⚠️ Disclaimer:
Some reports are inspired by activities and scenarios from the Google Cybersecurity Professional Certificate. All analysis, recommendations, and written content are my original work. No copyrighted course materials or templates are included.
This report analyzes DNS request failures and ICMP error messages using tcpdump logs.
This report investigates a denial-of-service (DoS) SYN flood attack targeting a company’s web server, based on TCP/HTTP logs analyzed via Wireshark.
👉 View Full Report (PDF)
This report documents a brute force attack on the website yummyrecipesforme.com, where a former employee injected malware by guessing default credentials. The investigation includes DNS and HTTP protocol analysis via tcpdump.
👉 View Full Report
This report analyzes a major data breach at a social media organization and recommends hardening methods like MFA, password policies, and firewall maintenance to prevent future attacks.
👉 View Full Report
This report evaluates three devices connected to a home network (printer, webcam, and external hard drive), identifying ownership, access level, physical location, and data sensitivity classification.
👉 View Full Report
This activity presents a risk register for a commercial bank, evaluating five critical risks (like phishing and data leaks) based on likelihood and impact. It uses the NIST Cybersecurity Framework’s "Identify" function to prioritize vulnerabilities.
👉 View Risk Register
This report investigates a data leak caused by improper access control and poor application of the principle of least privilege. It applies NIST SP 800-53: AC-6 to recommend improvements.
👉 View Full Report (PDF)
This report investigates a suspicious spreadsheet file that executed a malicious payload upon being opened. The file was analyzed using VirusTotal, and associated indicators of compromise (IoCs) were mapped using the Pyramid of Pain model.
👉 View Report Folder