CyberA1eX

CyberA1eX

Pentester  |  Web Dev  |  AI Dev

Breaking things securely, building them better.

About Me

I'm CyberA1eX — an aspiring penetration tester, web developer, and AI developer with a passion for understanding how systems break, and how to build them so they don't.

Currently working towards OSCP while building full-stack web applications, security tools, and AI-integrated projects. My work sits at the intersection of offensive security, software engineering, and automation.

Top 1% globally on TryHackMe — ranked against tens of thousands of active practitioners. I don't just read about attack techniques — I build the environments, run the attacks, and write the reports.

TryHackMe CyberA1eX
Top 1%TryHackMe
7+Projects
5+Certs
OSCPIn Progress

Credentials

Verified certifications and achievements — view all on Credly →

Services

🔐

Security

  • Web application penetration testing
  • Vulnerability scanning & reporting
  • OWASP Top 10 assessments
  • CTF challenge writeups & walkthroughs
  • Security tool development
💻

Web Development

  • Secure full-stack web applications
  • Responsive, modern front-ends
  • RESTful API design & implementation
  • Security-first architecture
  • Performance optimisation
🤖

AI / Automation

  • AI chatbot integration for websites
  • Python automation scripts
  • Pentesting workflow automation
  • Claude / OpenAI API integrations
  • Custom tooling & pipelines

Projects

Web App Vulnerability Scanner

Security

Python-based scanner that automatically detects XSS and SQL injection vulnerabilities in web applications. Generates structured reports with severity ratings and remediation guidance.

PythonRequestsBeautifulSoupOWASP
View on GitHub →

Secure Web Application

Web Dev

Full-stack web application built with OWASP Top 10 compliance from the ground up. Demonstrates secure authentication, input validation, output encoding, and access control best practices.

HTML/CSS/JSPythonFlaskOWASP
View on GitHub →

AI Chatbot Widget

AI / Automation

Rule-based chatbot widget for website integration. Zero APIs, zero dependencies — one script tag embed. Covers services, projects, skills, and contact questions with keyword-matched responses.

JavaScriptCSSRule Engine
View on GitHub →

Pentesting Automation Toolkit

Security

Modular Python toolkit for automating common pentesting tasks: port scanning, subdomain enumeration, and log parsing. Designed for efficiency during recon and initial enumeration phases.

PythonNmapDNSRegex
View on GitHub →

GhostFile

Security

Browser-based secure file encryption tool using AES-GCM. Encrypts files client-side with auto-expiring download links and a split-key system — zero single-point-of-compromise sharing.

JavaScriptWeb Crypto APIAES-GCMHTML/CSS
View on GitHub →

dufo.save

Security

Bash script that automates Linux privilege escalation reconnaissance. Collects sudo rules, SUID/SGID binaries, cron jobs, network listeners, and sensitive files into a timestamped folder.

BashLinuxPrivescAutomation
View on GitHub →

Web Dev Portfolio Showcase

Web Dev

A curated collection of web development projects with screenshots, live demos, tech stack breakdowns, and code quality notes. Documents the journey from concept to deployed product.

HTMLCSSJavaScriptVarious Stacks
View on GitHub →

Web Dev Showcase

A preview of what gets built — from login flows to security dashboards.

secure-app.local/login

Secure Login Flow

OWASP-aligned authentication — bcrypt, session management, CSRF protection, rate limiting.

FlaskPythonOWASP
vuln-scanner.local/results
Scan Results ● Complete
2Critical
4High
7Medium
12Low
CRITSQL Injection — /login
HIGHReflected XSS — /search
MEDMissing CSRF token

Vulnerability Scanner UI

Scan results dashboard — severity-rated findings with CVSS scores and remediation notes.

PythonHTML/CSSCVSS
b-star51.github.io/websitebuilder
Portfolio Site
B-star51 Assistant ● Online
Hi! 👋 Ask me about projects or services.
What do you do?
Security, Web Dev & AI/Automation!
Type a message…

AI Chatbot Widget

Drop-in chatbot — zero dependencies, one script tag, live on this portfolio.

JSCSSRule Engine

Skills

Security & Pentesting

Burp Suite Nmap Metasploit Nikto Gobuster Hydra Nuclei Hashcat Wireshark OWASP Top 10 XSS / SQLi / XXE / SSTI Privilege Escalation Active Directory

Programming & Web

Python JavaScript HTML / CSS Bash / Shell PowerShell PHP SQL REST APIs Flask

OS & Tools

Linux (Kali / Ubuntu) Windows Git / GitHub VS Code TryHackMe VirtualBox / VMware

AI & Automation

Claude API OpenAI API NVIDIA NIM API Prompt Engineering Python Automation Script Development

Contact

Interested in working together or have a security question? Reach out.