1-day current streak·12-day longest streak
Zhangir Ospanov Offensive Security Researcher Specializing in Red Team operations, Threat Hunting, and Threat Intelligence Telegram · Blog · GitHub Practical insights from real-world attacks and security research. --- About…
Zhangir Ospanov
Offensive Security Researcher
Specializing in Red Team operations, Threat Hunting, and Threat Intelligence
Telegram ·
Blog ·
GitHub
Practical insights from real-world attacks and security research.
---
About Me
I am an independent offensive security researcher with experience in Red Team operations, threat analysis, and malware investigation. My focus is on practical exploitation techniques, understanding attacker behavior, and sharing actionable insights with the security community.
---
Publications & Content
I regularly share technical write-ups, research notes, and case studies on:
- Threat Hunting & Threat Intelligence
- Malware & C2 traffic analysis
- Red Team techniques and operational insights
---
GitHub Statistics
---
> "If it can be abused, it will be."
-
pentestcode ★ PINNED
PentestCode - Multi-agent AI penetration testing system with persistent engagement state, strategic coordination, and parallel autonomous operations.
TypeScript ★ 246 6h agoExplain → -
claude-code-backdoor ★ PINNED
Backdooring Claude Code via hooks in settings.json. Authorized use only!
JavaScript ★ 83 3mo agoExplain → -
tarahunter ★ PINNED
High-speed, multi-threaded APT hunting tool designed for lateral movement detection and forensic artifact discovery in Windows environments via SMB.
Go ★ 14 5mo agoExplain → -
jdwp-knife ★ PINNED
Swiss knife for JDWP exploitation
Python ★ 14 3mo agoExplain → -
gophish-auto ★ PINNED
GoPhish autodeployment
Shell ★ 7 8mo agoExplain → -
firec2 ★ PINNED
C2 over Firebase Realtime Database
Python ★ 7 6mo agoExplain → -
GhostShell
Covert C2 tool using Telegram Bot API as communication channel, command delivery is implemented by transfering emojis
Python ★ 4 1y agoExplain → -
nxc_modules
List of custom NetExec modules
Python ★ 4 1y agoExplain → -
ThreatIntel
Threat Intelligence knowledge base
★ 3 8mo agoExplain → -
emoji-encoder
Emoji encoder for Red Team Ops
Python ★ 3 1y agoExplain → -
chocopie
Red Team Host Reconnaissance Tool
Go ★ 2 1y agoExplain → -
WMIHACKER
PoC tool for S0LD13R - WMIHACKER 2.0
Python ★ 2 1y agoExplain → -
MODPlant
MODPlant is an Apache HTTPD module designed for authorized security assessments. It accepts a Base64-encoded payload via a configurable HTTP header, executes it in a controlled context, and returns Base64-encoded output.
C ★ 1 8mo agoExplain → -
flink-rce-by-design
No description.
Java ★ 1 5mo agoExplain → -
s0ld13rr
No description.
★ 0 2mo agoExplain → -
s0ld13rr.github.io
My security blog
HTML ★ 0 3mo agoExplain → -
vulnwatcher-bot
A stateful monitoring tool for infrastructure-specific Vulnerability Management. It automates the detection and prioritization of CVEs affecting a defined asset stack.
Python ★ 0 5mo agoExplain → -
PyLadon ⑂
Ladon Scanner For Python, Large Network Penetration Scanner & Cobalt Strike, vulnerability / exploit / detection / MS17010/SmbGhost/CVE-2020-0796/CVE-2018-2894
★ 0 5y agoExplain →
No repos match these filters.