$ sudo apt install opsec█
profile
hi, i'm simon. i research and debug security flaws, make api automation tools and help companies secure their data
i am currently in my third year of university; studying computer science (bachelor) targeting a 2:1. i am planning on taking a masters in cybersecurity afterwards.
[ roze ] @ management
2021 — todaya fully fledged discord nitro sniping service. simply plug your token and let it do all the heavy lifting
[ OpenSearch ] @ owner
2025 — nowformally known as yami. digit footprint analyzer - automatically maps people from platform to platform. especially useful for background checks
stack
what i do
[ engineering ]
i develop and secure numerous api utilities. including rest apis, oauth, etc.
[ security research ]
i find and exploit weaknesses in web security systems. an example being a discord voice call flaw that would crash user clients when opening screenshares. i reverse engineer client-side protections and build proof-of-concepts.
[ product development ]
i turn personal scripts into products. an example can be my windows utility script that i turned into a fully functional optimization tool.
[ encryption & secure storage ]
i implement encryption at rest and in transit for sensitive data, from database-level encryption to secure key management and secrets handling.
[ compliance auditing ]
i audit systems against gdpr, owasp top 10, and industry best practices, identifying gaps before they become incidents.
[ incident response ]
i investigate breaches, trace attacks, and help teams patch and recover quickly when something goes wrong.
data security
[ cheat-seller ]
identified a security issue that made customer information available for everyone, recorded the data leakage and sent it to the owner. compromised information consisted of emails, phone numbers, order information. over 3000+ of their customers information were exposed
[ evidence ][ ninja-games ]
identified a data integrity checksum error within the game systems in which values could be spoofed and sent to the server. this allowed for illegal values such as infinite health, money, etc which left players at a disadvantage in competitive play
[ evidence ][ versai-network ]
found a flaw in their store page which could pass orders as accepted even when unpaid for. they denied all claims that i informed them about and only acted once i made a donation of $40,000,000 which was listed on their homepage
[ evidence ][ bepinex-harmony ]
found a vulnerbility in which using this modding framework allowed actors to execute malicious code outside the modding container
projects
iMyFone Unlocker
| Taken down due to request | x64dbg, iDA Proremove the trial limit for app usage, flaw was sent to developers and they requested i remove the repo
OpenPort
| C++ | being rewrittena port scanner that will return a vulnerbility analysis based on services hosted on each port
LockDown
| C++ | being rewrittena zero trace lockdown utility; used in the event that your machine is compromised
OpenSearch
| website | javascriptmaps out usernames, emails, numbers across the internet