Chris Spehn is an adversary simulation specialist with 14 years of experience in offensive and defensive cybersecurity, currently focused on X-Force Red at IBM in Denver. He blends hands-on exploit development and red-team operations with pragmatic engineering skills, contributing to open-source tooling like GreatSCT to generate application whitelisting bypasses useful to both red and blue teams. Known for practical scripting and payload work—particularly PowerShell-based payload integrations and CLI improvements—he brings a developer’s attention to repeatable, auditable attack techniques. Colleagues describe him as curious and playful (he “likes to play legos”) yet methodical, translating creative problem solving into rigorous adversary emulation.
The project is called Great SCT (Great Scott). Great SCT is an open source project to generate application white list bypasses. This tool is intended for BOTH red and blue team.
Role in this project:
Security Engineer
Contributions:110 commits, 4 PRs, 70 pushes in 4 years 1 month
Contributions summary:Chris primarily contributed to the Great SCT project by adding and modifying scripts related to generating application whitelisting bypasses. They added a new PowerShell-based payload from an external contributor, and also included modifications to the main script to accommodate encoding methods for the payloads. They also fixed code to set parameters in the CLI.
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.