Skip to content
View Masriyan's full-sized avatar
:octocat:
I may be slow to respond.
:octocat:
I may be slow to respond.

Block or report Masriyan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Masriyan/README.md

πŸ” About Me

Cybersecurity professional specializing in SOC leadership, threat hunting, cyber threat intelligence, and attack surface management. I build efficient, intelligence-driven security operations that go beyond alert monitoring to deliver real-world threat mitigation.

"Cybersecurity is more than tools β€” it’s a strategy."


🧭 Open-Source Highlights

  • MacFIRE β€” macOS DFIR collection & imaging toolkit: timeline, memory, rootkit checks, HTML reporting.
  • Aegis β€” Windows-friendly single-file Python web app for URL recon, OSINT enrichment, subdomain intel, history & exports.
  • ExpertXSS β€” Python XSS scanner that fetches the latest payloads automatically.
  • ExpertRecon β€” Recon & exploitation helper integrating multi-tech discovery and third-party APIs.
  • No-Secret-Scan β€” Find exposed secrets / hard-coded credentials in web pages.
  • No-Secret-Scan for GitHub/GitLab β€” Scan repos for API keys and tokens across history.
  • uclsoc_code β€” Curated SIEM detection logic library mapped by domain & framework.
  • Kalitellingence β€” One-shot Kali setup for Threat Intel & dark-web workflows.

πŸ§‘β€πŸ’» Programming Languages

Python PHP JavaScript Tailwind CSS

βš™οΈ Frameworks & Libraries

Flask FastAPI Laravel Express.js Alpine.js Tailwind CSS


πŸ›‘οΈ Expertise

  • Threat Hunting & Incident Analysis β€” Identify hidden threats and attacker behavior before incidents escalate.
  • SOC Strategy & Development β€” Design efficient SOC frameworks to improve detection, response, and operations.
  • Cyber Threat Intelligence & OSINT β€” Turn intelligence into actionable insights for decisions and adversary tracking.
  • Cloud Security & Attack Surface Management β€” Secure cloud environments, reduce misconfigurations, minimize exposure.
  • Security Automation & Process Optimization β€” Use automation and analytics to boost efficiency and reduce false positives.

πŸ“ˆ Visuals (Mermaid)

GitHub tip: use quoted labels like A["Text"] to avoid parser errors with special characters.

Tech Stack at a Glance

pie title Primary Tech Stack
  "Python" : 40
  "PHP" : 25
  "JavaScript" : 25
  "Tailwind CSS" : 10
Loading

Threat Hunting Workflow

flowchart TD
  A["Collect Signals"] --> B["Enrich: WHOIS Β· OSINT Β· VT Β· Shodan"]
  B --> C["Detect and Correlate: SIEM rules Β· UEBA"]
  C --> D{"Suspicious"}
  D -- "Yes" --> E["Hunt Loop: pivot β†’ query β†’ timeline"]
  D -- "No"  --> H["Autoclose and Tune Rules"]
  E --> F["Triage and Contain"]
  F --> G["Incident Response: Mitigate and Eradicate"]
  G --> I["Lessons Learned"]
  I --> J["Automate: SOAR XSOAR Β· scripts"]
  J --> C
Loading

Project Roadmap (Illustrative)

gantt
  title 2025 Roadmap (Illustrative)
  dateFormat  YYYY-MM-DD
  axisFormat  %b %d

  section Aegis
  Subdomain Intelligence      :active, a1, 2025-06-01, 30d
  Tailwind UI Redesign        :a2, after a1, 20d

  section MacFIRE
  Memory Forensics Module     :m1, 2025-07-10, 25d
  HTML Report v2              :m2, after m1, 20d

  section ExpertXSS
  Payload Auto Update         :x1, 2025-05-20, 15d
  CI CD and Tests             :x2, after x1, 20d
Loading

Repo Ecosystem Map

flowchart LR
  Me(("Riyan Pratama"))
  Me --> MacFIRE["MacFIRE"]
  Me --> ExpertXSS["ExpertXSS"]
  Me --> ExpertRecon["ExpertRecon"]
  Me --> Aegis["Aegis"]
  Me --> NSS["No Secret Scan"]
  Me --> NSSGL["No Secret Scan GitHub GitLab"]
  Me --> UCLS["uclsoc_code"]

  Me -.-> PY["Python"]
  Me -.-> PHP["PHP"]
  Me -.-> JS["JavaScript"]
  Me -.-> TW["Tailwind CSS"]

  MacFIRE --> PY
  ExpertXSS --> PY
  ExpertRecon --> PY
  Aegis --> PY
  Aegis --> JS
  NSS --> JS
  NSSGL --> JS
  UCLS --> PY
Loading

πŸ“Œ Pinned Repositories


πŸ“Š GitHub Stats

GitHub streak

πŸ”§ Skills & Tools

πŸ” Security          β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘   90%
πŸ•΅οΈ Threat Hunting    β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘   90%
πŸ›‘οΈ SIEM              β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘   85%
πŸ” OSINT             β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘β–‘   80%
πŸ§ͺ Incident Response β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘   85%
πŸ–₯️ Network Security  β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘β–‘   80%

πŸ“« Connect with Me


πŸ‘¨β€πŸŒΎ Fun Facts

  • Owner of Wedusku Farm (goat farmer 🐐)
  • Expert in ngarit (traditional grass cutting for animal feed)
  • I build security solutions while nurturing my farm

Profile views counter

Thanks for visiting my profile! Have a nice day! πŸ™Œ

Pinned Loading

  1. MacFIRE MacFIRE Public

    MacFIRE – (Mac Forensic Investigation & Response Engine)

    Python 6

  2. ExpertXSS ExpertXSS Public

    The ExpertXSS is a Python-based penetration testing tool designed to check for Cross-Site Scripting (XSS) vulnerabilities on web applications. It automatically fetches the latest payloads.

    Python 3

  3. ExpertRecon ExpertRecon Public

    ExpertRecon is a powerful reconnaissance and exploitation tool designed for security professionals and ethical hackers. It integrates various reconnaissance techniques and third-party APIs to ident…

    Python 1

  4. No-Secret-Scan- No-Secret-Scan- Public

    "No Secret Scan" is a Python script designed to detect and identify secrets and hardcoded credentials within web pages, enhancing security audits by automating the discovery of potentially sensitiv…

    Python 1

  5. No-Secret-Scan-Github-Gitlab No-Secret-Scan-Github-Gitlab Public

    No Secret Scan is a Python tool designed to help developers scan their GitHub and GitLab repositories for potential secrets like API keys, tokens, and passwords. With customizable secret patterns, …

    Python 1 1

  6. uclsoc_code uclsoc_code Public

    list of use case library for CSOC

    5