name: Nikhil Nagpure
location: India
education: B.Tech CSE (Cybersecurity & Digital Forensics), VIT Bhopal (2021-2025), CGPA 8.33
current_roles:
- Founder @ Shadownik
- Founding SWE @ Pawan Technologies
focus_areas:
- Offensive Security & Penetration Testing
- API Security Engineering
- Secure Full-Stack Development
- Hardware + Wireless Pentesting
- Open Source Security Tools
currently_building:
- ApiSecPlatform - Enterprise API Security Testing
- Portable Wireless Pentesting Toolkit - ESP32-based
- 15+ Open Source Security ToolsFounder - Shadownik (Jun 2024 - Present)
- Built and scaled a multi-service tech venture across cybersecurity, full-stack engineering, cloud deployment, and digital operations.
- Delivered secure production systems and offensive security assessments for real-world clients.
- Leading product development for ApiSecPlatform and multiple automation-focused services.
- Developing responsive production web apps and scalable backend APIs.
- Building integrations, database workflows, and cloud-ready deployment pipelines.
- Performing vulnerability analysis, threat modeling, and practical blue-team/offensive workflows under mentor guidance.
Founder - Shadownik Social Services (Jul 2025 - Present)
- Building a technology-powered social impact platform for outreach, volunteer coordination, and community support.
I've built 15+ open-source security tools for authorized penetration testing and educational purposes. All tools include comprehensive documentation, MIT licenses, and legal disclaimers.
| Tool | Description | Language |
|---|---|---|
| comprehensive-pentest-framework | All-in-one penetration testing framework with 22+ modules | Python |
| async-port-scanner | High-performance async TCP port scanner with CIDR support | Python |
| subdomain-enumerator | DNS-based subdomain enumeration tool | Python |
| http-security-checker | HTTP security header analyzer and TLS checker | Python |
| ssh-auditor | SSH security auditing and banner grabbing | Python |
| ssh-hardening-checker | SSH configuration hardening analyzer | Python |
| web-hardening-checker | Web security hardening with remediation guidance | Python |
| ftp-auditor | FTP security auditing and anonymous login detection | Python |
| password-auditor | Password strength analyzer and hash auditor | Python |
| auth-log-analyzer | Authentication log analysis for brute force detection | Python |
| pcap-signature-analyzer | Network traffic PCAP analysis and forensics | Python |
| pdf-weak-crack | PDF password cracking for security audits | Python |
| pdf-protect | PDF encryption and password protection | Python |
| lab-reverse-shell | Educational reverse shell for lab environments | Python |
| exfil-simulator | Data exfiltration simulation for security training | Python |
All tools are for authorized testing only. See individual READMEs for legal disclaimers.
| Project | Description | Stack |
|---|---|---|
| ApiSecPlatform | Enterprise API security platform for automated testing, threat insights, and OWASP-aligned checks. | Python, Next.js, Security Tooling |
| Portable Wireless Pentesting Toolkit | ESP32-based field pentesting device for wireless assessments and protocol testing. | ESP32, C/C++, Python, Rust |
| Open-Source SIEM Platform | Real-time SIEM pipeline with threat analytics and dashboarding. | Python, Next.js, scikit-learn |
| Offensive Scanner | Multithreaded network recon scanner with extensible profiles. | Java, Maven, YAML |
| Decentralized Cloud Storage | Blockchain-backed storage with Ethereum + IPFS. | Solidity, Hardhat, IPFS |
| Social Sync Pilot | SaaS social media automation and analytics platform. | Vite, Supabase, PostgreSQL |
| Photo Organizer | AI-powered photo organizer using facial recognition (⭐8). | Python, Tkinter, GPU |
Cybersecurity: Penetration Testing, Red Teaming, Threat Modeling, SIEM, Incident Response, OWASP, Network/Wireless Security
Languages: Python, Java, C/C++, JavaScript, TypeScript, Rust, SQL, Solidity
Web/Backend: Next.js, React, Node.js, Express.js, REST APIs, GraphQL, Tauri
Data/Infra: PostgreSQL, Supabase, MongoDB, Docker, Linux, Nginx, Terraform, Ansible, CI/CD
Security Tools: Burp Suite, Wireshark, Metasploit, Nmap, Nessus, Kali Linux, Wazuh, Hashcat
- CEH (EC-Council)
- CNSP (The SecOps Group)
- Practical Ethical Hacking (TCM Security)
- Top 12% on TryHackMe
- Top 600 on BugBase
- Ranked 36th in CyVIT CTF (VIT Bhopal)
- Patent filed: A Self-Cleaning Glasses Case System (Application No: 202421032123)
- LinkedIn: linkedin.com/in/nikhilnagpure24
- GitHub: github.com/5h4d0wn1k
- Portfolio: Cynik operator
- Email: nikhilnagpure203@gmail.com


