SHOWCASING MY SECURITY WORK

PROJECTS & VULNERABILITIES

ALL PROJECTS
BUG BOUNTY
PENETRATION TESTING
SECURITY RESEARCH
WEB APPS

WebX

Web App (xss.webx.infy.uk) April 2025

A powerful and visually immersive platform built to streamline the discovery, exploitation, and monitoring of Blind XSS (Cross-Site Scripting) vulnerabilities.

Impact:

All-in-one solution that combines real-time security monitoring with advanced payload management and campaign tracking.

Notable Features:

  • Dynamic dashboard with interactive 3D visualizations
  • Real-time activity logs
XSS Web Security Bug Bounty Real-time Monitoring

Xaphan

CLI Tool February 2025

A powerful command-line tool developed for automating the detection of Cross-Site Scripting (XSS) vulnerabilities in web applications.

Impact:

Streamlines the process of identifying unfiltered parameters by leveraging popular tools such as gau, waybackurls, Gxss, kxss, gf, and uro.

Notable Features:

  • Multithreaded processing capability
  • Single domain and bulk scanning
XSS CLI Tool Vulnerability Scanner Automation

AutoX

CLI Tool November 2024

A powerful Python-based automation tool designed for advanced web reconnaissance and vulnerability scanning.

Impact:

Targeting identified tech stacks and versions for precision-based assessments, significantly enhancing scanning efficiency.

Notable Features:

  • Multi-source vulnerability enrichment
  • CVE lookups via NVD
Automation Vulnerability Scanner Reconnaissance Python

Meta Data Extractor

Web App September 2024

A Flask-based web application designed to allow users to upload image files and instantly view detailed metadata associated with them.

Impact:

Extracts a wide range of metadata types, including file system information, image properties, and EXIF metadata like camera make, model, and GPS location if available.

Notable Features:

  • Support for various image formats
  • Extraction of EXIF data
Metadata Flask EXIF Python

Open Bug Bounty Contributions

Various Organizations Ongoing

Active contributor to the Open Bug Bounty platform, discovering and responsibly disclosing various web security vulnerabilities.

Impact:

Successfully identified and reported vulnerabilities that could potentially expose sensitive user data or allow unauthorized access to systems.

Notable Features:

  • XSS vulnerability identification
  • CSRF vulnerability reporting
Bug Bounty Responsible Disclosure Web Security

Bugcrowd Submissions

Various Enterprises Ongoing

Active participation in Bugcrowd's bug bounty programs, discovering and reporting security vulnerabilities in enterprise applications.

Impact:

Contributed to improving the security of various enterprise systems by identifying critical vulnerabilities before they could be exploited.

Notable Features:

  • Identification of critical security flaws
  • Detailed vulnerability documentation
Bug Bounty Enterprise Security Vulnerability Research

NucX

Web App (nucx.vercel.app) February 2025

A powerful and user-friendly Flask-based web application designed to streamline the creation of Nuclei templates for automated vulnerability scanning.

Impact:

Streamlines the creation of Nuclei templates with AI-driven automation, enhancing efficiency and accuracy in vulnerability scanning.

Notable Features:

  • AI-powered Nuclei template generation
  • Secure authentication with Firebase
AI Vulnerability Scanning Template Generation Cybersecurity
FEEDBACK FROM CLIENTS

TESTIMONIALS

Karthik's expertise in identifying security vulnerabilities saved our company from what could have been a devastating breach. His detailed reports and remediation guidance were exceptional.

Sooraj Rajesh

Freelance, Security Expert

The depth of technical knowledge Karthik brings to security assessments is remarkable. He uncovered critical issues our previous security vendors had missed for years.

Neeraj M K

Freelance, Web Developer

Working with Karthik was a game-changer for our security posture. His approach is thorough, professional, and resulted in tangible improvements to our systems.

Nikhil Sojy

Freelance, UI/UX Designer