Alan K L Chung
(aka infinity-avenir)

OSCE3, OSMR, OSCP, CFE, CISA, GREM | Cyber Security / Computer & Digital Forensics & Incident Response / Red & Blue Team / GRC / Tech Risk

Team :
- 9 Hack Lab
- DC852 / Defcon Group Hong Kong Point of Contact

E-Mail :
[email protected] / [email protected] / [email protected]
Twitter / X :
@alanchung666
Linkedin :
in/alanklchung
Github : @infinity-avenir

Web :
https://gitlab.com/9hack
https://9hack.ing

DC852 / Defcon Group Hong Kong
http://dc852.org/



About me

aka Avenir or Infinity Avenir (I.A.)


Alan has ample experience handling complex dispute and litigation cases, having served as forensic examiner, e-discovery specialist, and expert witness testified before courts of laws, at multiple top-tier multinational forensic firms. He is a digital forensics and incident response expert, and has over 20 years of hands-on experience in the Information Security and Network Security Field, Blue Team, DFIR, computer forensics and e-discovery, Penetration test and Red Team.

Alan also is defense infrastructure expert, an insatiable seeker of knowledge that insists on rooting out the deepest technical secrets of all things. Armed with across-the-board insights on commercial solutions, Alan is well respected for his deep understanding of technologies, acquired through years of diverse background in network & infrastructure security, IT audit & penetration testing, and security solution architecture & design, across nearly two decades of deeply technical engagements. He was also responsible for the original infrastructure build-out for a great many multi-million-dollar big-name companies.

He has presented at PacSec Tokyo 2013 Conference a talk titled “Bypassing DDoS Mitigation”, DEF CON 20 a talk titled “DDoS Black and White Kungfu Revealed”, and at the 6th Annual HTCIA Asia-Pacific Conference a workshop titled “Network Attack Investigation”. Alan is a holder of CFE, OSCE3, OSCP, CISA and GREM.

===============================================================

Publications & Conferences :

14 Nov 2013
Conference Speaker
Pac Sec Tokyo 2013; Tokyo, Japan.
Title : Bypassing DDoS Mitigation ; with Tony T.N. Miu, Albert K.T. Hui, W.L. Lee.

Aug 2013
Contribute the White Paper
Def Con 21; Las Vegas, Nevada Area, US.
Title : Kill 'em All — DDoS Protection Total Annihilation! ; with Tony T.N. Miu, Albert K.T. Hui, W.L. Lee, Daniel X.P. Luo, Judy W.S. Wong.

Jul 2013
Contribute the White Paper
Black Hat 2013; Las Vegas, Nevada Area, US.
Title : Universal DDoS Mitigation Bypass ; with Tony T.N. Miu, Albert K.T. Hui, W.L. Lee, Daniel X.P. Luo, Judy W.S. Wong.

28 Nov 2012
Workshop Speaker
6th Annual HTCIA Asia-Pacific Conference; Hong Kong.
Title : Network Attack Investigation; with Captain, Darkfloyd, MT.

28 Jul 2012
Conference Speaker
DEF CON 20; Las Vegas, Nevada Area, US.
Title : DDoS Black and White "Kungfu" Revealed; with Captain, Darkfloyd, MT.


Computer Certification:
Offensive Security
Offensive Security macOS Researcher (OSMR) (2025)
Offensive Security Defense Analyst (OSDA) (2023)
Offensive Security Certified Expert 3 (OSCE3) (2023)
Offensive Security Web Expert (OSWE) (2023)
Offensive Security Exploit Developer (OSED) (2023)
Offensive Security Experienced Penetration Tester (OSEP) (2022)
Offensive Security Web Assessor (OSWA) (2022)
Offensive Security Certified Professional (OSCP) (2022)
Offensive Security Wireless Professional (OSWP) (2020)
Crowd Strike
CrowdStrike Certified Falcon Responder (CCFR) (2024)
CrowdStrike Certified Falcon Hunter (CCFH) (2024)
CrowdStrike Certified Falcon Administrator (CCFA) (2023)
Covert Access Team
Physical Audit Certification Training (PACT) (2024)
Oracle
Oracle Cloud Infrastructure 2024 Generative AI Certified Professional (2024)
Zero-Point Security
Certified Red Team Operator (CRTO) (2024)
ISC2
Certified in Cybersecurity (CC) (2023)
Guidance Software
EnCase Certified Examiner(EnCE) (2018)
SANS
GIAC Network Forensic Analyst (GNFA) (2015)
GIAC Certified Reverse-Engineering Malware (GREM) (2010)
Access Data
AccessData Certified Examiner (ACE) (2013)
ISACA
Certified Information Systems Auditor (CISA)(2013)
BSI
ISO 27001 Lead Auditor Course (Completed & Passed)(2011)
HKSQ
Certified Six Sigma Green Belt (CSSGB) (2011)
ACFE
Certified Fraud Examiner (CFE) (2010)
EC-Council
Certified Ethical Hacker (CEH) (2009)
Computer Hacking Forensic Investigator (CHFI) (2008)
EXIN
ITIL Version 3 Foundation Examination (ITIL V3) (2008)
Comp TIA
Security Plus (Security +) (2006)
Microsoft
Microsoft Certified Professional (MCP) (2006)
Check Point
Check Point Certified Security Expert (CCSE) (2005)
Check Point Certified Security Administrator (CCSA) (2005)
Stone Soft
Certified Stone Gate Architect (CSGA) (2005)
Certified Stone Gate Engineer (CSGE) (2004)
Cisco System
Cisco Certified Network Associate (CCNA) (2003)