Skip to content
View yehezkiel1086's full-sized avatar
๐Ÿ’ญ
๐ŸŽฏ ๆ—ฅๆœฌ่ชžใ‚’ๅ‹‰ๅผทใ—ใฆใ„ใพใ™
๐Ÿ’ญ
๐ŸŽฏ ๆ—ฅๆœฌ่ชžใ‚’ๅ‹‰ๅผทใ—ใฆใ„ใพใ™

Organizations

@TzuriLabs

Block or report yehezkiel1086

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please donโ€™t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
yehezkiel1086/README.md

Hey, I'm Hez!

Penetration Tester and Security Engineer specializing in Application Security, Network Security, and DevSecOps. I conduct vulnerability assessments and penetration testing across web applications and network infrastructure (Nmap, DNS enumeration, zone transfers, Burp Suite, SQLMap), perform secure code review and static analysis (Semgrep, SonarQube), and architect security-first infrastructure with detection engineering (IDS/IPS, SIEM, honeypot deployment) and server hardening.

I bring a builder's perspective to security work โ€” hands-on experience architecting production-grade microservices and distributed systems in Go gives me a deep understanding of both offensive and defensive security, from exploiting real vulnerabilities to designing the systems that prevent them. This includes secure API design, secure SDLC practices, network security best practices, and integrating ML/Computer Vision systems with security considerations.

Currently focused on offensive security (VAPT, network reconnaissance, exploitation, threat detection), defensive security and detection engineering (Wazuh SIEM, Snort IDS, honeypot analysis), malware analysis, server hardening, and secure backend/infrastructure architecture. Pursuing eLearnSecurity Junior Penetration Tester (eJPT) certification, with OSCP as the next target.

Reach Me

Pinned Loading

  1. TzuriLabs/awesome-cyber-security TzuriLabs/awesome-cyber-security Public

    A bunch of resources containing learning resources, certifications, security frameworks, bug bounties, podcasts and tools used for cyber security.

    22 5

  2. AegisCI AegisCI Public

    ๐Ÿ›ก๏ธ All-in-One Zero-Trust DevSecOps Scanner for GitHub Actions.

    Go 3

  3. Vortex Vortex Public

    ๐Ÿ•ต๐Ÿผ๐Ÿ•ธ๏ธ Open-source threat intelligence and security investigation platform built with Go and Next.js.

    Go 1

  4. ml-web-honeypot ml-web-honeypot Public

    ๐Ÿ”๐Ÿค– Frequent Pattern Mining, Machine Learning and Statistical based web honeypot attack data analysis

    Jupyter Notebook 1

  5. portswigger-websec-writeups portswigger-websec-writeups Public

    ๐Ÿ”๐Ÿ•ธ๏ธ A writeup containing solutions of Portswigger's Web Security Academy

    HTML 1

  6. go-docs go-docs Public

    ๐Ÿ“– Golang scripts, small projects, and solutions

    Go