An open API service indexing awesome lists of open source software.

https://github.com/devanshbatham/devanshbatham


https://github.com/devanshbatham/devanshbatham

Last synced: 5 months ago
JSON representation

Awesome Lists containing this project

README

          

Hi, this is [Devansh ⚡](https://x.com/0xAsm0d3us). I break things for a living and help others understand why they broke.

I've spent the nearly a decade in security, from hunting bugs, to studying DNS and supply chain weaknesses, to auditing smart contracts, and reviewing vulnerability reports as a triager at [HackerOne](https://hackerone.com).

Along the way, I've reported hundreds of vulnerabilities to 100+ companies, built some [open-source tools 🏗️](https://devansh.bearblog.dev/projects/) that people seem to find useful (over 10k+ GitHub Stars), and led large-scale penetration tests across every kind of infrastructure imaginable.

I’ve seen security from every angle - bug hunter, vulnerability researcher, triager, blockchain security auditor, open source developer, and now as Team Lead, Technical Services (Triage) at [HackerOne](https://hackerone.com). .

------

## Projects 🏗️

| Project | Description |
|---------|-------------|
| [ParamSpider](https://github.com/devanshbatham/ParamSpider) | Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing |
| [FavFreak](https://github.com/devanshbatham/FavFreak) | Making Favicon.ico based Recon Great again |
| [OpenRedireX](https://github.com/devanshbatham/OpenRedireX) | A fuzzer for detecting open redirect vulnerabilities |
| [headerpwn](https://github.com/devanshbatham/headerpwn) | Fuzzer for finding anomalies and analyzing how servers respond to different HTTP headers |
| [rayder](https://github.com/devanshbatham/rayder) | Lightweight tool for orchestrating and organizing bug hunting recon / pentesting command-line workflows |
| [CertEagle](https://github.com/devanshbatham/CertEagle) | Weaponizing Live CT logs for automated monitoring of assets |
| [DNSleuth](https://github.com/devanshbatham/DNSleuth) | Spy on the DNS queries your machine is making |
| [revit](https://github.com/devanshbatham/revit) | Command-line utility for performing reverse DNS lookups |
| [heaptruffle](https://github.com/devanshbatham/heaptruffle) | Mine URLs from browser's heap snapshot for fun and profit |
| [ip2cloud](https://github.com/devanshbatham/ip2cloud) | Check IP addresses against known cloud provider IP address ranges |
| [revwhoix](https://github.com/devanshbatham/revwhoix) | Utility for reverse WHOIS lookups using whoisxml API |
| [dnsaudit](https://github.com/devanshbatham/dnsaudit) | Command-line utility for auditing DNS configuration using Zonemaster API |
| [Quaithe](https://github.com/devanshbatham/Quaithe) | Execute multiple commands in parallel for blazing-fast performance |
| [ip2asn](https://github.com/devanshbatham/ip2asn) | Quickly map IP addresses to their respective ASN |
| [getresolvers](https://github.com/devanshbatham/getresolvers) | Utility to fetch freshly updated DNS resolvers |
| [Watson](https://github.com/devanshbatham/Watson) | Note management and search utility for your terminal |
| [realm](https://github.com/devanshbatham/realm) | Utility for recursively traversing SSL/TLS certificates for collecting DNS names |
| [getsan](https://github.com/devanshbatham/getsan) | Fetch and display DNS names from SSL/TLS cert data |

## Socials

- [X](https://x.com/0xasm0d3us)
- [LinkedIn](https://www.linkedin.com/in/devansh-batham/)
- **Email**: `devanshbatham009 [at] gmail [dot] com`