Skip to content
View jongcoding's full-sized avatar

Organizations

@MJSEC-MJU

Block or report jongcoding

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
jongcoding/README.md

ialleejy/JONGCODING (์ด์ข…์œค)

Security ยท Web ยท DevOps/DevSecOps ยท CTF ์šด์˜/์ถœ์ œ


์†Œ๊ฐœ

์•ˆ๋…•ํ•˜์„ธ์š”, ์ด์ข…์œค์ž…๋‹ˆ๋‹ค.
์›น/์‹œ์Šคํ…œ ๋ณด์•ˆ ๊ธฐ๋ฐ˜์œผ๋กœ ์ทจ์•ฝ์  ๋ถ„์„ยท์žฌํ˜„, CTF ํ”Œ๋žซํผ/๋Œ€ํšŒ ์šด์˜, DevOps ๊ธฐ๋ฐ˜ ๋ฐฐํฌ/์šด์˜์„ ์ค‘์‹ฌ์œผ๋กœ ํ”„๋กœ์ ํŠธ๋ฅผ ์ง„ํ–‰ํ•ฉ๋‹ˆ๋‹ค.

Interest: Web Security ยท Vulnerability Research ยท CTF Infra/Automation ยท AI ๊ธฐ๋ฐ˜ ๋ณด์•ˆ ํƒ์ง€/์ž๋™ํ™”


์—ญ๋Ÿ‰ ๊ธฐ์ˆ 

  • DevOps: Docker ยท Docker Compose ยท Kubernetes ยท CI/CD(GitHub Actions) ยท Nginx Reverse Proxy ยท ์šด์˜ ์ž๋™ํ™”
  • Cloud: GCP(Compute ์ค‘์‹ฌ ๋ฐฐํฌ/์šด์˜, ๋„คํŠธ์›Œํฌ/๋ฐฉํ™”๋ฒฝ ์„ค์ • ๊ฒฝํ—˜)
  • DevSecOps(์ ์šฉ ๊ฒฝํ—˜): MJSEC LMS์—์„œ SAST/SCA, Secrets Scan, Container Lint ๋ฐ Code Scanning(SARIF) ์šด์˜
  • Security: Web ์ทจ์•ฝ์  ๋ถ„์„/์žฌํ˜„ ยท CTF ๋ฌธ์ œ ์ถœ์ œ/์šด์˜ ยท ์ทจ์•ฝ์  ๋ฆฌ์„œ์น˜/์žฌํ˜„ ํ™˜๊ฒฝ ๊ตฌ์ถ•

๋Œ€ํ‘œ ํ”„๋กœ์ ํŠธ

WEAVE (WHS 3rd) โ€” Semantic Gap ๊ธฐ๋ฐ˜ ์›น ์ทจ์•ฝ์  ํ‘œ์ค€ ๋ถ„๋ฅ˜/์ง€์‹ ํ”Œ๋žซํผ

  • Site: https://semanticgap.mjsec.kr/
  • Repo: https://github.com/WHS-webao/semantic_gap
  • Docs: https://github.com/WHS-webao/WHS-webao.github.io
  • ๋‚ด๊ฐ€ ํ•œ ์—ญํ• 
    • ์ตœ์‹  ์›น ์ทจ์•ฝ์  ์ •๋ณด๊ฐ€ ์‚ฐ๋ฐœ์ ์œผ๋กœ ํฉ์–ด์ ธ ์žˆ์–ด, ํ”„๋กœ์ ํŠธ ์Šค์ฝ”ํ”„๋ฅผ Semantic Gap(์˜๋ฏธ๋ก ์  ์ฐจ์ด) ์œ ํ˜•์œผ๋กœ ํ•œ์ •ํ•˜๊ณ  ์ •๋ฆฌ ๋ฐฉํ–ฅ์„ ์žก์Œ
    • ๊ณต๊ฒฉ โ€œ๊ธฐ๋ฒ•โ€ ๋‚˜์—ด์ด ์•„๋‹Œ **Root Cause ์ค‘์‹ฌ Taxonomy(๋ถ„๋ฅ˜ ์ฒด๊ณ„)**๋ฅผ ์„ค๊ณ„ํ•˜์—ฌ, ์•…์šฉ ํ๋ฆ„/๋ฐฉ์–ด ํฌ์ธํŠธ๋ฅผ ํ•จ๊ป˜ ๋ณผ ์ˆ˜ ์žˆ๊ฒŒ ๊ตฌ์กฐํ™”
    • ์ทจ์•ฝ์  ์‚ฌ๋ก€๋ฅผ ์ผ์ • ํฌ๋งท์œผ๋กœ ์ •์ œยทํ‘œ์ค€ํ™”ํ•˜์—ฌ, ์ดํ›„ LLM/RAG ๊ธฐ๋ฐ˜ ๋ถ„์„ยทํƒ์ง€ ์ž๋™ํ™”์— ํˆฌ์ž… ๊ฐ€๋Šฅํ•œ ๋ฐ์ดํ„ฐ ํ˜•ํƒœ๋กœ ์ •๋ฆฌ

Reagan โ€” Chrome Extension + DRF ๊ธฐ๋ฐ˜ ์•…์„ฑ URL ํƒ์ง€ ํŒŒ์ดํ”„๋ผ์ธ

  • Repo: https://github.com/MJSEC-MJU/Reagan
  • reCAPTCHA AI: https://github.com/MJSEC-MJU/breakrecapcha_v2
  • Docker Hub: https://hub.docker.com/r/ialleejy/reagan-backend
  • ๋‚ด๊ฐ€ ํ•œ ์—ญํ• 
    • ํ™•์žฅ ํ”„๋กœ๊ทธ๋žจ๊ณผ ๋ฐฑ์—”๋“œ๋ฅผ ์—ฐ๊ณ„ํ•ด URL ๋ถ„์„/์ˆ˜์ง‘ ํ๋ฆ„์„ ๊ตฌ์„ฑํ•˜๊ณ , ๋ฐฑ์—”๋“œ๋ฅผ Docker ๊ธฐ๋ฐ˜์œผ๋กœ ํŒจํ‚ค์ง•
    • ๋ชจ๋ธ/์ž๋™ํ™” ์š”์†Œ(reCAPTCHA ์ฒ˜๋ฆฌ ๋“ฑ)๋ฅผ ํŒŒ์ดํ”„๋ผ์ธ ํ˜•ํƒœ๋กœ ๋ถ„๋ฆฌํ•ด ์žฌํ˜„ ๊ฐ€๋Šฅํ•˜๊ฒŒ ์ •๋ฆฌ

MSG CTF Platform โ€” ๋Œ€ํšŒ ์šด์˜์šฉ ํ”Œ๋žซํผ(Front/Back) + Discord ์šด์˜ ๋ด‡

MSG CTF ์šด์˜/์ถœ์ œ ์ƒ์„ธ(์‹ค๋ฌดํ˜•)

์šด์˜/์ถœ์ œ ์ด๋ ฅ

  • MSG CTF 1ํšŒ: ์„ธ์ข…๋Œ€ SSG, ๊ฑด๊ตญ๋Œ€ seKUrity, ๋ช…์ง€๋Œ€ MJSEC ๊ณต๋™ ์šด์˜ยท์ถœ์ œ
  • MSG CTF 2ํšŒ (2025.11.09): ๋ช…์ง€๋Œ€ MJSEC, ์ƒ๋ช…๋Œ€ CODECURE, ์ˆœ์ฒœํ–ฅ๋Œ€ SecurityFirst, ๊ฑด๊ตญ๋Œ€ seKUrity, ์ค‘์•™๋Œ€ securious ๊ณต๋™ ์šด์˜ยท์ถœ์ œ

๊ทœ๋ชจ(์ง€ํ‘œ)

  • ์ฐธ๊ฐ€์ž: ์•ฝ 100๋ช…
  • ํŒ€ ์ˆ˜: ์•ฝ 50ํŒ€
  • ๋ฌธ์ œ ์ˆ˜: ์ด 24๋ฌธ์ œ

๋งก์€ ๊ฒฝํ—˜

  • ํ”Œ๋žซํผ ๊ฐœ๋ฐœ/์šด์˜: ๋Œ€ํšŒ ์šด์˜์— ํ•„์š”ํ•œ Front/Back ๋ฐ ์šด์˜ ๋„๊ตฌ(Discord Bot)๋ฅผ ๊ตฌ์„ฑํ•˜๊ณ  ์œ ์ง€๋ณด์ˆ˜
  • ์ถœ์ œ: MISC ๋ฌธ์ œ ์ œ์ž‘ ๋ฐ ๋ฐฐํฌ ์•„์นด์ด๋น™
  • ์šด์˜ ์ž๋™ํ™”: ๊ณต์ง€/์ง„ํ–‰ ์ƒํƒœ ๊ณต์œ /๋ฐ˜๋ณต ๋ฌธ์˜ ๋Œ€์‘์„ Discord ์ค‘์‹ฌ์œผ๋กœ ์ •๋ฆฌํ•˜์—ฌ ์šด์˜ ํšจ์œจ์„ ๋†’์ด๋Š” ๋ฐฉํ–ฅ์œผ๋กœ ๊ฐœ์„ 

MJSEC LMS (Front) โ€” ๋ฐฐํฌ/์šด์˜ + DevSecOps(Security CI)

  • Repo: https://github.com/MJSEC-MJU/MJSEC_LMS_FRONT_LMS
  • Live: https://mjsec.kr/lms
  • DevOps: React/Vite ยท Nginx Reverse Proxy ยท Docker/Compose ยท GitHub Actions
  • DevSecOps(์ ์šฉ): GitHub Actions ๊ธฐ๋ฐ˜ ๋ณด์•ˆ ์Šค์บ” ํŒŒ์ดํ”„๋ผ์ธ ์šด์˜
    • SAST: Semgrep(OWASP Top 10 + JS/React) โ†’ SARIF ์—…๋กœ๋“œ
    • SCA/์ทจ์•ฝ์ : npm audit(๋ฆฌํฌํŠธ) + Trivy(fs/image) โ†’ SARIF ์—…๋กœ๋“œ
    • Secrets: Gitleaks โ†’ SARIF ์—…๋กœ๋“œ
    • Container: Hadolint(Dockerfile lint) โ†’ SARIF ์—…๋กœ๋“œ
Security CI (GitHub Actions) ๊ตฌ์„ฑ ๋ณด๊ธฐ
  • Trigger: PR / main push
  • Concurrency: ๋™์ผ ๋ธŒ๋žœ์น˜ ์ค‘๋ณต ์‹คํ–‰ ์ทจ์†Œ
  • ๊ฒฐ๊ณผ ์—…๋กœ๋“œ: GitHub Code Scanning(SARIF)

Scans

  • Semgrep(SAST): OWASP Top 10 + JavaScript + React
  • npm audit(SCA): report-only
  • Trivy(fs/image): HIGH/CRITICAL
  • Hadolint(Dockerfile lint)
  • Gitleaks(secrets)

MJSEC BOJ CONTEST โ€” solved.ac ๊ธฐ๋ฐ˜ ๋ฐฑ์ค€ ๋Œ€ํšŒ ํ”Œ๋žซํผ

  • Repo: https://github.com/MJSEC-MJU/MJSEC_BOJ
  • ๋‚ด๊ฐ€ ํ•œ ์—ญํ• 
    • solved.ac API๋ฅผ ํ™œ์šฉํ•ด ๋Œ€ํšŒ ์šด์˜์— ํ•„์š”ํ•œ ๋ฆฌ๋”๋ณด๋“œ/์ง‘๊ณ„ ํ๋ฆ„์„ ๊ตฌ์„ฑ
    • ๋ฐฐํฌ ํ™˜๊ฒฝ(Nginx/Gunicorn/Docker ๋“ฑ)์— ๋งž์ถฐ ์šด์˜ ๊ฐ€๋Šฅํ•œ ํ˜•ํƒœ๋กœ ์ •๋ฆฌ

์ˆ˜์ƒ/์„ฑ๊ณผ

๋‚ ์งœ ์„ฑ๊ณผ ๋งํฌ
2025.12.06 ์ œ1ํšŒ ๊ฐ๊ทค CTF ์ „์ฒด 1์œ„ https://dreamhack.io/ctf/766
2025.05.25 SPACE WAR URANUS โ€” WEB ๊ฐœ์ธ์ „ 1์œ„ https://ialleejy.tistory.com/54
2023.07.25 ์ •๋ณด์‚ฌ๋ น๋ถ€ ๋ณด์•ˆ๊ฒฝ์—ฐ๋Œ€ํšŒ ์šฐ์ˆ˜์ƒ -
2022.12 / 2023.02 ์ •๋ณด์‚ฌ ์›น์‚ฌ์ดํŠธ ์ทจ์•ฝ์  ๋ณด๊ณ  -

๊ฒฝํ—˜

์œก๊ตฐ ์ •๋ณด๋ณดํ˜ธ๋ณ‘ (2022.04 โ€“ 2023.10)

  • ๋ณด์•ˆ์žฅ๋น„ ์šด์šฉ/์ •์ฑ… ๊ด€๋ฆฌ, ์›น ์ทจ์•ฝ์  ๋ณด๊ณ , ๊ด€์ œ ์—…๋ฌด

๋ฆฌ์„œ์น˜

์ปค๋ฎค๋‹ˆํ‹ฐ/์šด์˜


์ง„ํ–‰ ์ค‘ / ๊ณ„ํš

  • JongScanAI (๊ณ„ํš): AI๋ฅผ ํ™œ์šฉํ•œ ์›นํŽ˜์ด์ง€ ์ทจ์•ฝ์  ์Šค์บ๋„ˆ
  • whoru (์ œ์ž‘ ์ค‘): ๋ชจ๋ฐ”์ผ ์นด๋ฉ”๋ผ ๊ธฐ๋ฐ˜ 3D ์‚ฌ์šฉ์ž ๋ชจ๋ธ + ์˜๋ฅ˜ ์‹œ๋ฎฌ๋ ˆ์ด์…˜ ์‡ผํ•‘ ๊ฒฝํ—˜

ํ”„๋กœ๊ทธ๋ž˜๋ฐ ์–ธ์–ด

Python Java C C++

ํ”„๋ ˆ์ž„์›Œํฌ

Django

DB

SQLite MySQL

Libraries

Scikit Learn NumPy SciPy Crypto


BOJ PYTHON RANKING

Boj Statistics ialleejy profile


GitHub ํ†ต๊ณ„

GitHub Statistics



๊ฐ์‚ฌํ•ฉ๋‹ˆ๋‹ค.

Pinned Loading

  1. MSG_CTF_BACK MSG_CTF_BACK Public

    Forked from MJSEC-MJU/MSG_CTF_BACK

    Java 1

  2. MSG_CTF_WEB MSG_CTF_WEB Public

    Forked from MJSEC-MJU/MSG_CTF_WEB

    JavaScript 1

  3. MSG_DISCORDBOT MSG_DISCORDBOT Public

    Forked from MJSEC-MJU/MSG_DISCORDBOT

    Python 1

  4. compression-side compression-side Public

    Python