Skip to content
View DevCop95's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report DevCop95

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
DevCop95/README.md
DEV101X banner Typing SVG

Portfolio LOLBAS Contributor LinkedIn HackerOne X Profile views


dev101x@kali:~$ whoami

Colombian Ethical Hacker, Security Researcher and Software Engineer (aka DevCop95 / Dev101x), based in Cartagena, Colombia 🇨🇴. Currently a Penetration Tester at Henkel (Switzerland · Remote), and pursuing a Master's in Artificial Intelligence at the Universitat de Barcelona.

Focus: offensive security, vulnerability research, and autonomous AI agent architectures — bridging low-level system exploitation with automated intelligence pipelines.

dev101x@kali:~$ cat focus.txt
  • 🛡️ Vulnerability Research: Authored the Windows Fsutil.exe defense-evasion technique in the official LOLBAS Project (PR #525, merged) — MITRE ATT&CK T1562.001.
  • 🎯 Offensive Security: Bug bounty hunter on HackerOne; builds automated recon/vuln pipelines and OSINT tooling (see pinned projects below).
  • 🤖 Applied AI: Security skill layers and LLM integration pipelines (LangChain · Python).
  • 🤝 Open to Red Teaming, Applied AI Security, and technical consulting engagements.

⚠️ Authorized use only. Every offensive/security tool linked below is built for use in scoped engagements, CTFs, bug bounty programs and environments the operator owns or is authorized to test. None of it is intended for use against systems without explicit permission.


🛡️ Vulnerability Research & Official Contributions

Component Detail
Binary & Technique Fsutil.exe — Defense Evasion via 8dot3 Name Creation Tampering
Pull Request LOLBAS-Project/LOLBAS #525 (Merged)
MITRE ATT&CK T1562.001: Impair Defenses — Disable or Modify Tools

🚀 Projects & Security Arsenal

bugbounty-lab101 shodan_reconsx

Project Stack Description
🛡️ LOLBAS-Project/LOLBAS Official Contributor · MITRE T1562.001 Native Windows binary technique for defense evasion (PR #525, merged)
🏹 bugbounty-lab101 Shell · Recon Bug bounty workspace: recon/vuln pipeline, report templates, scope enforcement
🧪 dev101x-pentest-lab Docker · Python Self-contained Pro Lab-style box: blind SQLi → pivot → SUID privesc, with live flag validation
🏦 BDB-Guardian PowerShell SecOps / forensics tooling for incident-response simulation
🔍 shodan_reconsx Python · Shodan OSINT recon framework built on the Shodan API
🤖 cyhber-deploy Python Security skill layer for AI coding agents

🛠️ Tech Stack

Python Go Bash TypeScript

Kali Linux Burp Suite Metasploit Wireshark Docker Linux

LangChain Flask


💼 Experience

Period Role Company
2026 — present 🛡️ Penetration Tester Henkel · Switzerland (Remote · Part-time)
2022 — 2025 🏢 Chief Technology Officer EXIA S.A.S — Cartagena, CO
2021 — 2024 💻 Semi-Senior Developer Google
2020 — present 🚀 Freelance · Offensive Security & AI Independent

🎓 Education

Period Degree Institution
2024 — present 🤖 Master's in Artificial Intelligence Universitat de Barcelona
2017 — 2021 🎓 Systems & Computer Engineering Universidad Tecnológica de Bolívar
2013 — 2017 💡 Systems & Computer Technology Universidad Tecnológica de Bolívar

📊 GitHub Stats

DevCop95's GitHub stats   DevCop95's most used languages

🎯 HackTheBox


"Security is not a product, but a process. Code is poetry. Ship it."

⭐️ From DevCop95 · Colombian Ethical Hacker · Cartagena, Colombia 🇨🇴

Pinned Loading

  1. bugbounty-lab101 bugbounty-lab101 Public

    A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab.…

    Shell 467 76

  2. cYHBer cYHBer Public

    La arquitectura de la evasión semántica

    21 1

  3. cyhber-deploy cyhber-deploy Public

    Security Skill ( Claude , Codex , Gemini )

    Python 20

  4. dev101_bot dev101_bot Public

    Bot telegram

    Python 19

  5. cYHBeriteratus cYHBeriteratus Public

    An uncensored local LLM interface built for security engineers. It enables private, filter-free interaction with abliterated models for vulnerability analysis and advanced scripting without cloud-b…

    JavaScript 20

  6. shodan_reconsx shodan_reconsx Public

    Portable passive hostname reconnaissance through Shodan CTL

    Python 40 2