Skip to content
View M3hank's full-sized avatar
🎯
Focusing
🎯
Focusing
  • India

Block or report M3hank

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
M3hank/README.md

Hey, I'm Mehank πŸ‘‹

Cybersecurity Researcher Β· Bug Bounty Hunter Β· Web App Pentester

TryHackMe


Profile Views Followers


πŸ‘¨β€πŸ’» About Me

I am a self-taught security researcher with a deep passion for web application penetration testing and bug bounty hunting. I spend most of my time hunting for vulnerabilities, engineering highly-automated recon pipelines, and continually sharpening my offensive security skills.

  • 🎯 Specialties: Broken Authentication, OWASP Top 10, Deep Probing
  • πŸ› οΈ Focus: Building robust open-source tools in Go, Python, and Bash to automate and scale recon workflows.
  • βš™οΈ Currently working on: Expanding my private automation scanner suite.

πŸ› οΈ Top Projects & Tools

Tool Language Description
🧰 ExplorerPy Python All-in-one offensive toolkit: subdomain enumeration, directory brute-forcing, and vulnerability scanning.
πŸ“Š Subdomain-Analyzer Python A tool to analyze, score, and prioritize subdomains for security reconnaissance.
🧹 umap Go High-signal URL filter for recon pipelines β€” intelligently deduplicates and strips static noise from URL lists to speed up active scanning.
πŸ” FavHunt Python Fast favicon-based asset mapping and technology fingerprinting tool.
πŸ“‘ SubSentry Python Subdomain enumeration and continuous monitoring tool that notifies you via Discord.
🌐 google-dorker HTML/JS Google Dorking tool for authorized security recon β€” craft and launch precision dork queries easily.

πŸ’» Tech Stack & Tools

Languages: Bash Go Python

Offensive Tools: Burp Suite Nuclei Kali Linux

Pinned Loading

  1. FavHunt FavHunt Public

    Fast favicon-based asset mapping and technology fingerprinting tool.

    Python

  2. ExplorerPy ExplorerPy Public

    ExplorerPy is a scanning-toolkit . It can perform subdomain enumeration, directory brute-forcing, and port scanning.

    Python 10 3

  3. SubSentry SubSentry Public

    Continuously watch your targets for new subdomains and get notified via Discord.

    Python 2

  4. umap umap Public

    umap:- UrlMap is an advanced URL filtering tool written in Go, that intelligently filters out uninteresting urls.

    Go 3 1

  5. Subdomain-Analyzer Subdomain-Analyzer Public

    A tool to analyze, score, and prioritize subdomains for security reconnaissance.

    Python

  6. DorkSearcher DorkSearcher Public

    DorkSearcher is a lightweight Python script that scans local GitHub repositories and JavaScript files for sensitive information.

    Python