Skip to content
View ethanolivertroy's full-sized avatar
🎯
Focusing
🎯
Focusing

Sponsoring

@jpanther
@nunocoracao

Highlights

  • Pro

Organizations

@hackIDLE

Block or report ethanolivertroy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
ethanolivertroy/README.md

Hey, I'm ET πŸ§ͺπŸ‘½ and I just click buttons

  • I just click buttons has been my way to move forward through seemingly complex situations rather than overcomplicating them; it's my version of Dori's "just keep swimming", my HS wrestling coach's version of "just put on your pants one leg at a time" or whoever said "just put one foot in front of the other" (I think that was my drill sergeant)
  • hackIDLE is where I capture most of my digital garden of open notes, ideas, and research related to all things security and tech

YouTube - @hackidle Website - hackidle.com Buy Me A Coffee

what I'm currently interested & focused on

  • cloud security audit/assessment tooling & automation - grc engineering
  • container security and general docker, kubernetes, and helm stuff
  • supply chain security - SBOM, Sigstore, distroless/minimal images (Chainguard)
  • ci/cd security, pipelines, supply chain stuffs (Jenkins, GitHub Actions, GitLab CI ish)
  • local LLMs & AI red team tooling - fine-tuning models on security datasets
  • AI/ML security and governance (adversarial ML, ISO 42001)
  • cloud red teaming across AWS, Azure, and GCP
  • observability stuffs - prometheus, grafana, ELK Stack
  • rust based blockchains (solana & injective)

my content out there

Platform Description
YouTube hackIDLE Youtube tech/security videos, tooling walkthroughs, and demos
Obsidian hackIDLE obsidian-powered notes, research, and living docs
Website ethantroy.dev personal site - projects, labs, guides, and cert reviews
Kubernetes killercoda interactive labs and scenarios (AWS, Chainguard, Istio)
Medium my medium occasional write-ups and blogs
hacks archive of my old Jekyll blog (migrating into hackIDLE)

other stuff

Platform Description
GitLab my gitlab not much over there for now tbh
Hugging Face my huggingface currently working on fine-tuning some local LLMs
πŸ€– HackIDLE-NIST-Coder on Ollama fine-tuned AI model specialized in NIST cybersecurity standards
Google my google dev profile google dev profile

my current notable public projects

Project Description
obsidian-icon obsidian MarkItDown using Microsoft's MarkItDown library to convert PDFs, PPTs, and Word(docx) documents into markdown
Okta okta inspector okta multi-framework compliance audit tool (FedRAMP, DISA STIG, IRAP, ISMAP, SOC 2, PCI)
AWS Bedrock wilma-aws bedrock sec config tool security auditing for AWS Bedrock with GenAI security checks
πŸ€– HackIDLE-NIST-Coder fine-tuned AI model specialized in NIST cybersecurity standards (530K+ examples, 596 NIST docs)
πŸ’œ vanta-auditor-interface archived POC web app for Vanta's Auditor API - local interface for compliance evidence
πŸ’œ vanta-auditor-tui archived terminal UI for exporting Vanta audit evidence
Hugo hugo-portfolio-demo ready-to-deploy portfolio template for cybersecurity professionals
prowler contributor added new IAM checks for AWS security assessment; FedRAMP 20x Configurations (pending)

Trainings I've made

Training Description
Istio istio + FedRAMP scenario lab guided lab: walkthrough of Istio for a FedRAMP-like env
AWS AWS CLI Sandbox with LocalStack interactive AWS CLI playground - practice AWS commands safely without costs
πŸ”’ Introduction to Chainguard Images secure, minimal container images with SBOM attestation and Sigstore verification

open-source docs I've made or contribute to

Project Description
Docs learntocloud.guide- phase 5: cloud security fundamentals cloud security fundamentals for junior cloud engineers (but also for budding cloudsec engineers)
Google Cloud GoogSec - google product security a resource for google product related security concerns - mostly GCP related now

github stats

E.T.'s GitHub Stats
GitHub Streak

badges I got for clicking buttons

1 2 3

HackTheBox badge

Pinned Loading

  1. fedramp-docs-mcp fedramp-docs-mcp Public

    MCP Documentation Server Using the Official FedRAMP/docs Repo

    TypeScript 9 3

  2. obsidian-markitdown obsidian-markitdown Public

    Integrate Microsoft's Markitdown tool to convert various file formats to Markdown for your vault.

    TypeScript 22 3

  3. okta-inspector okta-inspector Public

    This is a push mirror of https://gitlab.com/hackIDLE/security-compliance/okta-inspector

    Python 8 1

  4. wilma wilma Public

    Wilma - AWS Bedrock Security Configuration Checker

    Python