TomSecSECURITY / SYSTEMS
TOMSEC / NAVIGATION

Choose a system to explore.

~/search

TOMSEC / INITIALIZATION

[ OK ] Initializing TomSec interface

[ OK ] Mounting project index

[ OK ] Loading public profile

[ OK ] Starting route inspector

[ OK ] Portfolio ready

TOMSEC / PUBLIC WORKSTATIONGITHUB / RATE LIMITEDSCOTLAND, UK

01 / WHOAMI

> whoami

Tom / Cybersecurity student

Understand the system.Question the boundary.

Exploring how networks, software and people fit together—and how to make those connections more secure.

SCROLL TO INSPECT
INTERACTIVE SESSION / 001
visitor@tomsec: ~
$ whoami
Tom / Cybersecurity student
$ status
Building. Learning. Breaking. Securing.
Type help to explore. Nothing here runs a shell.
NO SHELL ACCESSANOTHER WAY TO EXPLORE ↓
> focus --currentOffensive securityNetworkingLinuxCloudInfrastructure

02 / PROFILE

> cat /etc/tomsec/profile

A practical kind
of curiosity.

My interests sit where offensive security meets practical engineering: Linux, networking, automation and the systems behind everyday services. This workstation collects the projects and notes from that learning process.

ROLE
Cybersecurity student
LOCATION
Scotland, UK
CURRENT STUDY
Cybersecurity
PRIMARY FOCUS
Networks & infrastructure
LAB STATUS
Operating / evolving
Read the profile ↗

03 / PROJECTS

> ls ~/projects --featured

Systems in practice.

All 7 case studies ↗
PROJECT / 01Operating

Infrastructure / Security

TomSec Homelab Infrastructure

Public applications, private administration and storage boundaries on an existing Linux server.

DebianDocker ComposesystemdNetBirdext4
Problem → architecture → evidenceRead case study ↗
PROJECT / 02Operating

Storage / Infrastructure

Nextcloud Private Cloud

A document and coursework cloud with filesystem-enforced limits and consistent local recovery snapshots.

NextcloudPostgreSQLRedisext4 quotasWebDAV
Problem → architecture → evidenceRead case study ↗
PROJECT / 03Implemented

Networking / Security

Custom Xray Privacy Tunnel

Predictable routing boundaries between ordinary Internet traffic and private homelab access.

XrayREALITYVPSv2rayNv2rayNG
Problem → architecture → evidenceRead case study ↗
PROJECT / 04Deployed

Development / Security

TomSec Portfolio & Secure Draft Pipeline

A public Next.js portfolio with an authenticated draft queue and a separate human publishing step.

Next.jsReactTypeScriptCloudflare WorkersOpenNext
Problem → architecture → evidenceRead case study ↗

04 / INFRASTRUCTURE

> inspect --routes

Every connection
has a boundary.

Public applications, private administration and privacy routing serve different purposes. Select a path to see where it leads.

Inside the homelab ↗
ROUTE INSPECTORCONCEPTUAL / 3 PATHS
  1. Internet visitor
  2. Cloudflare / HTTPS
  3. Application origin
  4. Persistent storage

Nextcloud and Vaultwarden publish application access through a tunnel. Server administration stays on its own private route.

Separate route: private homelab traffic → NetBird → private services

05 / CAPABILITIES

> systemctl start capabilities.target

Connected disciplines.

Active areas of learning, grounded in projects and coursework.

SECLEARNING / 01

Offensive security

  • Reconnaissance
  • Enumeration
  • Web security
  • Security research
NETLEARNING / 02

Networking

  • TCP/IP
  • DNS
  • Routing
  • Network design
SYSLEARNING / 03

Systems

  • Linux
  • Docker
  • Storage
  • Service administration
CLDLEARNING / 04

Cloud

  • Identity boundaries
  • Reverse proxies
  • HTTPS
  • Cloud architecture
DEVLEARNING / 05

Automation

  • Shell scripting
  • Python
  • TypeScript
  • APIs
AILEARNING / 06

AI & review

  • Assisted research
  • Draft validation
  • Human review
  • Safe publishing

06 / CREDENTIALS

> tail -f /var/log/education.log

Learning, in progress.

A clear distinction between current study, earned credentials and future plans.

IN PROGRESS

Cybersecurity studies

Learning through coursework, independent study and operating the TomSec homelab.

Education log ↗
ACHIEVED

Credential record

No earned certifications are listed yet.

Credential details ↗
PLANNED

Next learning steps

Continue developing networking, offensive security and infrastructure skills. No planned certification is presented as earned.

07 / FIELD NOTES

> ls ~/field-notes

Notes from the workbench.

Field notes ↗
0 published

Draft pipeline ready. Notes appear here after review.

Inspect the publishing boundary ↗

08 / CONTACT

> ./contact --secure

Let’s compare notes.

Explore the work, ask about a design decision, or start a conversation.