Sitelet https://github.com/lucasj-sec
Skip to content
View lucasj-sec's full-sized avatar

Highlights

  • Pro

Block or report lucasj-sec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
lucasj-sec/README.md

Typing SVG

Header

"Understand the system before you automate it."


LinkedIn Visitors Focus HTB


🇧🇷  Quem sou

profissional = {
    "nome"       : "Lucas J. Da Cunha",
    "foco"       : ["Infraestrutura", "Cloud", "SysAdmin"],
    "base"       : "Hacker ético (ESCOM, Exército Brasileiro) com badge Cisco, hoje aplicada como fundamento de segurança na infra",
    "filosofia"  : "Entendo o sistema antes de automatizar. Automatizo pra confiar, não pra esquecer.",
    "stack"      : ["Terraform", "Azure", "Linux", "Bash", "Python", "Git"],
    "distros"    : ["Arch Linux", "Debian", "Kali Linux"],
    "formação"   : "Ciências da Computação, Universidade São Francisco (USF)",
    "agora"      : "IaC com Terraform/Azure e trilha CySA+ como próximo passo",
    "motto"      : "terraform apply, e deixa rodar.",
}

🔧  Operações Ativas

Projeto Status Descrição
☁️ Lab Terraform Azure ACTIVE Provisionamento de VM Ubuntu na Azure via Terraform, com NSG restrito por IP e troubleshooting documentado
🛡️ Citadel SOAR ACTIVE Mini-SOAR headless para defesa ativa de servidor Linux, construído durante prática em labs do HTB
⚔️ HackTheBox Labs ACTIVE Prática regular em ambiente controlado, mantém a base de segurança afiada
🎓 ESCOM, Hacker Ético COMPLETED ✅ Curso pela Escola de Telecomunicações do Exército Brasileiro, badge Cisco
🎯 AWS Certified Solutions Architect - Associate IN PROGRESS Certificação em andamento
🎯 CCNA NEXT TARGET Especialização em Redes

⚡  Arsenal

Terraform Azure Linux Arch Debian Bash Python Git


🗡️  Citadel: base de segurança aplicada à infra

Durante um lab no HackTheBox, parei de ler log manualmente e escrevi o defensor.

O Citadel é um mini-SOAR que construí para rodar enquanto praticava pentest. Ele age como Blue Team autônomo: eu ataco, ele detecta e bloqueia.

Foi esse projeto que me mostrou o lado que mais me interessa hoje: não é o ataque em si, é o sistema que sustenta a defesa. Daí o foco atual em infra e cloud.

[Kali, atacando]                     [Debian, Citadel defendendo]
──────────────────────────────────────────────────────────────────
$ hydra -l root -P wordlist.txt      [ALERTA] Falhas: 1/5 -> 2/5 -> 3/5
  ssh://192.168.100.10 -t 4
                                      [ALERTA] Falhas: 4/5 -> 5/5
[DATA] attacking...                  [LIMIAR ATINGIDO] Bloqueando...
                                      [BLOQUEIO] ok blackhole (ip route)

[timeout... timeout... timeout]
[262 tentativas. 0 respostas.]       # silêncio total. kernel descarta tudo.

-> Ver repositório completo


🌐  English

Click to expand 🇺🇸
professional = {
    "name"        : "Lucas J. Da Cunha",
    "focus"       : ["Infrastructure", "Cloud", "SysAdmin"],
    "background"  : "Ethical hacking course (ESCOM, Brazilian Army) with a Cisco badge, now applied as a security foundation for infra work",
    "philosophy"  : "Understand the system before automating it. Automate to trust it, not to forget it.",
    "stack"       : ["Terraform", "Azure", "Linux", "Bash", "Python", "Git"],
    "distros"     : ["Arch Linux", "Debian", "Kali Linux"],
    "education"   : "Computer Science, Universidade São Francisco (Brazil)",
    "currently"   : "IaC with Terraform/Azure, CySA+ as the next certification target",
    "motto"       : "terraform apply, and let it run.",
}

🔧 Active Operations

Project Status Description
☁️ Terraform Azure Lab ACTIVE Provisions an Ubuntu VM on Azure via Terraform, with IP-restricted NSG and documented troubleshooting
🛡️ Citadel SOAR ACTIVE Headless mini-SOAR for active Linux server defense, built during HTB practice
⚔️ HackTheBox Labs ACTIVE Regular practice in a controlled environment, keeps the security foundation sharp
🎓 ESCOM, Ethical Hacking COMPLETED ✅ Course through the Brazilian Army's telecommunications school, Cisco badge
🎯 AWS Certified Solutions Architect - Associate IN PROGRESS Certification underway
🎯 CCNA NEXT TARGET Network Specialization

🎯 What I'm about

I'm moving into infrastructure and cloud, with a security background that shapes how I build things.

During HackTheBox sessions I got tired of reading massive SSH logs manually, so I wrote Citadel, a headless mini-SOAR that acts as an autonomous Blue Team operator while I run the pentest. That project taught me I care more about the system holding the defense together than about the attack itself. That is what pulled me toward infra and cloud.

Now I build infrastructure with Terraform on Azure, documenting the real troubleshooting along the way, not just the happy path.

📬 Let's connect: linkedin.com/in/lucas-j-da-cunha


+-------------------------------------------+
|                                           |
|   "Infrastructure you don't think        |
|    about is infrastructure that works."   |
|                                           |
|   and it took a lot of terraform apply   |
|   to get there. |>                        |
|                                           |
+-------------------------------------------+

Cloud infra

Popular repositories Loading

  1. lucasj-sec lucasj-sec Public

    Config files for my GitHub profile.

  2. bytecraft-forjado-em-java bytecraft-forjado-em-java Public

    eBook prático e didático sobre programação Java, com foco em estruturas de dados, POO e exemplos reais. Criado com apoio de IA.

  3. verificador-idade-detran verificador-idade-detran Public

    Aplicação Java que verifica se uma pessoa pode iniciar o processo de CNH, com interface gráfica feita em Swing.

    Java

  4. citadel-soar citadel-soar Public

    Mini-SOAR headless para defesa ativa de servidores Linux. Detecta brute-force SSH em tempo real via journald, rastreia IPs com sliding window e bloqueia automaticamente via blackhole de roteamento.

    Python

  5. skills-introduction-to-github skills-introduction-to-github Public

    My clone repository

  6. Lab-Azure-Com-IaC Lab-Azure-Com-IaC Public

    lab terraform azure vm com nsg restrito por ip e variaveis

    HCL