I'm Hanif Ivan Prasetyo, using YORA1928 as my online technical identity.
I'm an IT student interested in understanding how computer systems work, particularly through cybersecurity, computer networking, Linux, and server administration.
Most of what I learn comes from practical work.
I build small systems, configure environments, test ideas, investigate problems, experiment with tools, and document what I learn.
I don't try to present myself as someone who already knows everything.
I'm still learning.
This profile is a record of that process.
|
Security fundamentals Vulnerability research Web security Security testing Responsible disclosure |
TCP/IP DNS DHCP Routing IP addressing Troubleshooting |
System administration SSH Permissions Services Shell Server environments |
VPS Docker Deployment Server management Web services Infrastructure |
Cybersecurity is one of the areas I am actively exploring.
My approach is based on understanding how systems work before trying to understand how they can fail.
Areas I currently explore include:
Web Security
│
├── HTTP
├── Authentication
├── Authorization
└── Application Security
Vulnerability Research
│
├── Vulnerability Analysis
├── Reproduction
├── Security Testing
└── Technical Documentation
Network Security
│
├── Network Fundamentals
├── Service Exposure
├── Traffic Analysis
└── Troubleshooting
Security Research
│
├── CVE Research
├── Security Tooling
└── Responsible Disclosure
All security testing and research should be performed in environments where I have permission to test.
I document security research, vulnerability analysis, and technical experiments from hands-on learning.
The research archive is available on my website:
My GitHub repositories contain the technical implementation and supporting material where appropriate:
Research involving vulnerability analysis, reproduction, and security tooling.
Focus
Vulnerability Analysis
Web Security
Security Testing
CVE Research
Python
Repository:
Hands-on security testing performed in controlled environments to better understand application and system behavior.
Topics
Reconnaissance
HTTP
Web Applications
Network Services
Security Fundamentals
When I identify a security issue in a system I am authorized to test, I aim to document the issue clearly and communicate it responsibly.
The purpose is not simply to find a vulnerability.
The purpose is to understand:
What happened?
↓
Why did it happen?
↓
What is affected?
↓
How can it be reproduced safely?
↓
How can it be communicated clearly?
↓
How can it be fixed?
My repositories represent different parts of my learning process.
Rather than treating every repository as a finished product, I use GitHub as a place to build, experiment, document, and improve.
Security-related experiments, research, and tools.
Topics
Web Security
Vulnerability Research
Security Testing
CVE
Security Tooling
Practical networking experiments and learning projects.
Topics
TCP/IP
DNS
DHCP
Routing
IP Addressing
Troubleshooting
Experiments involving Linux systems and server environments.
Topics
Linux Administration
SSH
VPS
Docker
Services
Deployment
Small applications, scripts, experiments, and tools created while learning.
Topics
Python
JavaScript
HTML
CSS
Automation
Linux · Ubuntu · Bash
TCP/IP · DNS · DHCP · Routing
Nmap · Wireshark · curl · Nikto
Python · JavaScript · HTML · CSS
Git · GitHub · Docker · VPS
This is not a list of technologies I claim to have mastered.
It represents technologies and areas I have worked with, studied, or am currently exploring.
I prefer practical learning.
Instead of stopping at:
"I know what this technology is."
I try to reach:
"I understand how it behaves because I built or tested something with it."
My general workflow:
┌─────────────┐
│ LEARN │
└──────┬──────┘
│
▼
┌─────────────┐
│ BUILD │
└──────┬──────┘
│
▼
┌─────────────┐
│ TEST │
└──────┬──────┘
│
▼
┌─────────────┐
│ UNDERSTAND │
└──────┬──────┘
│
▼
┌─────────────┐
│ DOCUMENT │
└──────┬──────┘
│
▼
┌─────────────┐
│ IMPROVE │
└──────┬──────┘
│
└───────────────┐
│
▼
REPEAT
Some projects work.
Some projects break.
Both are useful.
My current learning direction includes:
Understanding how systems communicate and how network services work.
Improving system administration and understanding Linux environments.
Learning security concepts through practical testing, research, and documentation.
Working with VPS environments, deployment, services, and server management.
Using version control to document projects and maintain a public technical archive.
I also document parts of my learning process through writing.
My first published technical story on Medium.
It covers the transition from working with Linux servers toward cybersecurity, vulnerability research, and taking security learning more seriously.
More writing:
Some of my security-related work has received acknowledgements from organizations I contacted regarding reported vulnerabilities.
I keep the related documentation publicly available where appropriate.
Certificate archive:
Website archive:
The purpose of this section is documentation, not exaggeration.
A security acknowledgement represents a reported issue or contribution being recognized by the respective organization.
One of the main reasons I use GitHub is documentation.
I want my repositories to answer more than:
"What does this project do?"
They should also make it possible to understand:
Why was it created?
What problem was I trying to understand?
How was it built?
What did I learn?
What went wrong?
What would I improve?
That mindset is also the reason this website exists.
GitHub is where I keep code.
Medium is where I write.
My website is where I connect everything together.
YORA1928
│
┌─────────────┼─────────────┐
│ │ │
▼ ▼ ▼
GitHub Medium Website
│ │ │
▼ ▼ ▼
Projects Writing Research
Research Articles Portfolio
Code Notes Certificates
│ │ │
└─────────────┴─────────────┘
│
▼
Technical Archive
Main website:
The long-term goal is to keep building a public technical archive.
That includes:
Research
Projects
Technical Notes
Security Writeups
Learning Logs
Certificates
Experiments
Documentation
The website will evolve alongside the work.
It is not meant to be a static résumé.
It is a record of progress.
I don't want every repository to look perfect.
I want repositories to show progress.
That means some projects may be:
- experimental
- incomplete
- learning-focused
- small
- actively changing
The important part is that each project represents something I actually worked on or learned from.
Security research should be conducted responsibly.
I do not intend to use this profile to encourage unauthorized access, abuse, or disruption of systems.
When researching vulnerabilities, I focus on:
Authorization
+
Controlled Testing
+
Reproducible Evidence
+
Clear Documentation
+
Responsible Disclosure
Security knowledge is most useful when it helps people understand and improve systems.
name: Hanif Ivan Prasetyo
online_identity: YORA1928
interests:
- Cybersecurity
- Computer Networking
- Linux
- Server Administration
- Programming
learning_style:
- Hands-on practice
- Experimentation
- Documentation
- Continuous improvement
public_work:
github: yora1928
medium: yora1928
website: yora1928.my.idThe central hub for my projects, research, writing, and technical documentation.
Code, experiments, research repositories, and technical projects.
Technical writing and personal learning notes.
https://github.com/yora1928/certifications-README.md
Public archive of certificates and security-related acknowledgements.
My personal technical website:
Cybersecurity · Networking · Linux · Servers
Research · Projects · Writing · Documentation
I'm not trying to document a finished career.
I'm documenting the process of building one.
Every repository, experiment, research project, and article is another part of that process.
Learn. Build. Test. Document. Improve.
