Skip to content
View xtofuub's full-sized avatar
💭
meowing
💭
meowing

Highlights

  • Pro

Block or report xtofuub

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
xtofuub/README.md

xtofuub banner


Typing SVG

Portfolio


whoami

┌──(edwin㉿kali)-[~]
└─$ whoami

  name      →  Edwin
  role      →  Cybersecurity Specialist Jr
  focus     →  Security  /  Full Stack Dev  /  Reverse Engineering

  security  →  pentesting, red team concepts, adversary simulation
  rev_eng   →  malware analysis, protocol dissection, decoding the unknown
  building  →  if something doesn't exist and I need it, I build it
  stack     →  TypeScript, Next.js, PHP, Flask, Python, MySQL
  tools     →  Kali, Burp Suite, Metasploit, Wireshark, VirtualBox
  vibe      →  "learn by breaking, build by doing"

┌──(edwin㉿kali)-[~]
└─$ █

current_focus

class Edwin:
    def __init__(self):
        self.currently_learning = [
            "Reverse Engineering",
            "Python (scripting + tooling)",
            "PowerShell (automation + post-exploitation)",
            "Linux internals",
            "PHP + web app security",
            "HTML / CSS (yes, also phishing pages)"
        ]
        self.currently_building = [
            "Security tools",
            "Full stack web apps",
            "Random stuff that seems useful"
        ]
        self.vibe = "learn by breaking, build by doing"

tech_stack

Languages

Python TypeScript JavaScript PowerShell PHP HTML5 CSS3 Bash

Frameworks & Libraries

Next.js Tailwind CSS Flask Node.js

Security Tools

Kali Linux Burp Suite Metasploit Wireshark TryHackMe VirusTotal

Infrastructure & Cloud

Linux Google Cloud Supabase Vercel MySQL VirtualBox Git


featured_projects

🔴 Offensive Security & Red Team
Project Description Tech
RavenC2 PowerShell C2 tool for managing a Windows machine via Telegram - built for automation experiments and authorized remote administration PowerShell
PacketStorm Semi-automated Python deauther for Kali Linux - deauthenticates all clients on a network Python Kali Linux
PS-CredentialPhisher PowerShell utility for testing Windows CredUI behavior and UAC prompt simulations - security research and authentication workflow testing PowerShell
mailsploit Security-focused email platform demonstrating advanced spoofing techniques while analyzing SPF and DMARC - built for defensive testing Python
SpoofMail Modern responsive email spoofing UI with file attachment support, previews, and smooth animations PHP HTML CSS JS
wilma-phish Wilma phishing clone with Discord webhook logging for authorized security testing HTML
🧠 Malware Analysis & Reverse Engineering
Project Description Tech
Sentinel-VOIP Reverse-engineering of the Juasapp VoIP protocol using a jailbroken iOS device - unlimited signaling flows extracted via dynamic runtime analysis and rebuilt from scratch JavaScript
PysilonDecoder Analyzes and decodes Pysilon malware tokens - automates extraction, identifies encoding algorithms, and reconstructs the original payload Python
Hashtrace Lightweight Chromium extension that highlights cryptographic hashes on web pages and fetches VirusTotal reputation inline JavaScript
🌐 Web Tools & Full Stack Development
Project Description Tech
RevOps-Dashboard Weekly RevOps metric tracking with analytics, critical signal detection, and executive summaries - live on Vercel TypeScript Next.js Supabase
fitsec-focus-coach Internal employee management platform for FitSec - monitors work sessions, manages break times, and tracks daily productivity TypeScript
fitsec-usbguard USBGuard UI revamp with Framer and Liquid Glass effects - high-performance animations and professional security-themed design TypeScript
SMBitan Dark-themed web UI for browsing, searching, and previewing files on SMB/UNC network shares JavaScript Python Flask
Solveify Browser extension that uses the Gemini API to instantly analyze highlighted questions and retrieve answers - supports multiple choice and open-ended queries JavaScript
NyxRepost Advanced TikTok repost analytics dashboard with charts, word clouds, creator stats, and profile comparison via TikTok API scraper HTML JS
📚 Research & Resources
Project Description Tech
Cyber-Resources Curated collection of cybersecurity, OSINT, malware analysis, reconnaissance, and threat-intel resources I personally use Docs

stats

GitHub Streak

TryHackMe Badge


contribution_grid

Snake animation


Pinned Loading

  1. mailsploit mailsploit Public

    Forked from Triotion/email-spoofing

    A security-focused platform for email that demonstrates advanced spoofing techniques while analyzing domain authentication protocols such as SPF and DMARC. Designed for defensive testing and securi…

    Python 3

  2. RavenC2 RavenC2 Public

    A PowerShell-based remote control tool for managing a Windows machine via Telegram, intended for learning, automation experiments, and authorized remote administration.

    PowerShell 1

  3. PysilonDecoder PysilonDecoder Public

    PysilonDecoder is a Python-based tool designed to analyze and decode Pysilon malware tokens. It automates token extraction, identifies encoding algorithms, and reconstructs the original payload for…

    Python 1

  4. Hashtrace Hashtrace Public

    Hashtrace is a lightweight Chromium extension for cybersecurity researchers. It highlights cryptographic hashes on web pages and fetches their VirusTotal reputation, all in a sleek, user-friendly …

    JavaScript 1

  5. Cyber-Resources Cyber-Resources Public

    A curated collection of cybersecurity, OSINT, malware analysis, reconnaissance, and threat-intel resources that I personally use for research, learning, and testing. (TOO LAZY TO UPDATE)

    1

  6. SMBitan SMBitan Public

    SMBitan - A network file browser. Browse, search, and preview files on SMB/UNC shares with a dark-themed web UI.

    JavaScript 2