Skip to content
View Azuriye's full-sized avatar

Block or report Azuriye

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Azuriye/README.md

About This Portfolio

Aspiring detection engineer / blue teamer, focused on building infrastructure and writing up how I'd catch an attacker moving through it.

Computer Science candidate at Heriot-Watt University · Red Hat Certified System Administrator (RHCSA).


🛡️ Featured Technical Labs

  • The Problem: Detecting remote adversary lateral movement and initial access attempts targeting open RDP interfaces before compromise occurs.
  • What I Built: An enterprise-grade Wazuh SIEM threat monitoring core hosted inside a nested Ubuntu 24.04 Linux Container (LXC) on a Proxmox VE hypervisor cluster.
  • The Telemetry: Configured host-level Windows Audit Policies to stream real-time events to the SIEM core, parsing telemetry to capture explicit Windows Event ID 4625 authentication failures and interactive Logon Type 10 forensic parameters.

🧾 Verified Credentials

  • Red Hat Certified System Administrator (RHCSA) | Verification ID: 230-221-127
  • Fortinet NSE 3 Certified in Cybersecurity
  • Cisco Networking Academy – Ethical Hacker
  • Deputy Principal's Award (3.75/4.0 GPA) | Heriot-Watt University

🌐 Connect With Me

Pinned Loading

  1. windows-rdp-bruteforce-detection windows-rdp-bruteforce-detection Public

    Enterprise threat detection pipeline using Wazuh SIEM on Proxmox VE to capture and parse interactive Windows RDP brute-force attacks (Logon Type 10).