Skip to content
View ZishanAdThandar's full-sized avatar
🌍
🔍 Hunting vulnerabilities, improving security.
🌍
🔍 Hunting vulnerabilities, improving security.

Block or report ZishanAdThandar

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
ZishanAdThandar/README.md

Zishan Ahamed Thandar


⚡ Cyberpunk Skill Badges


🧩 About Me

I am an Offensive Security Professional with 6+ years of experience in:

  • Web & API Penetration Testing
  • Active Directory Attacks & Internal Recon
  • Vulnerability Research & Exploitation
  • Bug Bounty (150+ valid findings)
  • CTFs (Top 5% TryHackMe, ex–Top 10 HTB)
  • Security Tool Development (500+ users)

Focused on high-impact vulnerability discovery, practical exploitation, and helping companies fix real security issues before attackers find them.


🧬 Core Expertise

Offensive Security

Web PentestingAPI SecurityAD AttacksPrivilege Escalation
Business Logic AttacksAuth & Access Control Exploitation

Primary Toolset

Burp SuiteNmapMetasploitNessusBloodhound
CrackMapExecImpacketHydraJohnNuclei

Operating Systems

Kali LinuxArch LinuxDebianUbuntuWindows

Programming

PythonBashPHPJavaScriptMySQLHTML/CSS


🏆 Hall of Fame Mentions

Google • Oracle • AOL • Mail.ru • XiaoMi • Zoho • NCIIPC • Shaadi.com •
GeeksForGeeks • EC-Council • PostNL • EUR.nl • Many more…


🎖 Certifications

  • CRTA – CyberWarFare Labs
  • C3SA – CyberWarFare Labs
  • Burp Suite Mastery – Peritus Training
  • Ethical Hacking Essentials – EC-Council
  • Sololearn & Codecademy – Python, Java, PHP, HTML, CSS, Git

📚 Ebooks, Notes & Checklists (Sales Section)

These products are extracted from your website and Topmate profile:


📘 Bug Bounty Web Security Checklist

A step-by-step practical workflow for Web App testing.
Link: https://topmate.io/zishanadthandar/1523473


📡 OSWP Notes eBook

Wireless security & Wi-Fi exploitation notes for OSWP learners.
Link: https://topmate.io/zishanadthandar/1729436


🛡 CRTA Red Team Notes

Concise internal red team notes for Windows & AD testing.
Link: https://topmate.io/zishanadthandar/1734113



🚀 High-Impact Security Tools (Follower Magnets)

🔹 Hacker Proxy Pro

Firefox addon for instant Burp Suite / TOR proxy switching.
➡️ https://github.com/ZishanAdThandar/HackerProxyPro


🔹 Hackify (Bash)

One-command pentest environment setup for Debian systems.
➡️ https://github.com/ZishanAdThandar/hackify


🔹 Pentester Guide (OffSec Roadmap)

Structured guide for tools, labs, certs, scripts, career path.
➡️ https://github.com/ZishanAdThandar/pentest


🔹 WebsiteDorkerPro (Python OSINT Tool)

Automated search/dork tool for reconnaissance operations.
➡️ https://github.com/ZishanAdThandar/WebsiteDorkerPro


📊 GitHub Analytics


🌐 Connect With Me


🧬 Cyberpunk Terminal Footer

Crafted in a dark terminal · Powered by neon · Built for cybersecurity.

⭐ Star & Follow to support my tools, research, and upcoming releases.

Popular repositories Loading

  1. pentest pentest Public

    Pentesting and Bug Bounty Notes, Cheetsheets and Guide for Ethical Hacker, Whitehat Pentesters and CTF Players.

    PHP 580 91

  2. hackify hackify Public

    A single script to install important Pentesting Tools and wordlists on Debian based Linux OS.

    Shell 49 6

  3. HackerProxyPro HackerProxyPro Public

    Burp Suite Proxy Toggler Lite Add-on for Mozilla Firefox.

    JavaScript 35 7

  4. WriteUps WriteUps Public

    CTF and Bug Bounty Hunting WriteUps.

    CSS 21 4

  5. WebsiteDorkerPro WebsiteDorkerPro Public

    Python 7 1

  6. hacknotes hacknotes Public

    Private Notes of Zishan Ahamed Thandar for reference

    TeX 4 2