Skip to content
View Sombrawow's full-sized avatar

Block or report Sombrawow

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Sombrawow/README.md

👋 Hi, I'm Javier

Telecom & IT technician moving into cybersecurity, aiming for SOC Analyst L1 roles.

I spent years monitoring technical systems in real time under pressure — live events where an unnoticed anomaly becomes a visible failure in seconds. I'm now applying that operational instinct to security monitoring, log analysis and incident response. This repo is where I document that work.

📜 Junior Cybersecurity Analyst Career Path — Certificate of Completion, Cisco Networking Academy 📖 Studying for CompTIA Security+ (SY0-701) 📍 Málaga, Spain · available for rotating 24x7 shifts 🔗 LinkedIn


🔍 Featured Project — Volt Typhoon APT Investigation

Investigation of a simulated APT campaign in Splunk. Threat hunting written in SPL, 18+ techniques mapped to MITRE ATT&CK, IOC documentation and an incident-response writeup.

➡️ Read the full investigation


💻 Other Projects

Project Description Link
Server Security Audit Host-level security audit of a 24/7 Ubuntu 24.04 server (network exposure, UFW firewall, SSH/VPN config, SUID binaries) — 17 findings documented Repo
Bricks Heist — CVE-2024-25600 RCE exploitation and investigation in WordPress Bricks Builder, cryptomining malware analysis Repo
Investigating Windows Forensic investigation writeup — Windows Server 2016 (TryHackMe) Repo

🛠️ Skills

Networking: Wireshark, Nmap, TCP/IP, OSI model, subnetting, network troubleshooting Linux: Bash, permissions (chmod/chown), systemd, user/group management, basic sysadmin Security fundamentals: log analysis, security monitoring, threat detection, incident response, network security (Cisco NetAcad coursework)

📚 Currently learning

SIEM with Splunk · threat hunting · Python for security automation · vulnerability assessment · SOC operations

Popular repositories Loading

  1. volt-typhoon-investigation volt-typhoon-investigation Public

    Investigación de una campaña APT simulada del grupo Volt Typhoon

    1

  2. Server-Security-Audit Server-Security-Audit Public

    1

  3. Sombrawow Sombrawow Public

  4. tryhackme-bricks-heist tryhackme-bricks-heist Public

    Este repositorio documenta la resolución de la sala "Bricks Heist" en TryHackMe. El objetivo fue realizar un test de intrusión ético simulado, identificando vulnerabilidades, explotándolas y escala…

  5. nmap-cheat-sheet nmap-cheat-sheet Public

    Guía completa de comandos Nmap para ciberseguridad

  6. investigating-windows-writeup investigating-windows-writeup Public

    Forensic investigation writeup for TryHackMe room - Windows Server 2016