19 · San Diego · cybersecurity student at SD City College. SOC analyst track. Currently studying for CompTIA Security+.
I build security tools, run my own lab work, document everything in public, and ship vanilla web apps on the side.
| Project | What it is |
|---|---|
| honeypot | Multi-port Python honeypot on AWS EC2 — captured live botnet traffic in <60s. Includes Sigma detection rules + MITRE ATT&CK mapping. |
| homelab-pentest-v1 | Full kill-chain pentest on an isolated Kali → Windows lab, exploiting EternalBlue (MS17-010). Includes blue-team Sigma rules + remediation playbook. |
| password-manager | Local-first AES-encrypted vault with proper threat model. Built to understand crypto primitives, not to compete with Bitwarden. |
| Project | What it is |
|---|---|
| pulse-habit-tracker · live | Single-file vanilla PWA habit tracker. Solo Leveling-inspired XP/rank layer, custom hex color picker, hardened CSP, offline-first. |
Cybersecurity — Python · Nmap · Metasploit · Wireshark · Kali Linux · VirtualBox · AWS · Sigma · MITRE ATT&CK
Web — Vanilla JS / HTML / CSS · Next.js · Supabase · Stripe · Service Workers · CSP hardening
Tooling — Git · GitHub Actions · Obsidian · VS Code
- Studying for CompTIA Security+ (SY0-701)
- Building out an Active Directory lab with Splunk for detection engineering
- Documenting every lab + project with detection rules + MITRE mappings — the work I want to be doing in a SOC seat, made visible
- LinkedIn: zachwenger
- Email: zachwenger.dev@gmail.com