Skip to content
View securitycipher's full-sized avatar

Block or report securitycipher

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
securitycipher/README.md
SecurityCipher - practical cybersecurity education
Typing headline

Hi, I'm Piyush Kumawat · I break things on purpose, then teach others how to find and fix them.
Hands-on write-ups, interactive checklists, roadmaps, and tools at securitycipher.com

Website Blog Email X

Profile views Followers Focus India

About

I am a penetration tester and Staff Product Security Engineer focused on web, API, mobile, cloud, and AI/LLM security. Day to day that means real assessments, configuration reviews, and DevSecOps work - then turning the sharp edges into public guides so more people can test the same way.

I publish at securitycipher.com: practical playbooks, interactive checklists, a penetration testing roadmap, curated security tools, CVE lookup, and bug bounty write-ups.

What I work on
Area What that looks like
Web & API AuthN/Z flaws, injection, business logic, GraphQL, IDOR/BOLA
Cloud AWS / Azure / GCP config reviews, IAM, network exposure
AI / LLM Prompt injection, RAG poisoning, agent & MCP security
Bug bounty Recon-to-report workflows, high-signal hunting notes
Teaching Roadmaps, checklists, quizzes, and field manuals

Start here

Learn

Practice & reference

Featured open source

Project Stars What it is
penetration-testing-roadmap stars Complete roadmap to become a pentester
daily-bugbounty-writeups stars Curated bug bounty write-ups to study
awsome-websecurity-checklist stars Web application security testing checklist
Bug-Bounty-Resources stars Handpicked tools, guides, and tips
vulnerable-code-snippet stars Vulnerable vs secure code examples
guide-for-burp-suite stars Beginner-friendly Burp Suite guide

All repositories

Latest from the blog

More posts

Snapshot

Followers Total stars Public repos Website

Live metrics via Shields.io (no flaky third-party stats widgets).

Toolkit

Burp Suite Nmap OWASP ZAP Docker Kubernetes AWS Azure GCP Python Bash Git Jenkins Linux Wireshark

Connect

X LinkedIn Instagram YouTube RSS Email


SecurityCipher mark

Built with care for pentesters, bug bounty hunters, and security engineers.
securitycipher.com · Services · Contact

Popular repositories Loading

  1. penetration-testing-roadmap penetration-testing-roadmap Public

    Complete Roadmap for Penetration Testing

    310 53

  2. daily-bugbounty-writeups daily-bugbounty-writeups Public

    This repository contains Bug Bounty writeups

    110 9

  3. awsome-websecurity-checklist awsome-websecurity-checklist Public

    55 9

  4. Bug-Bounty-Resources Bug-Bounty-Resources Public

    Dive into a handpicked selection of tools, guides, and tips tailored for beginners in Bug Bounty and Penetration Testing. 🐛🛡️

    Shell 42 15

  5. vulnerable-code-snippet vulnerable-code-snippet Public

    Sample Vulnerable and Secure Code Snippets for Various Vulnerabilities

    25 11

  6. awsome-security-mindmaps awsome-security-mindmaps Public

    19 2