ls ~/homelab
Home Lab
A self-hosted security lab built for hands-on defense: detection engineering, threat intelligence, deception, and hardened network infrastructure. Services marked live are publicly reachable demos.
Wazuh SIEM / EDR
Enterprise-grade SIEM and EDR with custom detection rules and automated incident response.
MISP Vulnerability Attack Feed
Automated threat intelligence feed correlating real-time CVE data into MISP for proactive vulnerability management.
OpenCanary Honeypot Network
Distributed honeypots detecting unauthorized access attempts and gathering threat intelligence.
Secure Dockerized Browser (KASM)
Isolated, disposable browser environment for secure browsing and malware analysis.
SearXNG Private Metasearch
Privacy-focused metasearch engine aggregating results without tracking or profiling.
pfSense Firewall Infrastructure
Network security with advanced firewall rules, VPN, and Suricata IDS/IPS.
Uptime Kuma Monitoring
Self-hosted uptime monitoring with alerting and public status pages.
Kemp Load Balancer
High-availability load balancing with SSL termination and health monitoring.
ProxDoc
The inventory and compliance platform for the lab: an agentless Proxmox scanner that inventories every guest, scores its posture, and auto-generates the docs.
Observability Tier
Metrics, logs, and uptime for the whole cluster, split across three purpose-built stores.
Self-Hosted AI Tier
Private LLM chat and image generation where no prompt or token leaves the lab.
Zero-Trust Access Tier
Identity-brokered, outbound-only remote access with zero inbound ports.