- Specializing in cyber threat intelligence, threat hunting, and security operations automation.
- Developing systems for phishing detection, brand impersonation monitoring, credential leak investigation, and stealer log analysis.
- Building end-to-end automated abuse takedown flows and threat enrichment pipelines.
- Author of UmayCrypt — A Göktürk (Orkhon) motif CLI data protection tool (AES-256-GCM + Argon2id).
┌── [CAPABILITIES MATRIX] ──────────────────────────────────────────────────────────────┐
│ │
│ • Threat Intelligence : MISP & OpenCTI Pipelines, Passive DNS, CT Logs │
│ • Incident & Hunting : Stealer Log Analysis, C2 Infrastructure Tracking │
│ • Brand Protection : Phishing Identification, Homoglyph Analysis, Takedown Flows │
│ • Development : Python, Docker, Linux, macOS, AI Coding & Agentic Tools │
│ │
└────────────────────────────────────────────────────────────────────────────────────────┘
| Project | Description | Tech Stack | Status |
|---|---|---|---|
| UmayCrypt | Göktürk (Orkhon) motif CLI encryption tool powered by AES-256-GCM & Argon2id | Python, Cryptography | Active |
| Takedown Automation | Automated phishing detection, domain similarity scoring & registrar takedown flow | Python, Playwright, APIs | Active |
| Uvluk | Cyber threat data collection, IOC aggregation & intelligence engine | Python, SQLite, Analytics | Active |
- Email:
gorkemguler[at]protonmail.com - GitHub: @gorkemguler
