Skip to content
View mendsec's full-sized avatar
:shipit:
Going everywhere
:shipit:
Going everywhere

Organizations

@portosoft

Block or report mendsec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mendsec/README.md

Fábio Mendes

Cybersecurity Analyst · SysAdmin · Platform & Infrastructure Automation

Offensive & defensive security · Go / Python / Shell · Linux, Proxmox, DevSecOps

LinkedIn X Email CatNet

Profile Views


About Me

Systems administrator and IT manager with 10+ years running infrastructure, now going deep on cybersecurity — offensive and defensive — after years of it being part of the job. I build and operate the boring, load-bearing parts of security: hardened Linux fleets, endpoint protection rollouts, scanning tooling, and CI/CD pipelines that fail loudly when something is wrong.

Most of my public code lives in three places: the catnet-io scanning ecosystem (Go), infrastructure automation for MadeiraHackerSpace, and security operations runbooks under @portosoft.

  • 🔭 Currently building — the catnet-io ecosystem: one Go scanning engine, many thin frontends
  • 🛡️ Day to day — endpoint security (Kaspersky Security Center), Linux hardening, Proxmox, incident response
  • 🎓 Education — Information Security & CyberDefense · postgraduate in Cybersecurity
  • 🐧 Daily drivers — Pop!_OS, Rocky Linux, Ubuntu, Void Linux
  • 🧪 Interests — threat intelligence, malware analysis, DevSecOps, game development
  • 📍 Porto Velho, Rondônia — Brazil · 🇧🇷 PT-BR / 🇺🇸 EN

Skills

Go Python Shell C TypeScript

Linux Proxmox Docker Oracle Cloud PostgreSQL GitHub Actions

Kaspersky Security Center Network Scanning Hardening DevSecOps CodeQL Semgrep


Featured Projects

🐾 catnet-io · Go · MIT

Modular, event-driven network scanning ecosystem. Strict separation between scan logic and frontends — every client is a thin, swappable consumer of the same engine (client-go / kubectl / k9s pattern).

Repo Role Release
engine Core scan logic — zero CGO, zero external deps, channel-based event API
catnet CLI (Cobra) — docs
app Desktop GUI (Wails + React)
tui Terminal UI (Bubble Tea) — docs

Distributed via Homebrew tap and Scoop bucket. Every repo runs golangci-lint, govulncheck and branch-protection enforcement in CI.


🛡️ ksc-deployment-runbook · Python/Shell · Apache-2.0

Deployment, automation and troubleshooting runbook for Kaspersky Security Center 16.x on Linux and virtualized environments — pre-checks, guided install, compatibility matrix, and recovery procedures drawn from real rollouts.

Pipeline: CodeQL · Semgrep · Aikido · integration CI.


☁️ mhc-cloud-panel · Python · Proxmox VE

Multi-tenant SaaS control plane for VPS resale and infrastructure management on Proxmox VE — customer VMs, billing, node scheduling and resource allocation. Runs the real cloud services of MadeiraHackerSpace.


🏗️ MadeiraHackerSpace/infra · Shell · GitOps

Homelab and community infrastructure managed as code, plus status-bot for service monitoring.


Co-founder of a two-person indie studio. Top-down horde survivor for desktop browsers. My side: studio ops and delivery infrastructure — bilingual EN/PT landing, GitHub Actions, CodeQL, Dependabot. Everything outside 2D art and game design.


Maintained Forks & Tools

Small fixes that solve real Linux desktop problems, kept in sync upstream:


GitHub Stats

Stats Streak

Top Languages

Activity Graph


Let's Connect

Open to security & infrastructure discussions, open-source collaboration on tooling and DevOps, indie game development, and mentorship for people breaking into security and systems engineering.

LinkedIn · X · fabiomendes@mailfence.com

Ferramenta boa é a que falha alto e cedo.

Pinned Loading

  1. catnet-io/engine catnet-io/engine Public

    CatNet engine — Go scanning engine, zero external dependencies, event-driven channel API

    Go

  2. catnet-io/catnet catnet-io/catnet Public

    CatNet CLI — command-line interface for network scanning and monitoring

    Go

  3. catnet-io/app catnet-io/app Public

    CatNet App — cross-platform desktop application for network scanning and monitoring (Wails + React)

    Go

  4. catnet-io/tui catnet-io/tui Public

    CatNet TUI — terminal user interface for network scanning and monitoring (Bubble Tea)

    Go

  5. MadeiraHackerSpace/mhc-cloud-panel MadeiraHackerSpace/mhc-cloud-panel Public

    Plataforma SaaS multi-tenant para revenda e gestão de VPS sobre Proxmox VE

    Python 1

  6. AuraOneStudios/overloaded-game AuraOneStudios/overloaded-game Public

    OVERLOADED — top-down pixel-art horde survivor for desktop browsers, by AuraOne Studios

    Python