Skip to content
View Oscar-Opemba's full-sized avatar
🤒
Out sick
🤒
Out sick

Highlights

  • Pro

Block or report Oscar-Opemba

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Oscar-Opemba/README.md

Oscar Opemba

Red Teamer · Security Researcher · Full-Stack Engineer
I break systems to understand them, then build the tooling that makes the next break faster.

Offensive Security Full-Stack + ML Instagram


About

Offensive-security practitioner working across the full attack lifecycle — recon, exploitation, post-exploitation, and C2 — plus the engineering side that supports it. My public work spans red-team tradecraft (C2 evasion, EDR bypass), web-app and bug-bounty methodology, and production-grade full-stack and ML systems. I build tools I actually use and document the methodology so it's repeatable. Currently deepening red-team automation and adversary emulation.


Contribution Activity

Oscar Opemba — 3D contribution skyline (click for the interactive version)
▶ Explore the interactive 3D skyline — rotate, zoom, and orbit the real thing.
Daily-refreshed still (renders after the workflow's first run)
Oscar Opemba — 3D contribution graph

The preview above is a recording of the live WebGL / Three.js scene (source), which pulls contribution data in real time. GitHub READMEs can't run JavaScript, so true interactive 3D lives on GitHub Pages and is one click away. The collapsible still is regenerated daily by a GitHub Action (github-profile-3d-contrib). See the setup checklist below.


Featured Work

Offensive Security

  • C2-Evasion-Toolkit — Red-team C2 stealth: polymorphic payload generation (Go), in-memory C# execution with API hashing for EDR bypass, and domain fronting for network-level cover.
  • bugbounty-arsenal — Web-app pentesting & bug-bounty kit: methodology, checklists, custom recon / broken-access-control / API tooling, and hands-on vulnerable labs.
  • cybersecurity-resources — Curated references, scripts, tools, labs, and training material — the reference library behind the rest of the work.

Engineering

  • vivasec — VivaSec: a unified privacy super-app (TypeScript).
  • trackml-mlops-pipeline — End-to-end MLOps: MLflow tracking + model registry, Optuna sweeps, an automated promotion gate that refuses regressions, and FastAPI serving that resolves the live production model from the registry.

Skills

Offensive Security & Tooling

C2 EDR Bypass Web App Pentesting Active Directory OSINT

Languages

Python Go C# C++ TypeScript JavaScript

Frameworks & Data

FastAPI Django React scikit-learn MLflow

Cloud & Infra

AWS Docker Cloudflare MongoDB MySQL


Stats

GitHub stats Top languages

Connect

GitHub Instagram

Popular repositories Loading

  1. C2-Evasion-Toolkit C2-Evasion-Toolkit Public

    A specialized Red Team project focusing on advanced C2 stealth. Features include polymorphic payload generation (GoLang) and EDR bypass techniques (C# in-memory execution, API hashing) combined wit…

    C# 3

  2. Oscar-Opemba Oscar-Opemba Public

    Red Teamer, Security Researcher & Full-Stack Engineer — profile README & 3D contribution graph.

    1

  3. vivasec vivasec Public

    VivaSec - Unified Privacy Super-App

    TypeScript 1

  4. Certipy Certipy Public

    Forked from ly4k/Certipy

    Tool for Active Directory Certificate Services enumeration and abuse

    Python 1

  5. red-team-playbook red-team-playbook Public

    Curated list of Red Teaming resources, tools, and techniques

    1

  6. awesome-ctf awesome-ctf Public

    Forked from apsdehal/awesome-ctf

    A curated list of CTF frameworks, libraries, resources and softwares

    JavaScript