Skip to content
View bhattmanthan's full-sized avatar

Block or report bhattmanthan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
bhattmanthan/README.md

Typing SVG


$ whoami

$ nmap -sC -sV -p- manthan.bhatt

Starting Nmap 7.94 ( https://nmap.org )
Nmap scan report for manthan.bhatt (AntisocialStare)
Host is up (0.0001s latency).

PORT      STATE     SERVICE         VERSION
2028/tcp  open      education       B.Tech CSE @ Nirma University
1337/tcp  open      offensive-sec   Penetration Testing | Red Teaming | Post-Exploitation
2600/tcp  open      ctf-rank        TryHackMe top 5% global | AWS CTF 125th global / 35th regional
8080/tcp  filtered  bug-bounty      Bugcrowd active | HackWithIndiaa VDP (P2/P3 certified)

Host script results:
|_motd: I break things to understand them — then document exactly why they broke.
|_currently-running:
|   [+] building   L.E.A.P. v1.1.0 — Linux post-exploitation framework
|   [+] building   Homelab Dashboard (private) — SOC dashboard for a vuln-app fleet
|   [+] active     RegSentinel (private) — security layer lead, SuRaksha Hackathon
|   [~] testing    ExpenseFlow — OWASP Top 10 -> malware analysis -> C2 capture chain

Nmap done: 1 IP address (1 host up) scanned in 0.42 seconds

🛠️ Tech Stack

Languages & Scripting

Python Bash C C++

Security Tooling

Nmap BurpSuite Metasploit Wireshark ffuf Netcat Sliver Wazuh

Backend & Infra

Node.js Express FastAPI PostgreSQL MongoDB Docker Git Tailscale


📂 Featured Projects

Project What it does Stack
L.E.A.P. Modular Bash post-exploitation framework — enumeration, privesc vectoring, container escape detection, in-memory C2 exfiltration Bash
RegSentinel (private) Agentic regulatory compliance system for SuRaksha Hackathon (Canara Bank) — sole security-layer lead: fingerprinting, hash-chained audit log, scoped JWTs, prompt-injection defenses Next.js, FastAPI, LangGraph, PostgreSQL + pgvector
Homelab Dashboard (private) Self-hosted SOC dashboard tracking a vulnerable-app fleet, test-coverage logs, and C2 session history, with a Vue directive enforcing sanitization before public display Node/Express, MySQL, MongoDB, Vue.js
ExpenseFlow Intentionally vulnerable app chaining OWASP Top 10 → malware analysis → C2 traffic capture, built for EHVA coursework (built, testing in progress) Node.js, Express, PostgreSQL

🏆 CTF & Achievements

AWS Skills to Job CTF (SANS) — Ranked 125th globally / 35th regional · 20/37 challenges solved (Web Offensive, Forensics, Mixed Offensive) · Awarded 6-month SANS SkillQuest access

TryHackMe — Top 5% globally · 14 badges · Jr. Penetration Tester path complete (Metasploit, Burp Suite, network exploitation, Linux privesc)

Bug Bounty / VDP — Active on Bugcrowd; certified P2/P3 finding through the HackWithIndiaa Vulnerability Disclosure Program


Skills

Domains         Penetration Testing · Web App Security · Post-Exploitation
                Privilege Escalation · Network Enumeration · Container Security
Web Vulns       SQLi · XSS · IDOR · SSRF · CORS Misconfig · OWASP Top 10
Recon           subfinder · amass · httpx · katana · ffuf

📊 GitHub Stats

GitHub Streak


Currently

  • Testing ExpenseFlow's full attack chain end-to-end before EHVA submission
  • Building out RegSentinel's audit-log and prompt-injection defense layers
  • Expanding the homelab dashboard's telemetry modules
  • Preparing for security engineering internship interviews

Pinned Loading

  1. LEAP LEAP Public

    A modular Bash framework for system reconnaissance, container escape detection, and simulating the post-exploitation lifecycle.

    Shell

  2. homelab homelab Public

    A hands-on homelab I'm building to practice offensive security end-to-end, from web app attacks and AD exploitation to running a full kill chain with a C2 server, while learning what those attacks …

  3. Signal_Explorer Signal_Explorer Public

    JavaScript

  4. bhattmanthan.github.io bhattmanthan.github.io Public

    JavaScript