Skip to content
View Abinav3ac's full-sized avatar
👾
Learn to break, then defend
👾
Learn to break, then defend

Block or report Abinav3ac

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
.github/profile/README.md

Rithish Abinav AC (@Abinav3ac)

Offensive Security Engineer • Security Tool Developer • Autonomous Pentesting Researcher


Who I Am

I'm an Offensive Security Engineer focused on offensive automation, autonomous vulnerability discovery, and AI-assisted penetration testing.

My work revolves around designing intelligent security agents capable of performing reconnaissance, attack-surface mapping, payload mutation, exploitation validation, and contextual vulnerability analysis against modern web applications.

Currently, I am working as a VAPT Intern at CyArt, where I contribute to the development of autonomous security agents for CyTrack, a multi-agent web penetration testing platform designed to simulate realistic attacker behavior and perform scalable security assessments.

My primary interests include:

  • Autonomous Offensive Security Systems
  • Web Application Penetration Testing
  • Vulnerability Research
  • AI & LLM Security
  • Agent-Based Security Automation
  • Red Team Tool Development
  • Attack Surface Intelligence

What I Build

Project Description Status
Agent389 Autonomous LDAP Injection Assessment Framework performing reconnaissance, payload generation, verification, exploitation validation, and reporting across web and raw LDAP surfaces. Active
Hell-Corp Enterprise-grade vulnerable application designed for realistic attack simulations, business logic testing, privilege escalation exercises, and vulnerability chaining practice. Active
Hellhound-Pentest Modular penetration testing framework integrating reconnaissance, fingerprinting, vulnerability validation, and reporting workflows. Active
Hellhound-Spider Advanced crawling and attack-surface discovery engine designed for large-scale web application enumeration and endpoint discovery. Active
CyTrack Agent Development Autonomous offensive security agents developed within CyArt's CyTrack platform for scalable VAPT operations. Active

Open Source Repositories

Agent389

Repository: https://github.com/project-hellhound-org/Agent389

Personal Repository: https://github.com/Abinav3ac/Agent389

Capabilities

  • LDAP Reconnaissance
  • Payload Mutation Engine
  • Context-Aware Testing
  • Vulnerability Verification
  • Exploit Validation
  • Risk Classification
  • Automated Reporting

Hell-Corp

Repository: https://github.com/Abinav3ac/Hell-Corp

A realistic enterprise attack-simulation platform built to emulate modern corporate environments for offensive security training and vulnerability research.

Focus Areas

  • Authentication Flaws
  • Access Control Issues
  • Business Logic Vulnerabilities
  • API Security Testing
  • Multi-Stage Attack Chains
  • Infrastructure Pivoting

Hellhound-Pentest

Repository: https://github.com/Abinav3ac/Hellhound-Pentest

Comprehensive penetration testing framework focused on automating offensive security workflows and vulnerability validation.

Modules

  • Reconnaissance
  • Fingerprinting
  • Attack Surface Mapping
  • Security Validation
  • Reporting

Hellhound-Spider

Repository: https://github.com/Abinav3ac/Hellhound-Spider

Attack-surface discovery framework designed to enumerate modern web applications efficiently and identify hidden assets.

Features

  • Recursive Crawling
  • Endpoint Discovery
  • Technology Detection
  • Sensitive File Discovery
  • Asset Enumeration

Contributions

Project Hellhound

Contributor to:

https://github.com/project-hellhound-org

Project Hellhound is a security research initiative focused on building high-performance offensive and defensive security tools.

Areas of Contribution

Surface-Auditor

Intelligent reconnaissance and attack-surface profiling engine.

Features:

  • Framework Detection
  • WAF Identification
  • Technology Fingerprinting
  • Infrastructure Mapping

WAF-Buster

Advanced payload validation and WAF assessment framework.

Features:

  • Payload Testing
  • WAF Fingerprinting
  • Evasion Validation
  • Security Rule Analysis

Transport-Auditor

Transport-layer security auditing platform.

Features:

  • SSL/TLS Analysis
  • HTTPS Enforcement Validation
  • Cookie Security Assessment
  • Security Header Analysis
  • Infrastructure Review

Experience

CyArt — VAPT Intern

Dec 2025 – Present

Working on CyTrack's autonomous offensive security platform.

Responsibilities:

  • Developing Python-based security agents
  • Building automated vulnerability assessment workflows
  • Implementing attack-surface analysis modules
  • Designing exploitation verification systems
  • Researching AI-driven penetration testing techniques

Cyber Secured India — Hardware Hacking Intern

Sep 2025 – Nov 2025

Focused on:

  • ESP32 Security
  • LoRa Communication
  • Wireless Security Concepts
  • IoT Attack Surfaces
  • Embedded System Analysis

Cyber Secured India — Cybersecurity & Digital Forensics Intern

Apr 2025 – Jun 2025

Hands-on experience with:

  • PortSwigger Labs
  • SQL Injection
  • Authentication Attacks
  • Session Management Issues
  • Digital Forensics Fundamentals

Pondicherry Cyber Crime Department — Cybersecurity Intern

Jan 2025

Worked on:

  • Cybercrime Investigation Procedures
  • Digital Evidence Handling
  • Incident Analysis
  • Law Enforcement Security Processes

Certifications

  • EC-Council Network Defense
  • EC-Council Digital Forensics
  • Cisco Ethical Hacking
  • CCEP (Red Team Leaders)
  • Hands-On Penetration Testing with Metasploit

Technical Focus

Offensive Security

  • Web Application Penetration Testing
  • Vulnerability Research
  • Exploit Validation
  • Attack Surface Mapping
  • Security Automation

Development

  • Python
  • Automation Frameworks
  • Security Tool Engineering
  • Multi-Agent Architectures

Research

  • AI Security
  • LLM Security Testing
  • Autonomous Pentesting
  • Agentic Security Systems

Current Areas of Research

  • Autonomous Pentesting Agents
  • AI-Augmented Security Operations
  • Vulnerability Discovery Automation
  • Context-Aware Exploitation
  • Agent-Based Reconnaissance Systems
  • Intelligent Payload Mutation Engines

Links

Portfolio GitHub LinkedIn TryHackMe Project Hellhound


Philosophy

The most dangerous vulnerabilities are rarely the ones scanners find.

They're the ones hidden inside application behavior, business logic, and unexpected trust relationships.

Most security conversations start with:

"I found something interesting..."

Pinned Loading

  1. Hell-Corp Hell-Corp Public

    Vuln Lab for all types of Web Vulnerablities

    HTML 1

  2. project-hellhound-org/Agent389 project-hellhound-org/Agent389 Public

    autonomous LDAP injection security toolkit designed for high-fidelity vulnerability discovery and exploitation. It implements advanced detection oracles, polymorphic bypass chains, and stateful mem…

    Python 2