👋 Hello! I’m Ayodele.E. Sonuga, a results-driven Cybersecurity Analyst with two years of experience protecting cloud and on-prem infrastructures. My work focuses on threat detection, vulnerability management, and continuous security monitoring. This repository gathers the lab projects and reference guides that demonstrate my technical depth and commitment to secure-by-design principles.
- Virtual Home Lab Build – Multi-VM environment (Windows, Linux, pfSense, Security Onion)
- Active Directory Deployment & Hardening – Secure domain controller with baseline GPOs
- Security Policy Development – Acceptable-Use, Password, and Access-Control policies
- Vulnerability Assessment – Network and web application scans with Nmap, Nessus and Nikto
- Risk Assessment & CIA Impact Mapping – Risk matrix and treatment recommendations
- Network Monitoring & Log Analysis – Dashboards in Security Onion and Splunk
- Linux Permissions Audit – Identifying and correcting misconfigurations and SUID issues
- Suricata IDS Deployment – Signature-based intrusion detection
- Honeypot Deployment – Capturing and analysing attacker behaviour
- MITRE ATT&CK Hunt Sprint – ATT&CK Navigator-driven queries and detections
- Phishing Attack Simulation – Campaign metrics via GoPhish or Zphisher
- Phishing Email Forensics – Header analysis with SPF, DKIM, DMARC validation
- SQL Injection & DDoS Simulation – Exploitation with sqlmap and low-volume slowloris tests
- Malware Static & Dynamic Analysis – strings, PE-Studio, Cuckoo sandbox
- Malicious PDF Analysis – Payload extraction and script dissection
- VirtualBox, VMware, AWS Free Tier
- Wireshark, Nmap, Nessus, Nikto, sqlmap
- Wazuh, Suricata, Elastic Stack, Splunk
- Kali Linux, Windows Server, Ubuntu, pfSense
- Git, GitHub, Markdown documentation
| Folder | Description | Link |
|---|---|---|
| 01-home-lab | Building a multi-VM cybersecurity lab | View Repo |
| 02-ad-deployment | Installing and hardening Active Directory | View Repo |
| 03-ad-enum-privesc | Enumerating and escalating privileges in AD | View Repo |
| 04-security-policy-dev | Crafting AUP, password, and ACL policies | View Repo |
| 05-vulnerability-assessment | Network and web-app scanning with Nessus and Nmap | View Repo |
| 06-network-monitoring | Security Onion and Splunk dashboards | View Repo |
| 07-risk-assessment | CIA impact mapping and risk matrix | View Repo |
| 08-mitre-threat-hunt | ATT&CK-aligned threat hunting scripts | View Repo |
| 09-phishing-simulation | Lab-based phishing campaign and metrics | View Repo |
| 10-phishing-email-forensics | Email header and domain analysis toolkit | View Repo |
| 11-linux-permissions-audit | Identifying world-writable and SUID files | View Repo |
| 12-sqli-ddos-sim | SQLi exploitation and DDoS alert tuning | View Repo |
| 13-malware-analysis | Static and dynamic malware triage | View Repo |
|
- LinkedIn: [www.linkedin.com/in/ayodele-sonuga-393b3545]
- Email: [email protected]
“Cybersecurity is not only a discipline, it is a mindset.”
Thank you for visiting my GitHub. If a repository helps your work, please consider leaving a star.