Skip to content
View s1d9e's full-sized avatar
💭
Your data is your identity. Protect both.
💭
Your data is your identity. Protect both.

Block or report s1d9e

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
s1d9e/README.md

s1d9e

Red Team · Web Pentester · Data Protection

Typing SVG

$ whoami
security researcher · web pentester · red team tools

$ cat ~/mission
find the flaws, harden the stack, protect the data.

$ echo $PURPOSE
"Freedom begins where surveillance ends."

GitHub followers GitHub stars


🎯 Focus

RECON          ···  web app & API security, recon, exploitation
RED TEAM       ···  C2 frameworks, honeypots, post-exploitation tooling
DATA PROTECT   ···  secret scanning, detection engineering, hardening
FORENSICS      ···  USB/HID analysis, malware sandboxes, DFIR

🛠️ Toolbox

WEB        burp suite · owasp zap · sqlmap · ffuf · nuclei · gobuster
ANALYSIS   wireshark · usbmon · hashcat · mitmproxy · pe-sieve
RED TEAM   custom C2 · honeypots · implant dev · exfil channels
PLATFORM   kali linux · arch · docker · fastapi · github actions
⌨️ Full stack
Area Stack
Languages Python · Go · C · Bash · SQL
Frameworks FastAPI · Flask · aiohttp · Rich
Infra Docker · Debian · Raspberry Pi · GitHub Actions
Offensive Red team tooling · C2 dev · honeypots
Defensive Secret scanning · detection · hardening

📈 Activity

Streak

Snake animation

Activity Graph


🚀 Projects

Project Description
🔴 meridian Modular C2 framework · Python server, Go implant, HTTP/DNS
🩸 blood-web 17 Modular honeypot · SSH/FTP/HTTP/SMB/MySQL/RDP + web dashboard
🔗 chainbreaker Supply chain attack detector for npm & PyPI packages
🐧 ebpf-keylogger eBPF kernel keylogger via tracepoint
🔒 xecurex 1 Secret scanner · SQLi/XSS/injection detection
🖥️ usbsniff USB traffic sniffer & HID analyzer
🛡️ winpe-scan Windows PE analysis toolkit
⏱️ chronos Dynamic malware analysis sandbox

🧪 Lab Environment

┌─────────────────────────────────────────────────────────┐
│  ATTACK INFRA          │  DEFENSE INFRA                 │
│  ─────────────         │  ─────────────                 │
│  meridian (C2)         │  blood-web (honeypot)          │
│  chainbreaker (SCA)    │  xecurex (secrets)             │
│  usbsniff (HID)        │  chronos (sandbox)             │
│  ebpf-keylogger (eBPF) │  winpe-scan (PE analysis)      │
└─────────────────────────────────────────────────────────┘

📡 Contact

$ whois s1d9e
→ github.com/s1d9e

"Knowledge is a weapon. Protect the data."

Pinned Loading

  1. blood-web blood-web Public

    🩸 Modular honeypot for pentesting training. Simulates SSH, FTP, HTTP, Telnet, SMB, MySQL & RDP. Real-time attack detection & web dashboard.

    Python 17 2

  2. chronos chronos Public

    Private dynamic analysis engine and sandbox for malware research, blue team and DFIR (observation only).

    Python

  3. usbsniff usbsniff Public

    Real-time USB traffic sniffer and HID analyzer for detecting malicious devices (BadUSB, Rubber Ducky)

    Python

  4. chainbreaker chainbreaker Public

    Supply chain attack detection tool for npm & PyPI packages

    Python

  5. ebpf-keylogger ebpf-keylogger Public

    eBPF kernel keylogger via kprobe on hid_input_key

    C 1

  6. meridian meridian Public

    Modular C2 framework for authorized red team operations — Python server, Go implant, HTTP(S)/DNS transports

    Python 6 1