Kerala, India | Open to GCC & India cybersecurity opportunities
I focus on penetration testing, SOC operations, detection engineering, and security automation. I build practical tools, run attack simulations in lab environments, and document security work with a defensive, real-world mindset.
- Currently working as a Cybersecurity Researcher & Trainer at Offenso Hackers Academy
- Active Bugcrowd researcher focused on access control, XSS, auth, and misconfiguration issues
- Building FIM Security Watchdog, an authenticated file integrity monitoring platform
- Recent lab work includes RATShield XDR Pro, a defensive endpoint triage and RAT-hunting platform
- Learning deeper threat intelligence, malware analysis, Android ADB inspection, and MITRE ATT&CK mapping
- Portfolio: yoonas18.github.io/portfolio
| Area | What I Build / Practice |
|---|---|
| Penetration Testing | Web, API, Android, network, and Active Directory security testing |
| SOC & Detection | Log analysis, SIEM workflows, alert triage, incident investigation |
| Security Automation | Python agents, FastAPI backends, SQLite/PostgreSQL, n8n workflows |
| Bug Bounty | Responsible vulnerability research and writeups |
| Cloud Labs | Azure-hosted attack simulations and detection labs |
| Area | What I Worked On |
|---|---|
| Endpoint Triage | RATShield XDR Pro for process, persistence, and evidence-driven investigation |
| Detection Engineering | Risk scoring, MITRE mapping, and readable findings for analysts |
| Android Analysis | ADB-based inspection and permission review for mobile security labs |
| SIEM Practice | Log correlation, alert triage, and workflow tuning in training environments |
| Security Tooling | FastAPI dashboards, Python helpers, and lab automation workflows |
| Project | Description | Stack |
|---|---|---|
| RATShield XDR Pro | Defensive endpoint triage and RAT-hunting platform with risk scoring, MITRE mapping, and JSON/HTML reporting. | Python, FastAPI, HTML, Android ADB |
| FIM Security Watchdog | Authenticated file integrity monitoring platform with Python agent, FastAPI backend, SQLite history, dashboard auth, severity labels, and n8n automation. | Python, FastAPI, SQLite, HTML, n8n |
| LogSight SIEM | Educational mini SIEM for log ingestion, normalization, detection rules, alert generation, and investigation workflows. | JavaScript, Detection Logic, SOC |
| SOC Attack Simulations | SOC-style attack simulation reports for brute force, scanning, RDP analysis, and detection workflows. | Azure, Wazuh, Splunk |
| Bug Bounty Writeups | Responsible vulnerability research notes and educational security writeups. | Web Security, Bug Bounty |
- Certified Ethical Hacker (CEH v12) - EC-Council
- Certified AppSec Practitioner (CAP) - SecOps Group
- Certified Cyber Security Educator Professional - Redteamleaders