๐ CSIE Student | ๐ป Cybersecurity & Network Defense Researcher
Hi โ Iโm Gao En-Zai, a CSIE student researching offensive-to-defensive cybersecurity, including reproducible lab environments, C2 behavior analysis, and anonymity automation.
I build hands-on educational labs using Kali Linux and VirtualBox to help defenders detect, analyze, and mitigate common attack patterns.
โThe RB19 performs average in every aspect โ and thatโs what makes it great.โ โ Pierre Wachรฉ
A hands-on lab demonstrating how reverse shells and backdoors work from an attackerโs view, enabling defenders to study detection and mitigation using Kali Linux.
Quick Start:
- Clone the repo
- Run
setup_lab.shin your VM - Follow the guide for each lab stage
- Ethical penetration testing & red-team simulation
- Reverse shell exploitation and defense validation
- Automated anonymity (Tor + SOCKS5 + obfs4)
- Command-and-Control (C2) detection & behavior analysis
- Secure coding and vulnerability patching (RailsGoat project)
All repositories and demonstrations are for educational and authorized research use only.
Never use these tools against systems you do not own or lack permission to test.
Misuse is illegal and unethical.
Python ยท Bash ยท Linux (Kali, Debian, Parrot) ยท VirtualBox
Wireshark ยท GStreamer ยท dnsmasq ยท Tor ยท Apache2
fail2ban ยท auditd ยท Tripwire ยท Rails
- Build a full educational cybersecurity series combining offense, defense, and anonymity
- Publish open-source ethical hacking lab tutorials
- Expand Tor-based IP rotation automation with ML-based traffic analysis
- C2 Architecture Simulation โ Python socket-based client/server for detection training
- Ghost Mode 3 โ Automated Tor ControlPort IP rotation tool for anonymity research
- RailsGoat Patch Analysis โ OWASP Top 10 web exploitation & defense demonstration
- Fake Wi-Fi Simulation โ Legal phishing lab using airbase-ng, dnsmasq, and Apache2 to demonstrate fake hotspot risks and promote user awareness training.
Other (text listed): v4l-utils, scrot, auditd, lsof, syslog, netcat (nc), wget, bash, fail2ban, Tripwire, iptables, Logwatch, grep, diff, tail, Stem (Tor controller), obfs4proxy, dnsmasq, airbase-ng, post.php, logs.txt, USB wireless NIC (monitor/AP mode), Aircrack-ng
๐ Hsinchu, Taiwan
๐ง [email protected]
๐ Google Drive Portfolio
๐ GitHub @heinricitorgau
All repositories are released under the MIT License.
Contributions are welcome! Please follow standard open-source etiquette when submitting issues or pull requests.
๐ Contributions, ๐ฅ issues, and ๐ฅฎ feature requests are most welcome!
๐ If you like my projects, Give them โญ and Share it with friends!