Junior Security Engineer focused on Web Security, Network Security, and Infrastructure Security.
Infrastructure-oriented security specialist with hands-on experience in Linux, networking, server environments, and web application analysis.
- penetration testing
- API security
- vulnerability assessment
- infrastructure security
- Red Team fundamentals
- Web Security
- Network Security
- API Security
- Linux & Infrastructure
- Penetration Testing
- Red Team Learning Path
- Nmap
- Burp Suite
- OWASP ZAP
- Nuclei
- dirsearch / ffuf
- Amass / Subfinder
- Kali Linux
- Linux / Ubuntu Server
- Nginx, SSL/TLS, DNS
- TCP/IP, HTTP/HTTPS, VLAN
- VPN, VLESS, Xray
- Docker, Docker Compose
- PostgreSQL basics
- Python
- Bash
- Git / GitHub
- Log analysis
- CLI tools
- CSV / JSON / Markdown
Security-oriented Nginx log analysis tool.
- Parses
.logand.gzfiles - Detects suspicious IPs, paths, User-Agents and scan-like patterns
- Exports reports to JSON, CSV and Markdown
- Supports live monitoring mode
Repository: https://github.com/BUSH-xanta/nginx-access-log-parser
Tool for extracting public contact data from websites.
- Extracts emails, Russian phone numbers and Telegram contacts
- Crawls main and contact-like pages
- Supports HTTPS to HTTP fallback
- Deduplicates results and exports to CSV
Repository: https://github.com/BUSH-xanta/site-contact-parser
Hands-on labs for web and API security.
Status: in progress
Planned topics:
- OWASP Top 10
- IDOR
- Broken Access Control
- API authentication flaws
- Burp Suite testing
- Vulnerability reports
- Identified a business logic vulnerability in a payment flow of a small business website
- Performed MITM labs in an isolated virtual environment
- Worked with server infrastructure and internal technical processes at Selectel
- Built and maintained small infrastructure projects on Ubuntu Server with Nginx, SSL/TLS and Docker
- Web Pentesting
- API Security
- Advanced Linux
- PostgreSQL
- Vulnerability Research
- Red Team fundamentals
- Telegram: https://t.me/xantaa
- Email: alekceu086@gmail.com
Grow as an Information Security specialist focused on penetration testing and Red Team.
Long-term focus:
- adversary emulation
- infrastructure security assessment
- vulnerability research
- practical attack-defense understanding