Skip to content

Navigation Menu

Sign in
Sign up
@Ruby570bocadito
Ruby570bocadito
Follow

Rafael Gálvez Ruby570bocadito

🎯
Focusing
Junior Red Team Engineer & Offensive Security Tool Developer | eJPTv2 | I build C2, rootkits & AI-powered offensive tooling

Block or report Ruby570bocadito

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Ruby570bocadito /README.md

Rafael Gálvez

Junior Red Team Engineer & Offensive Security Tool Developer
eJPTv2 · C2 frameworks · OSINT & Bluetooth auditing tooling · Málaga, España

WorldC2 OSINT-EYE bluesky Email


whoami

> Construyo la cadena de ataque completa: desde recon OSINT hasta C2 con
 transports cifrados y persistencia a nivel de kernel. Si no existe la
 herramienta, la escribo.
> Actualmente: Sistemas IT (SMR) · eJPTv2 · 17+ herramientas open source.
  • 🔴 Red Team — infraestructura C2, evasion de AV/EDR, post-explotación, tunneling
  • 🧠 AI + Security — LLMs locales (Ollama), automatización con ML, agentes ofensivos
  • 🛠️ Stack — Go · Python · C · C# · Rust · Bash
  • 📍 Málaga, España · 🌐 Portfolio

Proyectos destacados

Proyecto Stack Qué es
WorldC2 Go · Vue 3 Framework C2 multi-agente: WebSocket/HTTP(S)/WebRTC/DNS, mTLS + cert pinning, SOCKS5, file exfil con resume, RBAC, SIEM
OSINT-EYE Python Suite de recon OSINT: 14 módulos (DNS, web, certs, CVEs), correlación de hallazgos, grafo interactivo, dashboard offline
bluesky Python Framework de auditoría Bluetooth estilo Metasploit: 22 módulos, consola REPL, dashboard web oscuro, modo educativo
X404X Go · Vue 3 Plataforma red team autónoma — kill chain completa con decisiones AI
Vault-Kernel C Rootkit LKM Linux — hooking de syscalls, ocultación de procesos/archivos/puertos
Wormy-ML Python Gusano polimórfico con ML (investigación educativa)
Auto-Privilege Go Privesc Linux automatizado — 60+ GTFOBins

⚠️ Todas las herramientas se publican solo con fines educativos y de investigación en seguridad autorizada.


Stack & herramientas

Go Python C C%23 Rust Linux Docker Wireshark


Certificaciones

eJPTv2 (INE) · Cisco: Ethical Hacker · Python Essentials 1 · Networking Basics · Intro to Cybersecurity · Linux Unhatched · Hack4u / S4vitar · Palo Alto ILT-CoC


📊 GitHub Stats

streak


"El mejor red teamer es el que entiende el código a fondo — por eso escribo mis propias herramientas."

Pinned Loading

  1. Wormy-ML-Network-Worm Wormy-ML-Network-Worm Public

    ML-powered polymorphic network worm — self-replicating payload with dynamic encryption, multi-vector propagation, and adversarial evasion.

    Python 9 3

  2. T-100AI T-100AI Public

    T-100AI — AI-powered offensive security terminal, 100% offline: local Ollama LLM, sandboxed execution with human-in-the-loop gates, pentest skills & multi-agent workflows.

    Python

  3. HandsControl HandsControl Public

    HandsControl — Controla tu PC con Gestos, Voz e IA Local. Hand tracking with MediaPipe, voice assistant in Spanish, and local AI agent via Ollama.

    Python 1

  4. Apex-Automation Apex-Automation Public

    AI-assisted penetration testing automation — ML-driven vulnerability discovery and exploitation workflow with intelligent decision making.

    Python

  5. Auto-Privilege Auto-Privilege Public

    AUTOPRIV — automated Linux privilege escalation: scan, enumerate, auto-root. 15 read-only scanners, 75 GTFOBins techniques, safest-first. Single Go binary, zero deps.

    Go 1

AltStyle によって変換されたページ (->オリジナル) /