Namaste, I'm

KABIR

Security Engineer

Specializing in web application security, penetration testing, and building secure development practices. Founder of TheCyberHUB community.

hello friend

01
10
00
11
01
10

Scroll to explore

Get To Know More

whoami

Working on Opensource projects and community building, I create spaces where people can contribute and begin their journey in Opensource and Cybersecurity. The community's primary goal is to help newcomers get started in these fields while supporting experienced practitioners in deepening their involvement with Opensource communities.

My mission for the coming months is to scale our contributions to Opensource initiatives and develop resources that make cybersecurity knowledge more accessible to everyone interested in joining this critical field.

3+ Years Experience
150k+ Community Members
10k+ Monthly Visitors

Experience

3+ years in Cyber Security with expertise in web application security, penetration testing, and security automation.

Community

Founder of TheCyberHUB, building a vibrant community that helps newcomers and experts share knowledge and resources.

Mission

Dedicated to making cybersecurity knowledge accessible and fostering a culture of secure development practices.

Explore My

history

LeadSquared

Security Engineer Bengaluru | Sept 2023 – Present
  • Led comprehensive offensive security assessments identifying critical vulnerabilities across web applications and APIs, driving remediation across SSDLC.
  • Conducted extensive penetration testing (white-box/black-box) on critical modules, APIs, and admin panels using MITRE ATT&CK framework.
  • Architected and implemented DevSecOps pipeline integration with DAST, SAST, SonarQube, and Snyk in CI/CD workflows (GitHub Actions, TeamCity).
  • Built comprehensive internal security automation platform with web-based UI and CLI tools for passive/active monitoring (port scanning, TLS validation, subdomain takeover detection, certificate expiry monitoring, secrets exposure detection, vulnerability analysis, API endpoint enumeration) reducing manual effort by 60%.
  • Performed security code reviews across multiple codebases and designed threat modeling sessions, mentoring 20+ developers on secure coding practices.
  • Managed enterprise cloud security tools (CloudSek, Falkon, Akamai WAF) and enhanced SIEM detection rules, reducing incidents by 40% and improving response times.
  • Executed red team exercises simulating advanced persistent threats in cloud and containerized environments, testing organizational resilience.
Technologies:
Burp Suite OWASP ZAP SonarQube Snyk Akamai WAF CloudSek Falkon DAST/SAST Python GitHub Actions TeamCity

TheCyberHUB

Founder & Community Lead Remote | Aug 2020 – Present
  • Founded and scaled cybersecurity community platform serving 150k+ members across social media with 10k+ monthly website visitors.
  • Organized CTF competitions, security workshops, mock interviews, and resume reviews, fostering professional development in cybersecurity.
  • Established internship programs connecting students with industry opportunities, achieving high job placement rates.
  • Implemented DevSecOps practices, security labs, and penetration testing infrastructure for hands-on learning experiences.
  • Developed comprehensive cybersecurity educational content including source code review tutorials and practical security resources.
Technologies:
MERN Stack React.js Node.js MongoDB DevSecOps Penetration Testing Security Labs CTF Development
Explore My

Technical Skills

Application Security

Web Application Penetration Testing
API Security Assessment
OWASP Top 10 Vulnerabilities
Secure Code Review & Threat Modeling
Red Team Operations

Security Tools

Burp Suite (Pro & Enterprise)
OWASP ZAP & Nmap
SonarQube & Snyk
CloudSek & CrowdStrike Falcon
Akamai WAF & Splunk

DevSecOps & Automation

SAST/DAST/SCA Integration
CI/CD Security (GitHub Actions, TeamCity)
Custom Security Tooling
Docker & Kubernetes
Security Automation & Scripting

Programming & Scripting

Python (Security Automation)
Go & JavaScript
Bash & Shell Scripting
Custom Exploit Development
RESTful API Development

Mobile Security

Android Security Testing
MobSF & QARK Analysis
ADB Tools & APK Analysis
OWASP Mobile Top 10
Static & Dynamic Analysis

Cloud & Infrastructure

AWS & Cloudflare
Container Security (Docker, K8s)
Network Penetration Testing
Infrastructure as Code
Vulnerability Assessment

Web Technologies

MERN Stack
React.js & Next.js
Node.js & Express.js
Flask & FastAPI
MongoDB & Databases
Browse My Recent

Projects

Explore my portfolio of security-focused projects, from community platforms to specialized security tools and vulnerable environments for hands-on learning.

VulneraScan

VulneraScan

A cutting-edge web-based vulnerability scanner designed to identify and analyze potential security vulnerabilities within web applications. Its advanced scanning techniques ensure comprehensive coverage across various attack vectors.

Python Flask MongoDB NextJS
VulneraSite

VulneraSite

A completely vulnerable Flask application built for testing and enhancing security skills. This project provides a hands-on platform for security enthusiasts to practice identifying and exploiting vulnerabilities in a controlled setting.

Python Flask SQL DevSecOps
ReconX

ReconX

A command-line interface (CLI) utility designed for reconnaissance and vulnerability scanning.

A command-line interface (CLI) utility designed for reconnaissance and vulnerability scanning, delivering results in an organized and sequential format. Features include port scanning, service enumeration, and automated reporting.

Bash Python OpenSource Docker
Portscout

Portscout

A Python-based Fast Port Scanner with flexible output formats.

Delivered a Python-based Fast Port Scanner with flexible output formats, displaying open ports, IP:port pairs, and host:IP details. Enabled users to save results to files, optimizing analysis and facilitating cybersecurity assessments. Features multi-threading for high-speed scanning of large networks.

Python Docker CLI
CVE Lab

CVE-2022-3552 Lab

A dedicated cybersecurity lab for Box Billing vulnerabilities.

Created a dedicated cybersecurity lab to analyze and exploit vulnerabilities in Box Billing versions up to 4.22.1.5, enhancing security awareness and mitigation capabilities. Includes detailed documentation, proof-of-concept exploits, and remediation guidelines for security researchers and developers.

VulnerableLab Exploit Python Docker
Explore My

Achievements

TheCyberHUB Community

150k+ Community Members

Successfully built and nurtured a thriving cybersecurity community, helping thousands of newcomers start their journey in the field.

TryHackMe Ranking

Top 12% Global Ranking

Ranked 88,446 out of 1 million users on TryHackMe, demonstrating practical cybersecurity skills and problem-solving abilities.

GitHub Recognition

150+ Repository Stars

Created valuable open-source security tools and resources recognized by the developer community with over 150 stars on GitHub.

Hacktoberfest Maintainer

2022 Open Source Event

Served as a project maintainer for Hacktoberfest, mentoring contributors and fostering participation in open-source security projects.

Additional Impact Metrics

10k+ Monthly Website Visitors
25+ Security Resources Created
12+ CTF Events Organized
5+ Vulnerability Research Reports
Get in Touch

Contact Me

I'm always open to discussing new projects, opportunities in cybersecurity, or potential collaborations. Feel free to reach out through any of the channels below.

Email

kabir00x23@gmail.com

For project inquiries and general questions

Send Email

LinkedIn

linkedin.com/in/0xk4b1r

For professional networking and opportunities

Connect

GitHub

github.com/0xk4b1r

For collaboration on open-source projects

Follow

Interested in working together? Let's connect! I'm currently available for freelance projects and security consultations.