analyst@fedora:~$ initializing session...
> loading profile [ OK ]
> parsing background [ OK ]
> compiling skillset [ OK ]
> session ready.
 
analyst@fedora:~$ whoami

ALISSON 

Blue Team security enthusiast focused on DFIR, Detection Engineering, Threat Hunting & Security Operations.

./contact ./case-studies
scroll
// about
about.md

cat about.md

I'm a Blue Team security enthusiast focused on Digital Forensics & Incident Response (DFIR), Detection Engineering, Threat Hunting, and Security Operations.

I enjoy investigating real-world attack scenarios, building home lab environments, and documenting practical security investigations — while continuously expanding my understanding of modern detection and response.

Facts over assumptions. Evidence over guesses.

Status
Open to Blue Team / SOC / DFIR opportunities
Focus
DFIR & Detection Engineering
Interest
Threat Hunting / Home Lab R&D
Core
Security Operations
// focus

ls ./focus

DF-01

DFIR

Memory ForensicsDisk ImagingTimeline ReconstructionArtifact Analysis
DE-02

Detection Engineering

Log CorrelationIOC/IOA DevelopmentDetection Tuning
TH-03

Threat Hunting

Hypothesis-Driven HuntingATT&CK MappingAnomaly Detection
SO-04

Security Operations

Alert TriageIncident Response WorkflowsChain of Custody
// certifications

ls ./certs

Security Analyst Level 1 (SAL1)

TryHackMe
Issued Apr 2026 verify ↗
// case studies

ls ./case-studies

// browse by category
Digital Forensics

Linux Memory Forensics

Coming soon
TH-01

Masqueraded Executable Intrusion

SysmonPowerShell BypassLocal Persistence
Read case ↗
AD-01

Golden Ticket

AS-REP RoastingKRBTGTKerberos
Read case ↗
WS-01

Apache Tomcat Serialized Payload RCE

Web ShellCVE-2024-50379JSP
Read case ↗
MA-01

TabFlow Pro Malicious Extension

USB DeliveryBrowser ExtensionCredential Theft
Read case ↗
DF-01

USB Forensics

ShellbagsUSBSTORJump Lists
Read case ↗
Persistence

Sharpsist Windows Persistence Toolkit

Coming soon
MF-01

Windows Memory Forensics

VolatilityRansomwareRegistry
Read case ↗
Home SOC

Home SOC

Coming soon

Want to see more investigations?

View my complete investigation repository on GitHub ↗
04 // contact

./contact

Open for networking, collaboration, or Blue Team / DFIR opportunities. Reach out through any of the channels below.

Email copied to clipboard