Skip to content
View capitan0n's full-sized avatar
🧊
🧊

Block or report capitan0n

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
capitan0n/README.md

Alexandros - capitan0n

Electrical & Computer Engineering student at the University of Peloponnese, specializing in Computer Science. I build defensive security and privacy tools for Linux, with a focus on system hardening, blue team work and digital forensics.

What I'm working on

  • dnser - Zero-dependency Python CLI, published on PyPI, that switches Linux DNS through NetworkManager or systemd-resolved, with DNS-over-TLS, leak-safe fallback, benchmarking and one-command rollback. Security-hardened root operations and automated CI/CD releases with OIDC trusted publishing.

  • sshd-lint - Static analyzer for sshd_config. Encodes OpenSSH hardening best practices into repeatable, automated checks so misconfigurations get caught before they ship. Published on PyPI.

  • probolos (beta) — Deny-by-default USB gate for Linux: new devices stay blocked until you approve them, after identity, behaviour and storage checks. Defends against BadUSB and rogue keyboards. Published on PyPI.

  • droynis — Offline Android security audit with 54 hardening checks across ADB/Shizuku/root tiers, reproducible, signed builds, published on F-Droid.

  • Digital forensics tooling (private, in progress) - to be published.

Stack

Python · Bash · Linux

Interests

Homelab & self-hosting · network security · privacy/anonymity tooling · FOSS ecosystems

Contact

Open to internships and entry-level roles in security engineering, SOC analysis, incident response/DFIR, DevSecOps and Linux systems administration.

Pinned Loading

  1. sshd-lint sshd-lint Public

    Zero-dependency, offline static analyzer for OpenSSH sshd_config. Flags weak crypto, auth, and access-control settings for SSH hardening, referencing CIS, Mozilla, and NIST guidance, with CI-friend…

    Python 7 1

  2. dnser dnser Public

    Linux DNS switcher for NetworkManager & systemd-resolved | DoT, leak-safe fallback, latency benchmarking, one-command undo.

    Python 2

  3. probolos probolos Public

    Deny-by-default USB gate for Linux. Unknown devices stay unauthorized until you approve them, after identity, consistency, behaviour and storage checks. Defends against BadUSB, rogue keyboards and …

    Python 1

  4. droynis droynis Public

    Offline Android security audit tool. 54 read-only checks across multiple privilege levels (base, ADB, Shizuku, root), 0–100 score and saved reports. Privacy-oriented, no internet permission, zero t…

    Kotlin