Skip to content
View simohowaanaa's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report simohowaanaa

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
simohowaanaa/README.md

Maimouni Mohammed

Typing SVG


À propos

Actuellement en stage au SOC de Dataprotect, où je travaille sur la détection d'attaques Active Directory (AD) :

  • documentation des techniques d'attaque,
  • simulation en environnement de test,
  • développement d'un agent d'IA de détection.

Mon objectif : devenir analyste SOC / Blue Team et me spécialiser dans la détection d'intrusion et l'analyse de menaces.


Domaines

  • Sécurité défensive (Blue Team) — détection d'intrusion, analyse de logs
  • Analyse de malware & Reverse Engineering — désobfuscation, analyse de binaires (Ghidra)
  • DFIR / Forensics — disque (MFT), mémoire, réseau (PCAP), VoIP
  • Detection Engineering — règles Sigma, mapping MITRE ATT&CK
  • Active Directory — attaques & détection
  • IA appliquée à la détection de menaces
  • Network & Email forensics — analyse de trafic, phishing
  • Threat Intelligence (CTI) / OSINT — veille dark web, environnement Tor isolé

Compétences techniques

Python Bash PowerShell Linux Windows Wireshark Tor VirtualBox Ghidra CyberChef

  • Langages : Python, Bash, PowerShell
  • Systèmes : Windows / Active Directory, Linux
  • Analyse & Reverse : Wireshark, Ghidra, CyberChef, PdfStreamDumper, Volatility, MFTECmd
  • Détection : SIEM, Sigma, MITRE ATT&CK, VirusTotal
  • Virtualisation & OSINT : VirtualBox, Whonix, Tor, GnuPG

Projets & Write-ups

  • ai-driven-ad-attack-detection — détection d'attaques Active Directory pilotée par IA : documentation, simulation d'attaques et agent de détection (stage Dataprotect)
  • LetsDefend-Writeups — write-ups de challenges SOC / Blue Team : phishing, forensics réseau (PCAP, VoIP, port scan), analyse de malware (PowerShell, PDF, reverse engineering), DFIR disque (MFT) et detection engineering (Sigma)
  • soc-analyst-learning-path — mes notes personnelles du parcours SOC Analyst (LetsDefend)
  • dfir-learning-path — mon parcours d'apprentissage DFIR (Digital Forensics & Incident Response)
  • darknet-analyst-lab — mise en place d'un environnement d'analyse darknet sécurisé (Whonix + Tor) pour la veille CTI : isolation réseau, vérification cryptographique, workflow d'analyste
  • CupidStrike — PoC red team / éducatif en Python : payload de détournement de bureau réversible

GitHub Stats


Contact

Pinned Loading

  1. LetsDefend-Writeups LetsDefend-Writeups Public

    Write-ups de challenges SOC / Blue Team (phishing, forensics reseau, DFIR) sur LetsDefend.

    2

  2. ai-driven-ad-attack-detection ai-driven-ad-attack-detection Public

    AI-Driven Detection of Active Directory Attacks in a SOC — documentation, attack simulation, and an AI detection agent.

    Shell 2

  3. dfir-learning-path dfir-learning-path Public

    Notes et parcours d'apprentissage DFIR (Digital Forensics & Incident Response).