Skip to content
View bob-reis's full-sized avatar
🤔
Difícil é Aprender a Ler, o Resto está Escrito
🤔
Difícil é Aprender a Ler, o Resto está Escrito

Block or report bob-reis

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
bob-reis/README.md


🕶️ About Me (Def3nse style)

const bob = {
  alias: "Att4ck and Def3nse",
  focus: ["Secure Software Development", "Threat Modeling", "AppSec Automation", "Cybersec"],
  code: ["Python", "Go", "Bash", "C/C++", "Terraform", "YAML", "and more..."],
  devSecOps: ["SonarQube", "SAST/DAST", "Azure DevOps", "GitHub Actions", "GitLab CI"],
  threatModeling: ["OWASP Threat Dragon", "STRIDE", "MITRE ATT&CK"],
  philosophy: "Segurança é cultura e não um Checklist.",
  funFact: "Prefiro logs a PPTs e já automatizei até café ☕ (quase...)",
  effect phrase: "Difícil é aprender a ler, o resto está escrito..."
}

💻 What I Do

# Investigação & Red Team
└─$ nmap -A target.corp
[+] Open ports found: 22/ssh, 443/https
[+] Weak cipher detected...

# Threat Modeling
└─$ curl -s threats.md
[+] Identifying misuse cases...
[+] Simulating insider attacks...
[+] Mapping STRIDE to OWASP Top 10...

# DevSecOps
└─$ cat pipeline.yml
stages:
  - build
  - test
  - sast
  - dast
  - deploy

🛡️ Skills & Tools

  • DevSecOps: Azure DevOps · GitHub Actions · GitLab CI · Terraform · Kustomize
  • Threat Modeling: OWASP Threat Dragon · STRIDE · LINDDUN · MITRE ATT&CK
  • AppSec: SAST · DAST · Secure Code Review · Secrets Detection
  • OSINT & CTI: OpenCTI · MISP · Maltego · EnumDNS · ThreatFox
  • Infra & Cloud: Kubernetes · Docker · Linux (Kali, Debian, Oracle, Azure, OCI)

📊 Coding Stats




🌐 Connect with me

Linkedin YouTube GitHub


Popular repositories Loading

  1. Linux4CyberSec Linux4CyberSec Public

    Linux para Profissionais de CyberSec

    169 49

  2. OSINT OSINT Public

    32 13

  3. DevSecOps DevSecOps Public

    Documentação sobre DevSecOps

    29 11

  4. JS-Analysis JS-Analysis Public

    Python 14 4

  5. agents-of-matrix agents-of-matrix Public

    Sua coletania de agentes para Claude.ai

    Shell 13 2

  6. claude-pentest-skills claude-pentest-skills Public

    Coleção de skills de segurança ofensiva para Claude Code metodologia PTES completa com AWS/IAM (WorstAssume), pfSense (27+ CVEs), Active Directory, Web Attacks, Palo Alto PAN-OS, AI Agent Audit e L…

    Python 11 1