Skip to content
View Sab0x1D's full-sized avatar
💭
Ghosting ...
💭
Ghosting ...
  • 127.0.0.1

Block or report Sab0x1D

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Sab0x1D/README.md

-=[ Sab0x1D ]=-

Digital Forensic Nomad → Hex-bound (0x1D)
Threat Analyst & Malware Researcher IRL


Current Focus

  • Payload analysis & memory inspection
  • Threat actor TTP mapping (MITRE ATT&CK driven)
  • YARA rule development
  • IOC curation and automation
  • OPSEC-conscious tooling for CTI analysts

Featured Repos

Project Description
blogs Personal Blogs
cyber_aware A personal initiative to raise cyber threat awareness
ghostyara Clean YARA repo with reverse-engineered rules
howtos General :: how-tos > cheatsheets > tutorials
infra-burner Infra discovery & takedown tooling (DNS, C2, SSL fingerprints)
mal_cheat Malware family identification cheatsheet, triage strategy, regex pattern library
mal_lab_setup Malware Lab Setup Guide — Ubuntu Gateway & Windows 11 :: with failsafe
notes-from-0x1D Reverse engineering logs, deobfuscation tactics, and cold case writeups
sigtrack IOC & signature tracker — Sigma, YARA, and threat mappings
tools/scripts One-off scripts and analyst-focused tools

🔐 GPG Public Key

Sab0x1D
Email: [email protected]
🔑 Fingerprint: 7095 4B8F 7C6C 5F3C 9C2D B5BE F39C 180A F044 4612

[📎 sab0x1d.asc]

GPG Verified

You don't need to see the ghost to know it's there.


Licensing & Ethics

I support responsible disclosure, ethical red/blue/purple team research, and data use within legal bounds.
If you use my work — CREDIT IT. If you weaponize it — DON’T.


Pinned Loading

  1. cyber_aware cyber_aware Public

    A personal initiative to raise cyber awareness

  2. ghostyara ghostyara Public

    Clean YARA repo with reverse-engineered rules

    YARA 1

  3. sigtrack sigtrack Public

    IOC & signature tracker — Sigma, YARA, and threat mappings

  4. howtos howtos Public

    General > how-tos | cheatsheets | tutorials

  5. mal_cheat mal_cheat Public

    Malware family identification cheatsheet

    1

  6. YaraScanTUI YaraScanTUI Public

    A fast terminal-based YARA scanner with auto-venv setup, rule management, and clean match output — ideal for quick triage and testing custom rules

    Python