Skip to content

Ashiii27/Ashiii27

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

17 Commits
 
 

Repository files navigation

Typing SVG


LinkedIn GitHub TryHackMe Status




> whoami

name        : Ashish Kumar
degree      : B.Tech Computer Science & Engineering
university  : MMMUT Gorakhpur
graduating  : June 2027
location    : India
target_roles: [ SOC Analyst, Blue Team Engineer, Digital Forensics ]

Blue team engineer who builds real tools — not just collects certifications. My work covers threat detection, EVTX log forensics, and network traffic analysis mapped to MITRE ATT&CK — the kind of depth that matters in a real SOC or DFIR role.


> ls ./projects

🛡️ SentinelX

C++ Network Intrusion Detection System

A modular NIDS built from scratch — live traffic capture, custom parsing pipeline, and MITRE ATT&CK-tagged structured alerts.

  • Custom PacketCapture → IP → TCP → HTTP parser
  • Pluggable detectors via abstract BaseDetector interface
  • Severity classification + ATT&CK technique tagging
  • Extend without touching core logic

C++ libpcap MITRE

Multi-Auth Artifact Correlation Engine

Correlates Windows auth artifacts across Local, MSA, RDP & Kerberos — surfaces anomalous access from raw EVTX logs.

  • Event IDs: 4624 4625 4648 4768 4776
  • Unified anomaly view across all auth mechanisms
  • 📄 IEEE paper in progress — Dr. Vimal Kumar, MMMUT

Python PowerShell Autopsy

Network Traffic Forensics Tool

Deep PCAP inspection — protocol dissection, IOC extraction, and anomaly flagging from captured network traffic.

Python Wireshark

🚧 In the Lab...

Currently building tools that push into:

  • Automated threat hunting pipelines
  • Log correlation at scale
  • Threat intel feed integration

Watch the GitHub — more dropping soon.


> cat skills.conf

Languages & Scripting

Skills

Domain Tools & Techniques
🔵 Threat Detection MITRE ATT&CK · Sigma Rules · Custom Detection Logic · Alert Triage
🪟 Windows Forensics EVTX Parsing · Event IDs · FTK Imager · Autopsy · Registry Analysis
🌐 Network Analysis PCAP · Wireshark · libpcap · Protocol Dissection · IOC Extraction
🚨 Incident Response Log Correlation · Timeline Analysis · Artifact Collection
🔎 OSINT Passive Recon · Threat Intel · Open-Source Investigation

> tail -f progress.log

Status Certification / Platform
🟢 Active TryHackMe — Top 3% Globally
🟡 In Progress LetsDefend · CyberDefenders · PortSwigger Web Security Academy
📌 Next Target CompTIA Security+
🗺️ Roadmap CySA+TCM Security PTPOSCP
📄 Research IEEE Paper — Windows Auth Forensics (Dr. Vimal Kumar, MMMUT)

> git log --oneline

 




> ./hire_me.sh

Looking for SOC Analyst · Blue Team · DFIR roles

If you're building a security team and want someone who writes forensics tools, understands what's in the logs, and maps every detection to MITRE —

LinkedIn    GitHub


About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors