Skip to content
View RRSWSEC's full-sized avatar
🙂
Available
🙂
Available

Block or report RRSWSEC

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
RRSWSEC/README.md

RAPID RIVER SKUNK WORKS

Security research. Hardware-aware defense. CTF infrastructure. Weird signals made useful.


RRSW typing banner



RRSW OffSec Hardware Defense Guide GitHub RRSWSEC

mission.log

Rapid River Skunk Works exists to turn practical security research into usable defense.

That means building labs, writing guides, testing hardware, documenting what actually happened, and producing artifacts that defenders, business owners, investigators, and operators can act on.

This profile is not meant to look polished while saying nothing.

It is a public workbench.

RRSW operating bias:
  - build the lab
  - verify the claim
  - preserve function
  - document the artifact
  - ship the useful version
  - do not fake outcomes

active lanes

01 // defensive engineering

Endpoint controls, SIEM logic, detection rules, hardening notes, incident-ready checklists, and defender-first documentation.

Current focus:

  • USB / HID threat detection
  • PowerShell and process telemetry
  • SIEM-ready queries
  • practical hardening guides
  • physical-to-digital attack surface mapping

02 // hardware security

Research around the devices defenders usually do not see until they become a problem.

Current focus:

  • malicious USB / cable threats
  • RFID / NFC risk
  • rogue AP and LAN implants
  • embedded debug surfaces
  • field hardware inspection workflows

03 // RF / wireless / signal work

Passive, legal, lab-scoped signal research for detection, presence sensing, field intelligence, and defensive monitoring.

Current focus:

  • WiFi CSI research
  • SDR monitoring concepts
  • RF environment mapping
  • passive sensing
  • SeeEm-style signal intelligence

04 // CTF and training systems

Narrative-driven security challenges, investigation artifacts, broken-system labs, and blue/purple-team training material.

Current focus:

  • SkunkOS-style environments
  • forensic artifact trails
  • realistic defender workflows
  • CTF infrastructure
  • challenge writeups and operators’ notes

featured artifacts

Defending Against Offensive Hardware

A defender-first guide for malicious USB cables, HID injection, rogue access points, LAN implants, cable implants, hardware keyloggers, RFID/NFC cloning, UART/SPI/JTAG exposure, and SDR/RF monitoring.

Built around usability:

  • start-here decision layer
  • role-based reading paths
  • 30 / 60 / 90 roadmap
  • risk register
  • copy-paste detections
  • hardening controls
  • team-specific guidance

DIY Offensive Hardware Reference

The companion reference used to understand the offensive hardware landscape from a lab and research perspective.


toolbox

Systems and automation

Linux Bash PowerShell Python NGINX Docker

Security and detection

Wireshark Splunk Microsoft Sentinel Sigma YARA Autopsy

Hardware and field labs

Raspberry Pi Arduino ESP32 SDR/RF NFC/RFID

field notes

Things that keep showing up in RRSW work:

USB ports are physical trust decisions.
Badges are credentials.
Cables are supply chain.
Network closets are privileged zones.
RF is an attack surface.
Logs only help if the team knows what they are looking for.
A guide is not useful until a busy defender can act on it.

public signal

GitHub stats Top languages
GitHub streak

public signal


contact


RRSW // practical workbench // hardware-aware defense // skunkworks research


Profile views

Pinned Loading

  1. hashitout hashitout Public

    Multi-layer decoder, classical cipher breaker, and forensic artifact triage tool for CTF and real-world analysis. No AI - just deterministic, classical methods.

    Python 11

  2. DOG_DNS_Onion_Guardian DOG_DNS_Onion_Guardian Public

    Designated Onion Grabber, designed as a browser extension for chromium, firefox, chrome and opera to prevent DNS seeing attempted .onion connections for when you accidentally paste an onion into yo…

    2

  3. CTF_Writeup_Format CTF_Writeup_Format Public

    IYKYK

    1

  4. dark-web-osint-tools dark-web-osint-tools Public

    Forked from apurvsinghgautam/dark-web-osint-tools

    OSINT Tools for the Dark Web

    3

  5. PEEL PEEL Public

    Parse, Enumerate, Enrich, Log: PEEL You give it anything - a database, a text file, a CSV, a URL, a single address - in any format, any delimiter, any mess. It pulls out every valid onion address, …

    Python 1

  6. asciivision asciivision Public

    Forked from lalomorales22/asciivision

    play mp4 files through terminal, chat with claude, grok, chatgpt, and gemini, live stream via web cam, 3d visualizations in CLI

    Rust 2