I'm David, a final-year Cybersecurity Engineering (Hons) student at Victoria University of Wellington. I've handled real criminal forensic evidence with the Indonesian National Police, supported live client environments, and rank in the top 0.025% on Hack The Box. I like problems where rigour actually matters.
Building an explainable ML framework for botnet detection across 20M+ labelled network flows from CIC-IDS-2017, CIC-IDS-2018, CTU-13, and UNSW-NB-15, spanning 15+ attack categories.
Comparing Random Forest, XGBoost, and Neural Network classifiers, then applying SHAP, LIME, and feature-importance analysis to turn black-box predictions into transparent, actionable explanations. Evaluating robustness under class imbalance and noisy traffic, so analysts can trust the detector and act faster.
Designed and tested a safety-critical AEBS in a sandboxed environment, applying ISO 26262 functional safety: hazard analysis, safety requirements, and verification for automotive software.
Consistent top-1,000 global ranking on Hack The Box and top 5% on TryHackMe's Red Team / Pentesting path. Sustained, practical work across web exploitation, privilege escalation, and Active Directory attack paths.
Nmap, Burp Suite, Metasploit, XSS/SQLi/CSRF testing, SQLmap, Hashcat, Hydra, John the Ripper, Mimikatz, Evil-WinRM, LinPEAS, Gobuster/ffuf, Aircrack-ng, Shodan.
Autopsy/Sleuth Kit, FTK Imager, Magnet AXIOM, Volatility 2 & 3, KAPE, Wireshark, Zeek, iLEAPP/ALEAPP, Velociraptor, Eric Zimmerman Tools, Registry Explorer, HxD.
Ghidra, IDA, x64dbg/OllyDbg, PE-Studio, Detect-It-Easy, AnyRun, YARA, VirusTotal, Procmon/ProcExp, Regshot, for static and dynamic analysis.
TCP/IP, OSI layers, VLANs, Active Directory, Kali/Ubuntu/Windows Server, Docker, VirtualBox/VMware, AWS (EC2, S3, IAM).
MITRE ATT&CK, Cyber Kill Chain, OWASP Top 10, NIST CSF, CVSS, ISO/IEC 27037 & 17025, ISO 26262.
Python, Java, C/C++, Bash, PowerShell, SQL, SPL (Splunk), YARA, R.
Try help, whoami, skills, contact, or go on and try sudo something.