Linux, and Metasploitable in dedicated lab environments.

Lab & Homelab Infrastructure

Arch Linux Homelab
Host: Arch Linux · KVM / libvirt HypervisorPersonal Security Testing & Homelab Environment
Virtual Machines

Kali Linux (attack node) & Metasploitable (target node).

Detection Engine

Wazuh Stack (Manager, Indexer, Dashboard, Agent) + auditd telemetry.

Network & Access

Tailscale encrypted mesh overlay & Nginx Proxy Manager.

Management

Portainer for Docker orchestration & Netdata for live metrics.

Software & Systems Engineering Stack

Engineering Tools
Languages

Python, TypeScript, JavaScript, Bash, SQL

Frameworks

Next.js, React, React Native, Flask

Data & APIs

Supabase, PostgreSQL, REST APIs

Platforms

Docker, Git, GitHub, Vercel, Render, AWS

Practical Learning Progression

Path Taken
1.Linux / Systems
→
2.Networking
→
3.Web Security
→
4.Privilege Escalation
→
5.Security Tooling
→
6.Offensive Security
→
7.Detection Engineering
→
8.Windows / AD
→
9.Cloud Security

Documentation & Projects

Knowledge Base

Links & Profiles

Browse public repositories, research writeups, and resume.