Skip to content
@GainSec

GainSec

Jon “GainSec” Gaines—offensive security leader, engineer, and independent researcher across vulnerability research, hardware, RF, OSINT, AI & emerging systems.

GainSec public research terminal — Jon GainSec Gaines, offensive security leader, engineer, and independent researcher

Research Projects · Featured Projects · All Project Cards · Project Constellation · Complete Atlas

GainSec is the personal handle/brand of Jon “GainSec” Gaines—an offensive security leader, engineer, and independent researcher. The public archive spans vulnerability research and disclosure; offensive-security tooling; web, software, thick-client, macOS, mobile, and cloud security; hardware, embedded/IoT, RF/wireless, cellular/V2X, physical-security, and surveillance systems; reverse engineering, OSINT, and LLM/ML/AI/agent systems. It also includes open-source applications and utilities, robotics, data visualization, technical walkthroughs, publications, leadership writing, and experimental engineering.

Further research, technical write-ups, commentary, and other posts can be found at GainSec.com.

This page was last updated 08/2026.

Research Projects with GitHub Repos

Connected Public Safety and Anti-Crime Technology

Other Security Research

Beyond GitHub

The following incomplete list extends the GitHub record with security research, vulnerability disclosures, technical walkthroughs, leadership writing, papers, talks, and media published on GainSec.com or in external publications.

Flock Safety Research · 11 publications
Other Connected Public Safety + Surveillance Research · 1 publication
Automotive, V2X + Connected Infrastructure · 3 publications
Hardware + Embedded Security · 4 publications
Software Vulnerability Disclosures · 9 publications
OSINT Research · 3 publications
Technical Walkthroughs · 45 publications
Technical Leadership · 3 publications
Lectures, Papers + Media · 8 publications

Featured Projects

AutoProber hardware assembly

Agent-driven target discovery, microscope mapping, safety-monitored CNC motion, operator review, and controlled PCB pin probing—with source, dashboard, CAD, and safety documentation.

Treehouse Defense System 3D RF view

A self-hosted 3D RF-awareness and presence-intelligence platform joining local Wi-Fi, BLE, ADS-B, rail, IoT, infrastructure, and authorized LTE-lab observations.

BattleReadyArmor Slim dashboard

An AI-augmented security assessment framework built around operator authority, scope controls, anonymization, explicit approvals, evidence, and governed reporting.

ARA Agent Ready Armor — containment for what agents do and provenance for what they produce

A public preview of an agent runtime substrate focused on capability containment, evidence provenance, and auditable operator control.

ArcticBase agent workbench

A self-hosted workbench for agent approvals, runbooks, files, review artifacts, task state, and auditable out-of-band collaboration.

BirdShot local research interface

An offline-first offensive framework for authorized Flock Safety security assessments and penetration testing.

DWARF Cardano and Amaru fuzzing framework

Cardano and Amaru fuzzing and adversarial testing across serialization, mini-protocol, runtime, resource, and consensus surfaces, with replayable evidence and deterministic-simulation integration.

Super Awesome AI Driver live camera-car dashboard

A reverse-engineered camera-car dashboard and agent API that gives a human or authorized agent live video, two-way audio, and motion control.

Project Card Archive

Vulnerability / Security Research · 14 projects

Connected Public Safety and Anti-Crime Technology

anti-crime-ecosystem-research project card

BirdShot project card

Flock-Safety-Trap-Shooter-Sniffer-Alarm project card

onvif-enum project card

Uniview-LAPI-Research-Toolkit project card

DigitalAlly-ThermoVu-Uniview-Security-Research project card

CVE-2017-16744-and-CVE-2017-16748-Tridium-Niagara project card

flock-safety-falcon-sparrow-alpr-edl-firehose project card

Vulnerability Disclosures

macos-printer-simulator-security-research project card

AOL-Desktop-Gold-Security-Research project card

Automotive + V2X Security

3rdParty-Carplay-AndroidAuto-Dongle-Security-Research project card

Wireless-Attack-Vectors-Against-Automobiles project card

Hardware + Embedded Security

Little-Tikes-DreamProjector-Reverse-Engineering project card

Research Companion Material

Phrack-72-Raw-Output-V2X project card

Technical Walkthroughs · 5 projects

Tutorials + Build Guides

Qwen 3.6 Tool-Call Fix project card

M5NanoC6-Zigbee-Sniffer project card

CloudGoatTutorial project card

Lectures + Educational Material

Silk-Road-Lecture project card

Workflow Guides

n8n-workflow-whisper-server project card

Offensive Tooling · 16 projects

Fuzzing + Adversarial Testing

DWARF project card

Reconnaissance + Enumeration

crt.sh-OSX project card

OSINT

LeakScope project card

Dorker project card

FOSINT project card

Base-Google-Dorks project card

Assessment Workflow

GoldenNuggets-1 project card

TreeHouse-Wordlists project card

Hackers-LunchBox project card

Mac-OSX-Application-Fingerprint-And-Security-Tool project card

Quick-Engagement-Directory-Maker project card

Wireless + Device Tooling

gainsec-in-the-middle project card

Weaponized-Mousejack-Keysniff project card

Payload + Bypass Research

RTLOify project card

Legacy Tooling

vncpwn project card

LeakLooker-X---2022 project card

Open / Public Source Projects · 17 projects

Hardware + Embedded

AutoProber project card

RapidPower-RoboDog project card

Super-Awesome-AI-Driver project card

RF + Wireless

Tree-House-Defense-System-TDS project card

M5Stack-Core2-PaxCounter-WiFi-Bluetooth-Monitor project card

LLM / ML / AI / Agents

ArcticBase project card

BattleReadyArmor-Slim project card

battlereadyarmor-pilot project card

MacOS-ImagePlayground-Improved project card

AgentReadyArmor-Teaser project card

tensorflow-generic-harness project card

BattleReadyArmor-PublicPreview project card

GainSec-Local-AI-Stack project card

MacOS-AppleIntelligence-Harness project card

Applications + Utilities

PineapplePager-Themer project card

unicode-secret-message project card

Data + Visualization

SectorMap project card

Everything Else · 1 project

Experiments

IG-Clone-Tracker project card

Project Constellation

flowchart TB
    J["Jon ‘GainSec’ Gaines"]
    J --> C0["Vulnerability / Security Research"]
    J --> C1["Technical Walkthroughs"]
    J --> C2["Offensive Tooling"]
    J --> C3["Open / Public Source Projects"]
    J --> C4["Everything Else"]
Loading
Vulnerability / Security Research · 14 projects
flowchart TB
    ROOT["Vulnerability / Security Research"]
    ROOT --> S0_0["Connected Public Safety and Anti-Crime Technology"]
    S0_0 --> P0_0["anti-crime-ecosystem-research"]
    S0_0 --> P0_1["BirdShot"]
    S0_0 --> P0_2["Flock-Safety-Trap-Shooter-Sniffer-Alarm"]
    S0_0 --> P0_3["onvif-enum"]
    S0_0 --> P0_4["Uniview-LAPI-Research-Toolkit"]
    S0_0 --> P0_5["DigitalAlly-ThermoVu-Uniview-Security-Research"]
    S0_0 --> P0_6["CVE-2017-16744-and-CVE-2017-16748-Tridium-Niagara"]
    S0_0 --> P0_7["flock-safety-falcon-sparrow-alpr-edl-firehose"]
    ROOT --> S0_1["Vulnerability Disclosures"]
    S0_1 --> P0_8["macos-printer-simulator-security-research"]
    S0_1 --> P0_9["AOL-Desktop-Gold-Security-Research"]
    ROOT --> S0_2["Automotive + V2X Security"]
    S0_2 --> P0_10["3rdParty-Carplay-AndroidAuto-Dongle-Security-Research"]
    S0_2 --> P0_11["Wireless-Attack-Vectors-Against-Automobiles"]
    ROOT --> S0_3["Hardware + Embedded Security"]
    S0_3 --> P0_12["Little-Tikes-DreamProjector-Reverse-Engineering"]
    ROOT --> S0_4["Research Companion Material"]
    S0_4 --> P0_13["Phrack-72-Raw-Output-V2X"]
Loading
Technical Walkthroughs · 5 projects
flowchart TB
    ROOT["Technical Walkthroughs"]
    ROOT --> S1_0["Tutorials + Build Guides"]
    S1_0 --> P1_0["Qwen 3.6 Tool-Call Fix"]
    S1_0 --> P1_1["M5NanoC6-Zigbee-Sniffer"]
    S1_0 --> P1_2["CloudGoatTutorial"]
    ROOT --> S1_1["Lectures + Educational Material"]
    S1_1 --> P1_3["Silk-Road-Lecture"]
    ROOT --> S1_2["Workflow Guides"]
    S1_2 --> P1_4["n8n-workflow-whisper-server"]
Loading
Offensive Tooling · 16 projects
flowchart TB
    ROOT["Offensive Tooling"]
    ROOT --> S2_0["Fuzzing + Adversarial Testing"]
    S2_0 --> P2_0["DWARF"]
    ROOT --> S2_1["Reconnaissance + Enumeration"]
    S2_1 --> P2_1["crt.sh-OSX"]
    ROOT --> S2_2["OSINT"]
    S2_2 --> P2_2["LeakScope"]
    S2_2 --> P2_3["Dorker"]
    S2_2 --> P2_4["FOSINT"]
    S2_2 --> P2_5["Base-Google-Dorks"]
    ROOT --> S2_3["Assessment Workflow"]
    S2_3 --> P2_6["GoldenNuggets-1"]
    S2_3 --> P2_7["TreeHouse-Wordlists"]
    S2_3 --> P2_8["Hackers-LunchBox"]
    S2_3 --> P2_9["Mac-OSX-Application-Fingerprint-And-Security-Tool"]
    S2_3 --> P2_10["Quick-Engagement-Directory-Maker"]
    ROOT --> S2_4["Wireless + Device Tooling"]
    S2_4 --> P2_11["gainsec-in-the-middle"]
    S2_4 --> P2_12["Weaponized-Mousejack-Keysniff"]
    ROOT --> S2_5["Payload + Bypass Research"]
    S2_5 --> P2_13["RTLOify"]
    ROOT --> S2_6["Legacy Tooling"]
    S2_6 --> P2_14["vncpwn"]
    S2_6 --> P2_15["LeakLooker-X---2022"]
Loading
Open / Public Source Projects · 17 projects
flowchart TB
    ROOT["Open / Public Source Projects"]
    ROOT --> S3_0["Hardware + Embedded"]
    S3_0 --> P3_0["AutoProber"]
    S3_0 --> P3_1["RapidPower-RoboDog"]
    S3_0 --> P3_2["Super-Awesome-AI-Driver"]
    ROOT --> S3_1["RF + Wireless"]
    S3_1 --> P3_3["Tree-House-Defense-System-TDS"]
    S3_1 --> P3_4["M5Stack-Core2-PaxCounter-WiFi-Bluetooth-Monitor"]
    ROOT --> S3_3["LLM / ML / AI / Agents"]
    S3_3 --> P3_5["ArcticBase"]
    S3_3 --> P3_6["BattleReadyArmor-Slim"]
    S3_3 --> P3_7["battlereadyarmor-pilot"]
    S3_3 --> P3_8["MacOS-ImagePlayground-Improved"]
    S3_3 --> P3_9["AgentReadyArmor-Teaser"]
    S3_3 --> P3_10["tensorflow-generic-harness"]
    S3_3 --> P3_11["BattleReadyArmor-PublicPreview"]
    S3_3 --> P3_12["GainSec-Local-AI-Stack"]
    S3_3 --> P3_13["MacOS-AppleIntelligence-Harness"]
    ROOT --> S3_4["Applications + Utilities"]
    S3_4 --> P3_14["PineapplePager-Themer"]
    S3_4 --> P3_15["unicode-secret-message"]
    ROOT --> S3_5["Data + Visualization"]
    S3_5 --> P3_16["SectorMap"]
Loading
Everything Else · 1 project
flowchart TB
    ROOT["Everything Else"]
    ROOT --> S4_0["Experiments"]
    S4_0 --> P4_0["IG-Clone-Tracker"]
Loading

Complete Atlas

Open the text index of every original GainSec repository

Vulnerability / Security Research

Connected Public Safety and Anti-Crime Technology

Vulnerability Disclosures

Automotive + V2X Security

Hardware + Embedded Security

Research Companion Material

Technical Walkthroughs

Tutorials + Build Guides

Lectures + Educational Material

Workflow Guides

Offensive Tooling

Fuzzing + Adversarial Testing

  • DWARF — Cardano and Amaru fuzzing and adversarial-testing framework for serialization, protocol, runtime, resource, and consensus surfaces.

Reconnaissance + Enumeration

  • crt.sh-OSX — macOS-compatible passive certificate transparency enumeration script.

OSINT

  • LeakScope — Provider-aware Shodan and ZoomEye workbench for finding and triaging exposed data across 20+ services.
  • Dorker — CLI and web app for formatting search-engine dorks.
  • FOSINT — Free and open-source intelligence resource index.
  • Base-Google-Dorks — A basic, explicitly incomplete collection of Google dorks.

Assessment Workflow

Wireless + Device Tooling

Payload + Bypass Research

  • RTLOify — Creates RTLO strings and filenames for controlled bypass testing.

Legacy Tooling

  • vncpwn — Legacy Python security tool retained in the public archive.
  • LeakLooker-X---2022 — Archived 2022 working snapshot of LeakLooker-X.

Open / Public Source Projects

Hardware + Embedded

  • AutoProber — Agent-driven flying-probe automation with microscope mapping, CNC motion, review gates, and independent safety monitoring.
  • RapidPower-RoboDog — Clean-room Python BLE control library and local web dashboard for a consumer robot dog.
  • Super-Awesome-AI-Driver — Reverse-engineered camera-car dashboard and agent API with video, audio, and motion control.

RF + Wireless

LLM / ML / AI / Agents

Applications + Utilities

Data + Visualization

  • SectorMap — Offline-first self-hosted dataset browser with a galaxy-style archive interface.

Everything Else

Experiments

  • IG-Clone-Tracker — Instagram clone for lab research, prototyping, and tracking experiments.

Caution

This archive contains dual-use security research and tools. Use them only in owned or explicitly authorized environments, and follow each project’s safety and disclosure boundaries.

Popular repositories Loading

  1. AutoProber AutoProber Public

    Hardware hacker’s flying probe automation stack for agent-driven target discovery, microscope mapping, safety-monitored CNC motion, probe review, and controlled pin probing.

    Python 325 19

  2. anti-crime-ecosystem-research anti-crime-ecosystem-research Public

    Independent research white paper by Jon “GainSec” Gaines examining the security posture of a connected public safety technology ecosystem.

    240 20

  3. GoldenNuggets-1 GoldenNuggets-1 Public

    Burp Extension for easily creating Wordlists

    Python 221 40

  4. Flock-Safety-Trap-Shooter-Sniffer-Alarm Flock-Safety-Trap-Shooter-Sniffer-Alarm Public

    Custom firmware for the M5NanoC6 (ESP32-C6) meant to sniff and alert you of nearby Flock Safety devices. Will be integrated into a exploit tool releasing on 09/27/25 for Flock Safety devices!

    C 88 18

  5. TreeHouse-Wordlists TreeHouse-Wordlists Public

    Wordlist for Hacking, Penetration Testing, Vulnerability Assessments and More

    Shell 86 27

  6. LeakScope LeakScope Public

    An all-in-one Shodan & ZoomEye supported tool to search, browse, preview and dump data leakage across 20+ services. Pulls real exposure straight from the sources instead of guessing. Drop it into y…

    JavaScript 66 9

Repositories

Showing 10 of 53 repositories

Top languages

Loading…

Most used topics

Loading…