Skip to content
View calghar's full-sized avatar

Organizations

@dynatrace-oss

Block or report calghar

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
calghar/README.md
    ______                                _____ __          _ __   __  
   / ____/___ __________  ____  ____ _   / ___// /_  ____ _(_) /__/ /_ 
  / /_  / __ `/ ___/ __ \/ __ \/ __ `/   \__ \/ __ \/ __ `/ / //_/ __ \
 / __/ / /_/ / /  / /_/ / /_/ / /_/ /   ___/ / / / / /_/ / / ,< / / / /
/_/    \__,_/_/   \____/\____/\__, /   /____/_/ /_/\__,_/_/_/|_/_/ /_/ 
                                /_/                                     

  Security Researcher @ Dynatrace
  Cloud Security · AI-Augmented Defense · Runtime Detection

I make security runtime-observable, automatically testable, and AI-augmented.

LinkedIn Scholar Blog Dynatrace OSS


SHIPPED

Kimera — Cloud security posture management. Assess, exploit, remediate, enforce. Uses LLMs to generate remediations from live cluster state. Dynatrace OSS.

Kalm-Benchmark — 235+ intentionally vulnerable manifests benchmarking 12 security scanners. CCSS scoring and interactive analysis. Dynatrace OSS.

HARIS — Black-box web security scanner. Orchestrates five tools, cross-correlates findings, uses LLMs for triage and remediation planning.

Tetragon MCP — MCP server exposing runtime security events to AI assistants. Multi-cluster support, dual-transport.

harnessport — Universal converter between AI coding harness configs. Claude Code ↔ OpenCode ↔ Cursor ↔ Windsurf ↔ Copilot ↔ Codex CLI.

LinkVault — Obsidian plugin that uses AI to categorise web clips into structured knowledge bases.


WRITING

Container misconfigurations — from theory to exploitation · Oct 2025

Kubernetes misconfiguration attack paths and mitigation · Apr 2025

Understanding Kubernetes security misconfigurations · Apr 2025

Tracing Apache Struts CVE-2024-53677 · Feb 2025

all posts

Popular repositories Loading

  1. gh-account-switcher gh-account-switcher Public

    Tool for quickly switching between multiple GitHub accounts

    Go 3 3

  2. tetragon-mcp tetragon-mcp Public

    MCP server implementation for Tetragon

    Go 1 1

  3. crypto-jack-agent crypto-jack-agent Public archive

    Detect CryptoJacking attacks

    Python

  4. tetragon tetragon Public

    Forked from cilium/tetragon

    eBPF-based Security Observability and Runtime Enforcement

    C

  5. koney koney Public

    Forked from dynatrace-oss/koney

    Koney is a Kubernetes operator that enables you to define so-called deception policies for your cluster. Koney automates the setup, rotation, and teardown of honeytokens and fake API endpoints, and…

    Go

  6. dotfiles dotfiles Public

    Personal configuration setup

    Shell