Skip to content
View RyanTech00's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report RyanTech00

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
RyanTech00/README.md

Ryan Barbosa

Cybersecurity Student · Detection Engineering
BSc in Information Security in Computer Networks — ESTG-UTP

Portfolio · LinkedIn · Email


About

Cybersecurity student at ESTG - Technical University of Porto, currently in the BSc in Information Security in Computer Networks after completing the CTeSP in Cybersecurity, Networks and IT Systems (final average 17.14/20).

Completed a Detection Engineering internship at VisionWare's SOC, developing and validating SIEM detection rules mapped to the MITRE ATT&CK framework in Elastic Security. 2nd place winner at Hackathon CyberTech 2025 as team leader, also awarded "Hacker Destaque" for outstanding individual contribution.

Focused on detection engineering and SOC operations, working toward a purple-team role.


Featured Projects

claude-telemetry · In progress Open-source centralized usage-tracking system for Claude Code across multiple machines, using an Elastic/Wazuh-style agent architecture. A lightweight Python agent syncs usage to a central Supabase database; a React dashboard aggregates cost, rate limits, and per-model usage, with PostgreSQL row-level security, magic-link auth, and a Cloudflare Workers proxy keeping all secrets server-side. Python React Supabase PostgreSQL RLS Cloudflare Workers MCP Server

FSociety Infrastructure · Team Leader Complete enterprise network infrastructure for the fictional company FSociety.pt. Four-Legged Firewall with pfSense (72+ rules, 4 isolated zones), virtualization with Proxmox VE (6 production servers), Active Directory with Samba AD DC, and a Defense in Depth strategy (Cloudflare WAF, CrowdSec IDS/IPS with 57+ scenarios). Plus corporate services: Mailcow, Nginx reverse proxy, Proxmox Backup Server, Nextcloud, and Zammad. pfSense Proxmox VE Samba AD DC CrowdSec Defense in Depth

Session Desktop Forensic Analysis · Team Leader Forensic investigation of the Session Desktop client, uncovering 5 critical privacy vulnerabilities — including plaintext storage of SQLCipher encryption keys and recovery of deleted messages via Full-Text Search (FTS) tables. Documented 9 test scenarios with systematic methodology; technical report protected with blockchain timestamp via OpenTimestamps. Digital Forensics SQLCipher Vulnerability Analysis OpenTimestamps

Anti-Phishing Solution — Hackathon CyberTech 2025 🏆 · Team Leader 2nd place overall + "Hacker Destaque" award. Led team "404 NotFound" in a 24-hour competition to build a functional anti-phishing prevention prototype, presented to a panel of cybersecurity specialists. Phishing Prevention Cybersecurity Team Leadership Prototyping


Experience

Detection Engineering Intern — VisionWare - Sistemas de Informação, S.A. · Feb – Jul 2026 Curricular internship in the Cyber Defense Operations (SOC) team. Developed, tuned, and validated SIEM detection rules mapped to MITRE ATT&CK (rules promoted to production); built multi-stage correlation logic for authentication and config-change events on network perimeter devices; designed and led a 4-layer "Detection Assurance" methodology to map data-coverage gaps across the existing rule portfolio (~20 production rules).


Technical Skills

Detection & Defense Detection Engineering (KQL, EQL, ES|QL) · SIEM Administration (Elastic Security) · MITRE ATT&CK · Detection Assurance & ECS Coverage · SOC Operations & Triage · Vulnerability Analysis · Digital Forensics · Incident Response

Networks & Infrastructure Network Architecture & Configuration · pfSense Firewalls & VPN · Active Directory & Samba AD DC · DNS / DHCP / RADIUS · Proxmox VE & Docker · Monitoring (Zabbix, CrowdSec)

Systems Administration Linux (Ubuntu, Debian, CentOS) · Windows Server · Bash & Python Scripting · SQL · Email Servers · Backup & Recovery

Development & Tools React & JavaScript · HTML / CSS / Tailwind · Git & GitHub · Cloudflare (Pages, Tunnel) · Vite & Node.js · Technical Documentation


Education & Certifications

  • BSc in Information Security in Computer Networks — ESTG-IPP · 2026–Present
  • CTeSP in Cybersecurity, Networks and IT Systems — ESTG-IPP · 2024–2026 · 17.14/20 (120 ECTS)
  • LetsDefend SOC Analyst Learning Path — LetsDefend (now part of Hack The Box) · 2026

Only those who take risks deserve to live the extraordinary.

Popular repositories Loading

  1. claude-telemetry claude-telemetry Public

    Centralized Claude Code usage tracking across multiple PCs — web dashboard with 5-hour blocks, rate limits, cost analysis, and multi-machine aggregation

    TypeScript 11 6

  2. fsociety-infrastructure fsociety-infrastructure Public

    Infraestrutura empresarial Four-Leged Firewall - Projeto universitário ESTG/IPP

    1 1

  3. session-desktop-forensics session-desktop-forensics Public

    Forensic analysis revealing privacy vulnerabilities in Session Desktop messenger

  4. RyanTech00 RyanTech00 Public

  5. babestand.fsociety babestand.fsociety Public

    Sistema de Gestão de Stand Automóvel com foco em segurança - CTeSP Cibersegurança ESTG/IPP

    PHP 1