Skip to content
View iamshafayat's full-sized avatar
⚠️
eat.sleep.hack.repeat();
⚠️
eat.sleep.hack.repeat();

Highlights

  • Pro

Organizations

@M4SQUANTA

Block or report iamshafayat

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
iamshafayat/README.md

About Me

I am a Security Researcher focused on protecting organizations through offensive security, penetration testing, and bug hunting. My work involves identifying vulnerabilities and mitigating security risks before they can be exploited. I have a proven track record of securing digital landscapes by discovering and reporting vulnerabilities for numerous organizations, ensuring their assets remain protected against evolving threats.

Driven by a proactive approach to security, I specialize in simulating real-world attacks to strengthen defenses and maintain strict adherence to compliance and privacy standards. My dedication to the field is highlighted by my research and contributions to the security community, including the discovery of CVE-2025-70849. I am committed to delivering effective security solutions that safeguard businesses and fortify their overall security posture.


Core Focus

Offensive Security Bug Hunting Penetration Testing Web App Security API Security OSINT


Skills & Arsenal

Offensive Security Tools

Burp Suite Metasploit Nmap Wireshark SQLMap Gobuster Hydra Nikto

Operating Systems

Kali Linux Parrot OS Windows

Domains

Web App Security OWASP Top 10 Network Security OSINT Penetration Testing VAPT API Security

GitHub Insights

GitHub Stats GitHub Streak



Top Languages GitHub Summary



Profile Details



GitHub Activity Graph

github contribution grid snake animation

Connect With Me

Pinned Loading

  1. JSpider JSpider Public

    JSpider is a smart crawler for hidden endpoints. It crawls and extracts hidden API endpoints and URLs from JavaScript files and HTML source code - all directly in your browser.

    JavaScript 13 6

  2. ReconPro ReconPro Public

    ReconPro is a specialized Google dorking tool designed for cybersecurity professionals and bug bounty hunters.

    JavaScript 47 4

  3. WordlistsAllTheThings WordlistsAllTheThings Public

    Curated wordlists & payloads for bug bounty hunting and web application penetration testing. Covers XSS, SQLi, LFI, SSRF, SSTI, 403 bypass, admin panels, sensitive files, DNS, API fuzzing & more.