Skip to content
View 1tsprune's full-sized avatar
🌴
touch-da-grass
🌴
touch-da-grass

Block or report 1tsprune

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
1tsprune/README.md
readmebox banner

Eky Januarta

Security Engineer · Penetration Tester · Malware Researcher

Portfolio Email Profile views

name: Eky Januarta
handle: 1tsprune
based_in: Indonesia

focus:
  offensive_security:
    - Web, API, and network penetration testing
    - Vulnerability assessment and management
    - Security architecture review
  defensive_security:
    - SIEM and SOC operations
    - Incident response and threat analysis
    - Detection, endpoint, and network security
  research:
    - Malware analysis and reverse engineering
    - Web3 security and phishing prevention
    - Security automation with Python and Bash

currently:
  - Providing independent VAPT and security consulting
  - Building practical security tooling and research
  - Contributing to security and Web3 communities

Profile

I am a security engineer and penetration tester with hands-on experience across VAPT, SIEM/SOC operations, incident response, and security architecture. My work combines an offensive mindset with defensive execution: finding exploitable weaknesses, translating them into business risk, and helping teams implement practical remediation.

I have built enterprise monitoring for 200+ endpoints, managed SIEM operations across multi-client environments, and delivered security assessments that reduced critical findings by more than half within the first quarter per client. I am also a published malware researcher in MISI Vol. 9 (2026).

🛠️ Tools of the Trade

Offensive (Red)

Kali Linux Burp Suite Nuclei Nmap Metasploit SQLmap OWASP ZAP BloodHound Hydra Hashcat

Defensive (Blue)

Wazuh Splunk Elastic Stack Wireshark EDR NDR XDR SOAR Firewall IDS and IPS

Infrastructure & Automation

Python Bash Docker VMware Proxmox Linux Git

OWASP · MITRE ATT&CK · NIST · OSINT · Threat Intelligence · Reverse Engineering · Digital Forensics · Vulnerability Management

Certifications

  • Certified Ethical Hacker (CEH) — EC-Council
  • EC-Council Certified Incident Handler (ECIH)
  • Certified Network Defender (CND) — EC-Council
  • Certified AppSec Practitioner (CAP)
  • Certified Network Security Practitioner (CNSP)
  • Cybersecurity Awareness Professional
  • Alibaba Cloud Associate: Cloud Security
  • BNSP Network Designer

Let's Connect

Open to conversations about security engineering, penetration testing, malware research, and practical security tooling.

Email · Portfolio
Animated hands typing on a keyboard

📊 GitHub Stats

Eky's GitHub statistics Most used languages

📈 Contribution Activity

1tsprune activity graph


Build defensively. Test offensively. Communicate risk clearly.

Pinned Loading

  1. SigOne SigOne Public

    An automated security event normalization and alerting pipeline built on n8n and Postgres. Ingests alerts from SIEM/EDR (Wazuh, Sentinel, Splunk) and delivers LLM-powered daily digests via Telegram…

    JavaScript

  2. wazgen wazgen Public

    Paste any log, auto-generate Wazuh XML rule + decoder + MITRE ATT&CK mapping.

    JavaScript

  3. PCAPCase PCAPCase Public

    Offline network forensics CLI for evidence-backed PCAP triage and automated reporting.

    Python

  4. EVTXCase EVTXCase Public

    Offline endpoint forensics CLI that parses Sysmon, Windows Defender, PowerShell, and Security EVTX files into process trees, investigation timelines, IOCs, and evidence-backed findings.

    Python