Skip to content
View Raoof128's full-sized avatar
🤔
Reflecting
🤔
Reflecting

Highlights

  • Pro

Block or report Raoof128

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Raoof128/README.md
Raouf Abedini — AI Security Researcher

Typing SVG

LinkedIn Portfolio ORCID Email Profile Views


Cosmic Starfield

Terminal Animation


> ./identity --singularity

╔══════════════════════════════════════════════════════════════════════════╗
║  🌌  Mapping where AI capability eclipses human oversight vectors       ║
║  📡  "Invisible Window" · "Project Simurgh" — Research at the Horizon   ║
║  🤖  Calibrating AI for Anthropic · Claude Capability Evaluation        ║
║  🌀  LLM Safety · Capability Uplift · Dual-Use Risk at Singularity      ║
║  💻  Systems Depth — C/C++ Engines · Python Tooling · Swift             ║
║  🔭  Orbiting: Aion · SimurghForge · Nexus OS                          ║
║  🎓  B.Cyber Security — Macquarie University · Nov 2026                 ║
╚══════════════════════════════════════════════════════════════════════════╝


> deep-scan --sector=research --depth=∞

📄 The Invisible Window   V2.0 2026

Exploiting OS-Level Display Affinity to Bypass WebRTC Proctoring Systems

C Swift Python Win32 ScreenCaptureKit WebRTC

  • 100% screen capture evasion across Windows 10/11 and macOS 14–26 via W3C Screen Capture / OS compositing trust boundary violation — zero artefacts over 10,000+ frames
  • Novel finding: Apple's macOS 15 ScreenCaptureKit mitigation remains ineffective on macOS 26 — contradicting vendor assumptions through pixel-level forensic verification
  • Coordinated disclosure to 3 proctoring vendors (ProctorU, Proctorio, Respondus) + 2 OS vendors (Microsoft, Apple) following OWASP/FIRST/CISA frameworks
  • Documented measurable AI capability uplift and characterised intent-vs-artefact safety boundaries — directly relevant to ASL threshold calibration

Preprint   Zenodo

📄 Project Simurgh   Stage 2 2026

Privacy-Preserving Device Integrity Proofs for Capture-Resistant High-Stakes Sessions

Ed25519 ECDSA P-256 WebExtension Node.js Python

  • Replaces surveillance-first visual monitoring with signed, metadata-only integrity proofs — no screen-capture data collected at any point
  • Combines browser behavioural telemetry, local OS-metadata daemons, and Ed25519 + ECDSA P-256 cryptographic challenge-response proofs to verify session authenticity
  • Stage 2 working prototype on main: instructor risk dashboard, student privacy UI, HMAC-SHA256 tamper-evident audit chain, macOS native display-affinity scanner
  • Companion attack paper: The Invisible Window — the defence is designed to neutralise the exact attack class the companion paper documents

Preprint

🛠 Zurvan   Active

Local-First LLM-Powered Knowledge Engine — Markdown Wiki + Hybrid Search + MCP

Python SQLite MCP FastAPI

  • Ingests raw sources (PDF, MD, TXT, images) and extracts structured knowledge — claims, entities, concepts, decisions — into a git-diffable, Obsidian-compatible Markdown wiki
  • Three local SQLite indices: registry.sqlite (deduplication), search.sqlite (FTS5 + sentence-transformer embeddings for hybrid search), graph.sqlite (wikilink knowledge graph)
  • Exposes a local MCP server over stdio — Claude Code, Cursor, and Codex-style agents query it via zurvan_search, zurvan_context, and zurvan_graph_* tools; no cloud, no SDK, no LLM loops
  • Designed as a pure storage + retrieval engine: all reasoning is done externally by the calling agent — immutable raw sources, no fabricated citations

GitHub



> enumerate --matrix=capabilities


[ LANGUAGES ]

Python C C++ TypeScript JavaScript Swift Kotlin Bash Go   SQL

[ AI / ML ]

LLM Evaluation NLP AI Safety Generative AI

[ SYSTEMS & TOOLS ]

Linux Docker CMake GitHub Actions Cloudflare FastAPI   Google Test libpcap

[ SECURITY TOOLING ]

Kali Linux   Burp Suite Wireshark Nmap

[ FRAMEWORKS ]

OWASP MITRE ATT&CK NIST W3C Screen Capture



> probe --orbit=projects --traverse-all

⚙️ Systems & Security

NanoMatch   2026

C++20 CMake GTest

High-performance matching engine processing 1M+ orders/sec with sub-microsecond latency — red-black tree price levels, custom memory pool allocator, p50/p99 benchmarks

SentinelFlow   2026

C++17 libpcap Linux

Real-time packet processing engine parsing 500K+ packets/sec — protocol dissection (Ethernet/IPv4/TCP/UDP/ICMP/DNS), signature-based detection, stateful analysis

SimurghForge   WIP

Python

Universal file converter — batch conversion pipeline supporting multiple formats, local-first privacy-preserving document processing

🤖 Full-Stack & AI

Nexus OS   WIP

React 19 Tailwind v4 Zustand TypeScript

Cyberpunk browser OS — 4-phase windowed desktop with edge-snap tiling, app launcher, Settings / System Monitor / Notes / Terminal apps, and Aion integrated as a native windowed app

Aion   WIP Nexus OS App

React Native Supabase pgvector Gemini

AI-powered Bible companion with Agentic Hybrid RAG chat — keyword + semantic search over pgvector, dynamic verse cards, Perplexity-style interface grounded via Gemini 3 Flash; integrates into Nexus OS as a native windowed app (Home / Chat / Reader views via SSE Edge Functions)

Mehr Guard   2024

Kotlin Android iOS

Cross-platform offline threat detection with local ML classification — submitted to KotlinConf global developer conference

70+ additional public projects covering vulnerability research, systems programming, AI/ML tooling, and cloud infrastructure



> singularity-watch --builds=active

🛠 Project Description Stack Status
Aion AI Bible companion · Agentic Hybrid RAG React Native Supabase Gemini Active
SimurghForge Universal file converter · local-first Python Active
Nexus OS Cyberpunk desktop environment React Tailwind Active


> query --archive=education --origin

🎓 Degree 🏛 Institution 📅 Period
Bachelor of Cyber Security Macquarie University May 2024 – Nov 2026
Diploma of Information Technology Macquarie University Jul 2023 – May 2024

Coursework: Digital Forensics · Network Security · Systems Security · Cloud Computing · NLP & Machine Learning · Privacy-Preserving Data Analysis



> channel --frequency=ai-safety --decode

🤖 Anthropic — Completed AI model evaluation (Claude Code Human Preference) — benchmarked LLM code outputs for quality, security, correctness, and reliability

🔬 Research Directions — Proposed systematic uplift measurement across vulnerability classes, intent-vs-artefact safety boundary generalisation, and defensive application development to Anthropic's Fellows team

🎓 Mentoring — Mentored peers in cybersecurity, C/C++ programming, and systems-level problem-solving at Macquarie University



> telemetry --live --cosmos



   
GitHub Streak

Repos 70+ Research Languages Followers Years


Contribution Snake


> ./entity --walk

Alien mascot

> trace --commit-field --realtime

Activity Graph



> establish-link --protocol=singularity

> Initiating singularity link...
> Protocol   : TLS 1.3  |  Auth: Mutual
> Encryption : AES-256-GCM + Ed25519
> Target     : Mohammad Raouf Abedini — Event Horizon Node
> Status     : [✦] ONLINE — signal crossing the threshold

LinkedIn Portfolio Email ORCID


Footer

Pinned Loading

  1. invisible-window-research invisible-window-research Public

    The Invisible Window: Exploiting OS-Level Display Affinity to Bypass WebRTC Proctoring Systems — Research artifacts, PoC, and IEEE manuscript

    Python 6

  2. Project-Simurgh Project-Simurgh Public

    Sovereign Shield for AI integrity: capture-evasion detection, metadata-only proofs, audit receipts, and LLM consequence containment.

    JavaScript 5

  3. Syllabus-Sync Syllabus-Sync Public

    AI-native Campus OS for Australian universities — LLM OCR pipeline, syllabus-as-code, calendar, WebAuthn passkeys, 503 tests. Built with Next.js 16, Supabase, and TypeScript.

    TypeScript 2

  4. Aion Aion Public

    AI-powered Bible companion using Agentic Hybrid RAG

    TypeScript 4

  5. Nexus-OS Nexus-OS Public

    Nexus Archive — Cyberpunk browser OS with AI-powered media vault, email, and chat

    JavaScript 2

  6. Project-Zurvan Project-Zurvan Public

    Python 2