Skip to content
View Christbowel's full-sized avatar
💭
Attempting to explain to my mom that "hacking" is my actual job
💭
Attempting to explain to my mom that "hacking" is my actual job

Block or report Christbowel

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
christbowel/README.md

Typing SVG


GitHub Website HackerOne Bugcrowd

TryHackMe Root-Me Profile Views


whoami

┌──(christbowel㉿kali)-[~]
└─$ cat about.txt

  Name     : Christ Bowel Bouchuen
  Age      : xx
  Location : Darmstadt, Germany
  Uni      : TU Darmstadt — B.Sc. Computer Science
  Focus    : Offensive Security | Vulnerability Research | Bug Bounty

  CVEs Discovered  : 7
  Hall of Fames    : 5 (🇺🇸 State of California · 🇩🇪 Deutsche Telekom · 🌍 Mars VDP · 🇦🇺 RMIT · 🇺🇸 BIA)
  CTF Best Rank    : Top 15/454 — Bugcrowd Black Hat USA CTF 2024 && Top 1 - USD Hacking Night
  Status           : Software Security @ PAYONE GmbH

🔴 CVEs Discovered

CVE-2026-49143 - browserstack-runner ≤ 0.9.5

Severity: CRITICAL (CVSS 8.7)

Unauthenticated RCE → VM Sandbox Escape

The /_log HTTP handler passes unauthenticated user input to vm.runInNewContext() and eval(). A host-context Function reference (via util.format) can be abused to escape the Node.js sandbox, resulting in full remote code execution on the host.

Impact: RCE · Sandbox Escape · CWE-94

NVD Reference


CVE-2024-29643 - Croogo CMS v3.0.2

Severity: CRITICAL

Host Header Injection → RCE

A Host Header Injection vulnerability in the feed.rss component allows arbitrary PHP code injection through a malicious HTTP Host header, leading to full system compromise.

Impact: RCE · Host Header Injection

NVD Reference


CVE-2026-39911 - Hashgraph Guardian ≤ 3.5.0

Severity: HIGH

Authenticated RCE → Unsandboxed JavaScript Execution

The Custom Logic policy block worker passes user-supplied JavaScript directly to the Node.js Function() constructor without isolation. An authenticated Standard Registry user can read container files, leak sensitive environment credentials (RSA keys, JWT signing keys), and forge authentication tokens for arbitrary users.

Impact: RCE · Code Injection · Token Forgery

NVD Reference


CVE-2026-49144 - browserstack-runner ≤ 0.9.5

Severity: HIGH (CVSS 7.1)

Unauthenticated Arbitrary File Read → Path Traversal

The _default HTTP handler resolves paths using path.join(process.cwd(), uri) without validating that the resulting path remains within the application root. Combined with binding on 0.0.0.0 and the absence of authentication, this allows arbitrary file disclosure from the host.

Impact: Path Traversal · CWE-22

NVD Reference


CVE-2026-45248 - Hedera Guardian ≤ 3.5.1

Severity: MEDIUM (CVSS 6.9)

Authentication Bypass → Sensitive Data Exposure

The GET /api/v1/demo/registered-users endpoint lacks authentication controls, allowing unauthenticated attackers to retrieve sensitive user information.

Impact: Missing Authentication · CWE-306 · Information Disclosure

NVD Reference


CVE-2026-25050 - Vendure

Severity: MEDIUM

Authentication Timing Attack → Username Enumeration

A timing side-channel vulnerability in the authentication workflow enables remote username enumeration.

Impact: Timing Attack · Username Enumeration

NVD Reference


🔒 Reserved CVE

CVE-2026-22674 - Hashgraph Guardian
Coordinated disclosure in progress. Public disclosure scheduled for August 2026.


🔵 CVE Contributions & Community Work

CVE Target Contribution
CVE-2023-25136 OpenSSH 9.1 Python mass scanner + exploit framework — widely adopted by the community
CVE-2024-25600 WordPress Bricks Builder Official Nuclei template (2 versions) merged by ProjectDiscovery

🏆 Hall of Fame

Organization Finding Year
🏛️ State of California · via Bugcrowd SQL Injection → RCE → NT AUTHORITY\SYSTEM 2024
🏛️ Bureau of Indian Affairs (BIA) Multiple critical vulnerabilities on federal systems 2023
🌍 Mars Vulnerability Disclosure Program IDOR + Client Information Disclosure + Client-Side Validation Bypass 2025
🎓 RMIT University · Australia Responsible disclosure 2023

⚒️ Projects

Red Team Input Monitoring Framework · Go

Stealthy input surveillance tool for security research. Captures keystrokes, clipboard data, screenshots, and system info — exfiltrates securely via Telegram bot.

Go

RSA Exploitation Framework · Python

Analyzes and exploits weak RSA keys via factorization attacks and weak key detection. Built for CTFs and real-world pentest scenarios.

Python

🛡️ RedTeamer

Offensive Simulation Toolkit

Payload generators, privilege escalation helpers, persistence techniques — full adversary simulation framework.

Python Bash

🔵 BlueTeamer

Defensive Analysis Companion

Log analysis, anomaly detection, and automated detection rule generation. The defensive counterpart to RedTeamer.

Python


🧰 Skills & Arsenal

Languages

Python Go C Java Bash SQL

Tools

BurpSuite Metasploit Nmap Nuclei Ghidra Wireshark Linux Docker

Domains

Web Security · API Penetration Testing · Active Directory · Network Security Exploit Development · Reverse Engineering · Cryptanalysis · Bug Bounty · CTFs


📜 Certifications

Certification Issuer Date
usd Hacking Night – Ethical Hacking Skills usd AG Nov. 2025
Certified AppSec Practitioner (CAP) The SecOps Group Feb. 2023
API Security Penetration Testing APIsec University Jan. 2024
CompTIA PenTest+ Learning Path TryHackMe Apr. 2023
AZ-500: Securing Data & Applications Microsoft Apr. 2023

🥇 1st Place — usd Hacking Night CTF, Nov. 2025


📊 Stats



GitHub Streak


📈 Activity Graph

Activity Graph



♟️ Chess move of the day

Chess.com

Schach Club · TU Darmstadt ♟️


💬 Quote

Readme Quotes


🌍 Langues

🇫🇷 Français 🇩🇪 Deutsch 🇬🇧 English
Langue maternelle C1 Fließend Fluent

"Security is not a product, but a process."

Popular repositories Loading

  1. CVE-2023-25136 CVE-2023-25136 Public

    OpenSSH 9.1 vulnerability mass scan and exploit

    Python 107 21

  2. Red-Teamer Red-Teamer Public

    Red Teaming tools and techniques

    57 12

  3. CVE-2024-25600_Nuclei-Template CVE-2024-25600_Nuclei-Template Public

    Nuclei template and information about the POC for CVE-2024-25600

    31 7

  4. Blue-Teamer Blue-Teamer Public

    Blue teamer tools and techniques

    10 4

  5. CipherBuster CipherBuster Public

    Outil d'analyse et d'exploitation des vulnérabilités des implémentations RSA, avec techniques d'attaque automatisées et avancées

    Python 5 4

  6. OSDC OSDC Public

    Automated patch intelligence - tracks what gets fixed in open source daily, extracts vulnerability patterns, and detects recurring antipatterns across languages and ecosystems. Powered by GitHub Ad…

    Jinja 4 1