@descambiado

SOC Analyst · Purple Team · Tool Builder

status
operator_state : active
focus : detection engineering · purple team · automation
workspace : live
handle_meaning : out of pattern
now
detection rules · purple exercises · BOFA iterations
building · learning · shipping
stack
PythonBashDockerTerraformMITRE ATT&CKZabbixPowerShellGit
focus
Detection Engineering MITRE ATT&CK · SIEM correlation · Threat hunting
Purple Team Operations Red/Blue convergence · Adversary simulation · Defensive validation
Automation & Tooling Python · Bash · APIs · Internal frameworks
BOFA Suite 150+ tools for Blue/Red/Purple Team operations
projects
SotyHUB

Cybersecurity community & knowledge ecosystem

sotyhub.com
BOFA

Cybersecurity Operations Framework Advanced (150+ tools)

github.com/descambiado/BOFA
SOTYBOT

Operator-oriented AI assistant / open agent engine

github.com/descambiado/Sotybot
SOTYPOT

Modular multi-honeypot platform (TPOT CE remix)

github.com/descambiado/Sotypot
Baby Pluto Guard

Educational monitoring & detection scanner

manifest
No construyo para métricas.
No publico para validación.
Publico para externalizar conocimiento operativo.

Aquí hay: iteraciones, fallos, sistemas parciales, experimentos vivos.

Si te sirve, úsalo.
Si lo puedes mejorar, contribuye.

Operador. Construyo en público. descambiado = fuera del patrón esperado.
channels
descambiado != broken
descambiado == out of pattern

David Hernández · @descambiado