██████╗ ██╗ ██╗██╗ ██╗ █████╗ ███╗ ██╗ ██████╗ ██╗ ██╗ █████╗ ██████╗ ██████╗
██╔═████╗╚██╗██╔╝██║ ██║██╔══██╗████╗ ██║██╔════╝ ██║ ██║██╔══██╗██╔══██╗██╔══██╗
██║██╔██║ ╚███╔╝ ██║ ██║███████║██╔██╗██║██║ ███╗██║ ██║███████║██████╔╝██║ ██║
████╔╝██║ ██╔██╗ ╚██╗ ██╔╝██╔══██║██║╚████║██║ ██║██║ ██║██╔══██║██╔══██╗██║ ██║
╚██████╔╝██╔╝╚██╗ ╚████╔╝ ██║ ██║██║ ╚███║╚██████╔╝╚██████╔╝██║ ██║██║ ██║██████╔╝
╚═════╝ ╚═╝ ╚═╝ ╚═══╝ ╚═╝ ╚═╝╚═╝ ╚══╝ ╚═════╝ ╚═════╝ ╚═╝ ╚═╝╚═╝ ╚═╝╚═════╝
Security Analyst · AppSec · OSINT · Blue Team · DevSecOps
Security practitioner from Colombia focused on applied offensive and defensive security. I don't just list tools — I document the why, the how, the risk, and the fix.
- 🔴 Red/AppSec: web vulnerabilities (OWASP Top 10 + API Security), recon, OSINT, exploitation workflows
- 🔵 Blue Team: SIEM deployment (Wazuh), log analysis, alert tuning, MITRE ATT&CK-mapped detections
- 🟣 Purple: bridging findings to remediations, threat modeling, DevSecOps pipelines
- 🤖 AI Security: LLM attack surfaces, prompt injection, AI-assisted threat hunting
"Un portafolio real no dice 'sé herramientas'. Dice: puedo investigar, documentar evidencia, explicar riesgo y comunicar una remediación."
| Layer | Tools & Frameworks |
|---|---|
| Languages | Python · Bash · JavaScript · SQL |
| AppSec / Web | Burp Suite · OWASP WSTG · PortSwigger Labs · Nikto · SQLMap |
| OSINT & Recon | Shodan · theHarvester · Maltego · WHOIS APIs · Recon-ng |
| Blue Team / SIEM | Wazuh · Splunk (basic) · ELK Stack · Sigma rules |
| Frameworks | OWASP Top 10 · MITRE ATT&CK · PTES · NIST CSF |
| Infra / DevSecOps | Docker · GitHub Actions · Linux (Pop OS · Mint) · VPS |
| AI Tooling | LangChain · OpenAI API · Claude · Prompt Engineering |
Each project includes: objective → methodology → evidence → risk → remediation
| Project | Description | Frameworks |
|---|---|---|
GovLLM-Sentinel |
Framework de evaluación y hardening de LLMs para sector público — PII Guard, Compliance Filter, Alignment Module, Red-Teaming con 13 vectores de ataque, 40 tests | AI Security · LLM · Docker |
osint-exposure-report |
Automated OSINT recon tool — generates professional PDF exposure reports for companies. Subdomains, DNS, ports, emails, IP reputation. 37 tests + CI | Python · nmap · ReportLab |
hibp-audit-tool |
Automated password breach audit using HIBP API v3 — generates PDF/Excel reports in Spanish with risk scoring per employee. 17 tests + CI | Python · HIBP · ReportLab |
gophish-phishing-simulator |
Phishing campaign automation via GoPhish API — generates professional PDF reports with risk scores per employee. 10 tests + CI | Python · GoPhish · ReportLab |
| Project | Description | Frameworks |
|---|---|---|
cyberremote-monitor-pro |
Global intelligence board for remote cybersecurity jobs — 3D globe, choropleth maps, signal feed, government mode. React + FastAPI + PostgreSQL. 21 tests + CI | React · FastAPI · globe.gl |
bug-bounty-vault |
Educational bug bounty platform — 12-week roadmap, 40+ tools guide, first-$500 guide, hunter tracker. Interactive dashboard with Matrix background | HTML · CSS · JS |
latam-cybersecurity-salaries-2026 |
Visual analysis of cybersecurity salaries in LATAM — local vs remote US/EU comparison with interactive Chart.js dashboard | HTML · Chart.js |
| Project | Description | Frameworks |
|---|---|---|
0xVKRAD-Evolution-Academy |
Offensive cybersecurity academy — missions, Docker labs, XP progression system, writeup templates. Spanish, free, no filters | Docker · Flask · MySQL |
cognitive-tracker |
Personal cognitive performance tracker — IQ, memory, logic & focus tests with progress analytics and AI coach. Python + FastAPI + Streamlit | Python · FastAPI · Streamlit |
Every security finding I document uses this structure (based on OWASP WSTG + PTES):
📋 EXECUTIVE SUMMARY → What was found, severity, business risk
🔍 SCOPE & METHODOLOGY → Test parameters, tools used, rules of engagement
🎯 FINDING → Vulnerability, CWE/CVE reference, MITRE technique
📸 EVIDENCE → Reproducible proof (request/response, payload, PoC)
💥 IMPACT → Technical + business risk explanation
🛠️ REMEDIATION → Specific fix with code/config example where applicable
📊 CVSS SCORE → Calculated severity vector
No capturas sueltas. No flags sin contexto. Solo criterio técnico documentado.
- 📘 Information Security — Politécnico Grancolombiano (Aug 2026 →)
- 🎯 Ethical Hacking & DevSecOps — CIIF Latam (in progress)
- 🏛️ Multiple IT & Cybersecurity courses — SENA
- 🌐 PortSwigger Web Security Academy — Advanced labs (ongoing)
- 🔐 TryHackMe / Hack The Box — Active practitioner
Contributing to security-related open source projects is how I validate knowledge beyond labs.
- 🔍 Reviewing CVE reports and open issues in security tooling repos
- 🛡️ Targeting projects with known vulnerabilities needing fixes (Open CSF and similar)
- 📖 Documenting security improvements with full evidence and remediation
"Si podés mostrar un commit que soluciona un problema de seguridad real, eso vale más que cualquier certificado."
| Platform | Link |
|---|---|
| 🐙 GitHub | @0xvanguard |
| 🌐 Portfolio Web | 0xvanguard.github.io/trillion-income-streams |
| Próximamente | |
| Disponible en solicitud |
[ Built with purpose from Bogotá, Colombia ]
[ Criterion over credentials. Evidence over screenshots. ]



