Incident Report: PCAP Network Intrusion Analysis
A technical incident report detailing a multi-stage intrusion involving a malicious ZIP archive, first-stage command-and-control, and Cobalt Strike deployment.
Capability-oriented security domain map grounded in practical analysis, system controls, and verifiable project evidence.
Every capability in this domain map is backed by real project implementations, lab exercises, and writeups.
Continuous log of hands-on security labs, threat detection exercises, and vulnerability assessments executed during the CyberShujaa 30 Days to Hire Challenge and independent research.
Objective: Identify open ports, running services, and misconfigurations on a simulated target environment.
Objective: Prevent privilege escalation and illegal state jumps in multi-role governance workflows.
Objective: Harden Ubuntu Linux server instance and configure secure Nginx reverse proxy with TLS/SSL encryption.
A technical incident report detailing a multi-stage intrusion involving a malicious ZIP archive, first-stage command-and-control, and Cobalt Strike deployment.
A technical writeup examining the security architecture, governance controls, and hardening measures implemented in a production medical fund management system.
A comprehensive forensic investigation and step-by-step incident response report analyzing a compromised Windows Server 2016 endpoint. Covers web shell delivery, privilege escalation, credential dumping with Mimikatz, persistent registry run keys, backdoor scheduled tasks, Sigma detection logic, and clean vs. rebuild decision analysis.