I'm David, a final-year Cybersecurity Engineering (Hons) student at Victoria University of Wellington. I've handled criminal forensic evidence with the Indonesian National Police, supported live client environments, and rank in the top 0.025% on Hack The Box. I like problems where rigour actually matters.
Building an explainable ML framework for botnet detection across 20M+ labelled network flows from CIC-IDS-2017, CIC-IDS-2018, CTU-13, and UNSW-NB-15, spanning 15+ attack categories.
Comparing Random Forest, XGBoost, and Neural Network classifiers, then applying SHAP, LIME, and feature-importance analysis to turn black-box predictions into transparent, actionable explanations. Evaluating robustness under class imbalance and noisy traffic, so analysts can trust the detector and act faster.
Studied how endpoint evasion defeats Windows Defender in an isolated lab, then worked the problem from the defender's side: mapping each technique to the Sysmon events, behavioural indicators, and YARA signatures that catch it. Offensive understanding turned into blue-team detection.
Consistent top-1,000 global ranking on Hack The Box and top 5% on TryHackMe's Red Team / Pentesting path. Sustained, practical work across web exploitation, privilege escalation, and Active Directory attack paths.
Captured in an isolated VM as part of the detection research above: the recorded outcome, paired with the Sysmon events and YARA signatures that identify the behaviour.
Nmap, Burp Suite, Metasploit, XSS/SQLi/CSRF testing, SQLmap, Hashcat, Hydra, John the Ripper, Mimikatz, Evil-WinRM, LinPEAS, Gobuster/ffuf, Aircrack-ng, Shodan.
Autopsy/Sleuth Kit, FTK Imager, Magnet AXIOM, Volatility 2 & 3, KAPE, Wireshark, Zeek, iLEAPP/ALEAPP, Velociraptor, Eric Zimmerman Tools, Registry Explorer, HxD.
Ghidra, IDA, x64dbg/OllyDbg, PE-Studio, Detect-It-Easy, AnyRun, YARA, VirusTotal, Procmon/ProcExp, Regshot, for static and dynamic analysis.
TCP/IP, OSI layers, VLANs, Active Directory, Kali/Ubuntu/Windows Server, Docker, VirtualBox/VMware, AWS (EC2, S3, IAM).
MITRE ATT&CK, Cyber Kill Chain, OWASP Top 10, NIST CSF, CVSS, ISO/IEC 27037 & 17025, ISO 26262.
Python, Java, C/C++, Bash, PowerShell, SQL, SPL (Splunk), YARA, R.
Try help, whoami, skills, contact, or go on and try sudo something.