"This portfolio piece demonstrates my ability to analyze network traffic logs to identify and mitigate active cyber threats. Using Wireshark TCP/HTTP log data, I investigated a server connection timeout issue and successfully diagnosed a Direct DoS SYN Flood attack. The report breaks down the mechanics of the standard TCP three-way handshake to illustrate how a malicious IP address overwhelmed the server with incomplete connection requests. Finally, it outlines actionable remediation steps, including firewall configurations to block the offending IP and prevent future network disruptions. " - Cayto Nova