Hi, I’m Aathil Ducky
Cybersecurity enthusiast & web developer from Sri Lanka.
I specialize in penetration testing, vulnerability assessment, vibe coding, and cloud security. I also build with Python/Django and WordPress — focused, creative, efficient.

About Me
I’m a passionate cybersecurity enthusiast and web developer from Sri Lanka. I specialize in penetration testing, vulnerability assessment, SOC monitoring, and cloud security. With hands-on experience in Metasploit, Burp Suite, Wireshark, and SIEM, I enjoy uncovering risks and building resilient systems.
Alongside cybersecurity, I build with Python, Django and WordPress — including custom plugins. I also write practical guides on security & Python.
Skills & Tools
Cybersecurity
- Pen Testing
- Vuln Assessment
- SOC Monitoring
- Cloud Security
- OSINT
- IR



Development
- Python
- Django
- JavaScript
- Tailwind CSS
- WordPress
- REST APIs
DevOps & Cloud
- AWS
- Git & GitHub
- GitHub Actions
- Linux
- NGINX
- CI/CD
Featured Projects
Security tools & web apps I built or contributed to.

SOC Monitoring Playbooks
Collection of detection rules & IR workflows for SIEM platforms (Splunk/ELK).

WordPress Security Plugins
Custom plugins to enforce best-practice hardening & audit logging.
Experience & Education
Experience
Cybersecurity Intern
2024 — PresentAssisting with SOC monitoring, vulnerability assessments, and security automation. Building Python tools for log parsing and triage.
- Wrote SIEM detections & dashboards (Splunk/ELK)
- Threat intel enrichment for alerts
- Nmap/Burp automation for attack surface scans
Freelance Web Developer
2022 — PresentSecure websites/apps using Django, Tailwind, and WordPress. Security-first best practices from day one.
Education & Certifications
BSc (Hons) — Information Security (in progress)
—Networks, DFIR, Secure Dev, Cloud, Cryptography.
TryHackMe — Top 10%
CurrentActive in CTFs & labs: web exploitation, privilege escalation, and blue‑team challenges.
What Clients Say
Security + speed + polish.
Latest Writing
Insights on cybersecurity and Python programming.
Web Pentesting 101: From Recon to Report
A beginner-friendly walkthrough of a typical web app engagement.
ReadPython Logging for Security Engineers
Effective log enrichment & structured logging patterns.
ReadMy CTF Notes: Web & Linux
Selected tactics, tools, and commands from recent challenges.
ReadLet’s work together
Have a security challenge or need a modern, secure web app? I’d love to help.