ViKa's Blog
Security Engineer. Machine Learning. Data Scientist.
As a third-year Information Security student at UIT (VNU-HCM) and member of Inseclab’s teamQ, I specialize in offensive and defensive security with expertise in penetration testing. I am seeking an internship to enhance my practical cybersecurity skills in a professional environment while contributing meaningful value to the organization.
About Me
Hi! I’m Vi Khanh, a third-year Information Security student at UIT (VNU-HCM) and member of Inseclab’s teamQ, I specialize in offensive and defensive security with expertise in penetration testing. I am seeking an internship to enhance my practical cybersecurity skills in a professional environment while contributing meaningful value to the organization.
Quick Facts
Current Role
🎓 Student Researcher a UIT (VNU-HCM)
Education
🎓 University of Information Technology (UIT) – VNU-HCM, Information Security (2022 - Present)
🤖 Collège LaSalle Montréal, AEC: Artificial Intelligence and Machine Learning
Certification
🏆 Ethical Hacker – Cisco Networking Academy (2025)🎉
Languages
Interests
Skills
Core technical skills in cybersecurity, penetration testing, and programming.
Penetration Testing
Hands-on experience with OWASP Top 10 vulnerabilities including SQL Injection, XSS, SSRF, and Command Injection. Skilled in exploiting and analyzing web application security flaws.
Malware Analysis
Experience in analyzing macro malware, detecting obfuscation techniques, and using YARA rules for threat detection.
Programming & Scripting
Proficient in Python and Bash for automation, security tooling, and reconnaissance scripting.
Security Tools
Hands-on experience with Burp Suite, Nmap, DVWA, and PortSwigger Labs for penetration testing and vulnerability analysis.
Operating Systems
Experienced with Kali Linux, Ubuntu, and Windows environments for security testing and development.
Experience
Hands-on experience in cybersecurity research, penetration testing, and tool development.
University of Information Technology – VNU-HCM
Student Researcher
Academic research in cybersecurity and applied security systems
Key Achievements
- Developed a Python-based tool to detect macro malware in Office documents using olevba and YARA rules
- Applied heuristic scoring to identify obfuscation patterns such as Chr() and XOR techniques
- Built and tested labs covering OWASP Top 10 vulnerabilities (SQLi, XSS, SSRF, Command Injection)
- Automated reconnaissance tasks using Python, VirusTotal API, and Nmap
- Conducted SSRF analysis using PortSwigger Academy
- Contributed to research on LLM+RL-based fuzzing for Smart Contracts
- Worked on G-FLEX framework for detecting fileless malware using graph-based transformers
Tech Stack
Technologies and tools used in cybersecurity, automation, and development.
Programming
Security Tools
Malware Analysis
Operating Systems
APIs & Automation
AI/ML Frameworks
Development Tools
Databases
Engineering Software
Let's Connect
Send me a message
Contact Information
Let's connect! I'm open to internship opportunities, cybersecurity projects, and collaborations.