Skip to content
View thecyberneh's full-sized avatar

Block or report thecyberneh

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
thecyberneh/README.md

Hi There πŸ‘‹

Myself Neh Patel, an Application Security Engineer with strong expertise in Application Security (Offensive), Product Security, Penetration Testing, Vulnerability Assessment, Source Code Review, SAST, and DAST. Actively working at Security Innovation as an Application Security Engineer and a member of the Synack Red Team (SRT), my responsibilities include Web, API, Mobile, and Network Penetration Testing, Red Teaming, Attack Surface Management, and Security Automation.

I possess deep knowledge of Application Security processes, Secure SDLC, Secure Coding Principles, Cloud Security (AWS, Azure, GCP), and Security Best Practices. My work also extends to Security Architecture, Professional Penetration Testing Reporting, and responsible disclosure of vulnerabilities.

I’ve been recognized globally for my research and contributions:

  • Microsoft MSRC’s Most Valuable Security Researcher (Global Rank 23, 2022 & 2023)
  • Featured in Microsoft, Apple, and Google Hall of Fame for critical vulnerability discoveries
  • Awarded $18,000 bounty by Microsoft for high-severity findings
  • CTF Champion at Null Ahmedabad PWN Party

I also build security tools like Scriptkiddi3, a recon and vulnerability detection automation framework, and contribute to the security community as Cybersecurity Lead at GDSC PDPU.

πŸš€ About Me

Hacker | Security Engineer | Synack Red Team | Offensive Security | Application Security | Cloud Security

"Breaking things ethically to build a safer digital world."

πŸ”— Links

portfolio linkedin twitter GMAIL

πŸ›  Some of My Top Skills Are:

  • Web Application Penetration Testing
  • Mobile Application Penetration Testing
  • API Penetration Testing
  • Network Penetration Testing
  • Red Teaming & Attack Surface Management
  • Secure Automation & Tool Development (Shell, Python, Go)
  • Cloud Security (AWS, Azure, GCP)
  • Vulnerability Assessment & Reporting
  • Reconnaissance Automation (Scriptkiddi3)
  • Responsible Disclosure & Bug Bounty Research
  • DevSecOps
  • SAST/DAST

🌍 Open Source Contributions

Introducing SCRIPTKIDDI3, a powerful recon and initial vulnerability detection tool crafted specifically for Bug Bounty Hunters.
This tool, built using a variety of open-source technologies and shell scripting, empowers users to swiftly execute scans on target domains and identify potential vulnerabilities.

πŸ“« Connect with me: Email

Pinned Loading

  1. scriptkiddi3 scriptkiddi3 Public

    Streamline your recon and vulnerability detection process with SCRIPTKIDDI3, A recon and initial vulnerability detection tool built using shell script and open source tools.

    Shell 152 26

  2. inside403 inside403 Public

    Inside403 is a powerful and versatile web security testing tool designed to assess the robustness of web pages and directories against 403 Forbidden errors. This tool is specifically crafted for se…

    Shell 31 9