Skip to content
View TerminalsandCoffee's full-sized avatar

Block or report TerminalsandCoffee

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
TerminalsandCoffee/README.md

Rafael M.

Security researcher focused on privacy-minded tools, cloud application security, API/WAF controls, and AI agent trust boundaries.

I build open tools that put you back in control of your data and desktop, plus labs that show how agents and detections fail under real attack pressure — then harden and retest.

Featured projects

Project What it is
win-debloat Privacy-first Windows hygiene — unhook OneDrive Desktop Known Folder Move, optional OneDrive uninstall, light Appx cleanup. Defender and Windows Update stay on.
ai-security-architecture Threat models, trust boundaries, secure RAG/agent design, and architecture review exercises.
detection-engineering-lab Wazuh + Sysmon detections mapped to ATT&CK, with IaC and validation workflows.
AzureHoneyNet Azure exposure lab — Sentinel telemetry, KQL detections, and the limits of before/after measurement.

How I work

Understand the architecture → reproduce the failure → harden the control → make the test repeatable. Prefer small, auditable tools over opaque “debloat” scripts that gut your security stack.

Also building

Secure Cloud Academy — practitioner-built CompTIA study packs (Security+ live).

Python · PowerShell · Terraform · FastAPI · AWS · Azure · GitHub Actions

Connect

LinkedIn · Medium · Secure Cloud Academy · Email

Pinned Loading

  1. detection-engineering-lab detection-engineering-lab Public

    Detection engineering lab with Wazuh, Windows/Sysmon, Elastic/KQL rules, ATT&CK mappings, and reproducible validation workflows.

    Python 2

  2. CloudAutomationProjects CloudAutomationProjects Public

    A collection of multi-cloud automation scripts in Python, PowerShell, and Bash for AWS and Azure.

    Python 5 2

  3. terraform-associate-study terraform-associate-study Public

    Study notes and hands-on labs to get familiar with Terraform fundamentals and preparing for the HashiCorp Certified: Terraform Associate exam.

    Python 17 12

  4. security-architecture-fundamentals security-architecture-fundamentals Public

    A Cyber Security Architecture study and reference repo focused on fundamentals, cloud design, threat modeling, risk assessment, and framework-driven decision making.

    1 3