Skip to content
View 0xfuz's full-sized avatar
⚠️
127.0.0.1
⚠️
127.0.0.1

Block or report 0xfuz

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
0xfuz/README.md

0x0MAr banner

Typing SVG

Profile Views


0x01 Who Am I?

identity:
  name: "Omar Raif"
  handle: "0x0MAr"
  github: "0xfuz"
  role: "Cybersecurity Technologies Engineering Student"
  university: "Al-Farabi University"

mission:
  - Build security tools that preserve evidence and support analyst decisions
  - Understand systems from Linux internals to security operations
  - Turn technical learning into tested, documented, usable projects

principle: "Understand the system. Preserve the evidence. Keep the analyst in control."

🛡️ Security Engineering

  • Detection and investigation workflows
  • Evidence provenance and audit history
  • Alert correlation and triage
  • MITRE ATT&CK and attack graphs
  • Analyst-controlled AI assistance

⚙️ Under the Hood

  • Linux internals and permissions
  • C/C++ systems programming
  • GDB and x86/x64 fundamentals
  • Reverse-engineering workflows
  • Active Directory security

0x02 Featured Systems

🧠 Aegis AI

A self-hosted, evidence-first investigation and decision layer for security telemetry.

Telemetry → Canonical Alert → Deduplication → Correlation → Triage
          → Investigation → Evidence / Timeline / Entities / Indicators
          → MITRE / Attack Graph → Reviewable AI Suggestions → Analyst Decision

Aegis AI is my main engineering project. It sits above sources such as Wazuh and turns authorized telemetry into durable investigation context—without allowing AI output to silently become a security fact.

What is inside the system?
  • Canonical alerts, deterministic deduplication, correlation, and triage
  • Persisted evidence, timelines, entities, indicators, findings, and audit history
  • Investigation overview, provenance views, and interactive attack graphs
  • Analyst-controlled MITRE ATT&CK confirmation
  • Optional local intelligence through Ollama with bounded, reviewable output
  • FastAPI, SQLAlchemy, Alembic, Next.js, React Flow, PostgreSQL, Redis, and Docker
  • Wazuh 4.9.2 integration validated end-to-end in a controlled environment

Note

Aegis AI is an independent private evaluator project. It is not an official Wazuh product, public SaaS, or autonomous security authority. Technical review access is available on request.

A safe, browser-only environment for learning how Linux permissions actually behave.

Live Demo Source

21 learning topics  |  11 labs  |  88 challenges  |  113 quiz questions
27 simulated commands  |  13 achievements  |  154 automated tests
  • Virtual terminal and filesystem—no backend and no real shell execution
  • chmod, chown, ACLs, SUID/SGID, sticky bit, symlinks, chattr, su, and sudo
  • Guided learning, saved progress, achievements, and certificate workflow
  • Arabic and English interfaces with RTL support
  • Vanilla JavaScript ES modules, GitHub Actions, and GitHub Pages

0x03 Stack & Tooling

Languages

Python C C++ TypeScript JavaScript Bash

Engineering

FastAPI Next.js PostgreSQL Redis Docker GitHub Actions

Security & Systems

Linux Wazuh GDB Wireshark Burp Suite BloodHound


0x04 Verified Certifications

Status Certification Issuer Credential
CRTA — Certified Red Team Analyst CyberWarFare Labs Verify
AD-RTS — Active Directory Red Team Specialist CyberWarFare Labs Verify

0x05 Current Process

omar@0xfuz:~$ ./current-focus.sh

[RUNNING]  Building and validating evidence-first investigation systems
[LEARNING] C/C++ systems programming and Linux internals
[TRACING]  x86/x64 execution with GDB
[PRACTICE] Reverse engineering in controlled lab environments
[APPLYING] Active Directory and red-team foundations
[POLICY]   Test it. Document it. Never hide the limitations.

0x06 GitHub Telemetry

GitHub Stats

Top Languages

GitHub Streak


0x07 Establish Connection

LinkedIn X Hack The Box TryHackMe

$ status --identity  0x0MAr
$ status --mode      learning | building | documenting
$ status --exit-code 0x00

Footer

Popular repositories Loading

  1. linux-permission-lab linux-permission-lab Public

    JavaScript 2

  2. panfinder panfinder Public

    Python

  3. 0xfuz 0xfuz Public