Skip to content
View dboudreau00's full-sized avatar

Block or report dboudreau00

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
dboudreau00/README.md

sYYn

Threat intelligence, malware reverse engineering, defensive architecture.

Criminal operations are run by people. Most of my work is understanding how those people are organized — the aliases, the infrastructure, the operational habits — and building things that hold up against them.


Currently

  • A graph engine for mapping actor aliases, relationships, and infrastructure. NocTORnal pinned below.
  • Detection tooling and GRC automation. Public — see repositories.
  • Write-ups. Some of them published.

Working knowledge

Static and dynamic binary analysis · YARA · adversary emulation · detection engineering · AWS security architecture · incident response

CySA+ · CASP+ · GREM · blah blah, some others too, but this book study stuff doesn't really matter.


Pinned Loading

  1. Xault-Wallet Xault-Wallet Public

    XMR Desktop Wallet built for Duress and privacy-first usage.

    C# 227 11

  2. NocTORnal NocTORnal Public

    NocTORnal is a full-stack, Cybercrime specific investigative toolset from case to conviction. Including case-notes and communications evidence gathering, malware sample analysis and full stack RBAC…

    Python 170 8

  3. Conformiti Conformiti Public

    A GRC Compliance tool for SaaS products to manage the entire lifecycle of security audits.

    Python 154 23

  4. Countersign-RFP-RFI-RFQ-Studio-for-AI-assisted-Workflows Countersign-RFP-RFI-RFQ-Studio-for-AI-assisted-Workflows Public

    Countersign RFP/RFI/RFQ Studio for organizing documentation, hosting internally, including js + PHP proxy for hosting on panel.

    HTML 176 6

  5. Delpheed-Delphi-Call-Hijacker Delpheed-Delphi-Call-Hijacker Public

    A Delphi-aware reverse-engineering toolkit — recover the class model from any Delphi PE, and unpack packed ones to get there.

    Pascal 46 8

  6. Process-Shield-EDR-Framework Process-Shield-EDR-Framework Public

    Open Source EDR framework with functional triage and hot load. Designed for realtime detection of RATs and info stealers

    C# 129 4