Skip to content
View letus101's full-sized avatar

Block or report letus101

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
letus101/README.md

Hi 👋, I'm Youssef KETAJ

Cybersecurity Engineer | Red Team & SOC Specialist

Specializing in Offensive Security, Malware Analysis & SOC Architecture

letus101

trophy


👨‍💻 About Me

I am a Cybersecurity Engineer with a dual focus on offensive (Red Team) and defensive (Blue Team) operations. My approach combines rigorous penetration testing with the architectural know-how to build resilient SOC infrastructures.

  • 🔭 Current Focus: Advanced Red Teaming (C2 Frameworks, Active Directory Exploitation) and Blue Team Monitoring (Wazuh, Suricata, Yara).
  • 💼 Experience: Developed a Dark Web Data Leak Monitoring Platform using LLMs and Tor networks at Exogit.
  • 📝 I write articles and share my roadmap on ketaj.me.
  • 🏋️ Fun Fact: When I'm not analyzing malware or bypassing WAFs, I'm likely at the gym.
  • 📫 Contact: [email protected]

youssef-ketaj letus5821 TryHackMe


🛠️ Core Arsenal & Tools

python bash c powershell

Metasploit Burp Suite Nmap BloodHound Kali

Splunk Wazuh Elastic Wireshark Suricata

Docker Kubernetes AWS Ansible Linux


🛡️ Certifications

Certification Issuer
ISO/IEC 27001:2022 Associate SkillFront
Google Cybersecurity Professional Google
HCIA Cloud Computing Huawei
Red Team Operator / DevSecOps TryHackMe Paths
SailPoint Identity Security Leader SailPoint

🚀 Key Projects

🕵️ Dark Web & Data Leak Monitoring (Exogit)

  • Architecture: Designed a monitoring platform for data breaches using Tor Networks and crawling algorithms.
  • AI Integration: Implemented LLMs (Groq Cloud APIs) to classify threats and detect IOCs.
  • Stack: Python, Crawl4AI, MongoDB, FastAPI, Docker.

⚔️ Red Team Infrastructure

  • Simulation: Deployed C2 frameworks (Covenant, Empire) to emulate adversary tactics.
  • TTPs: Focused on pivoting, persistence, and Active Directory exploitation based on MITRE ATT&CK.

🏰 Local SOC Implementation

  • Defense: Built a home lab using Security Onion, ELK Stack, and TheHive.
  • Detection: Configured custom Sigma rules and integrated MISP for Threat Intelligence.

Languages Stats

Popular repositories Loading

  1. HMS HMS Public

    hospital management system

    PHP

  2. letus101 letus101 Public

  3. NetworkSniffer NetworkSniffer Public

    Python

  4. CoRide CoRide Public

    CSS

  5. AdsBroker AdsBroker Public

    CSS

  6. starter-kit starter-kit Public

    Forked from Hashnode/starter-kit

    A blog starter kit to use Hashnode as a Headless CMS using GraphQL APIs.

    TypeScript