Skip to content
View maruftak's full-sized avatar
🎯
Focusing
🎯
Focusing

Highlights

  • Pro

Block or report maruftak

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
maruftak/README.md

About Me

class Maruf:
    role        = "Penetration Tester | Ethical Hacker | SOC Analyst"
    focus       = ["Web App Pentesting", "Red Team", "Blue Team / SOC", "OSINT"]
    also_builds = ["Web Applications"]
    code        = ["Python", "Bash", "JavaScript", "SQL"]
    ask_me      = ["web exploitation", "threat detection", "incident response"]
    learning    = "Advanced exploit dev & cloud security"
    motto       = "Think like an attacker, defend like a guardian."

🛠️ Arsenal & Stack

🔴 Offensive / Pentest

Kali Burp Suite Metasploit Nmap Wireshark OWASP

🔵 Defensive / SOC

Splunk ELK Wazuh MITRE ATT&CK

💻 Dev & Languages

Python Bash JavaScript React Node.js Linux Docker Git


🚀 Featured Projects

🛡️ SomShield

Compliance-first MDR / SOC-as-a-service platform — AI alert triage, MITRE ATT&CK mapping, NCA compliance automation, multi-tenant Postgres RLS, trilingual (EN/SO/AR) UI.

Next.js · Python · AI · SOC

🛰️ reconsentry

Continuous attack-surface change monitor — alerts the moment a new subdomain, host, endpoint, or technology appears on authorized targets. Single Go binary.

Go · recon · osint · attack-surface

Advanced IoT camera honeypot with a real-time dashboard and live threat intelligence.

Python · honeypot · iot · threat-intel

Turns raw IoT-honeypot capture data into structured threat intel — classifies botnet families, maps CVE exploits, generates geo attacker reports.

Python · botnet · log-analysis · cve

Graylog SIEM deployment — real-time log ingestion, 5 security dashboards, automated alerting, and PDF reports via Telegram.

Python · siem · graylog · soc

Multilingual Turkey tour-booking platform — customizable multi-city packages, agency flows, and EN/AR/BN i18n. Full-stack, E2E-tested.

Next.js · TypeScript · i18n


📊 GitHub Metrics

metrics
streak

⚡ Recent Activity

  1. 🎉 Merged PR #49 in maruftak/reconsentry
  2. 💪 Opened PR #49 in maruftak/reconsentry
  3. 🎉 Merged PR #48 in maruftak/reconsentry
  4. 💪 Opened PR #48 in maruftak/reconsentry
  5. 💪 Opened PR #47 in maruftak/reconsentry
  6. 🎉 Merged PR #46 in maruftak/reconsentry

🐍 Contribution Snake

snake animation

🤝 Connect With Me

footer

⭐️ From maruftak

Popular repositories Loading

  1. HoneyPot-FYP HoneyPot-FYP Public

    Advanced IoT camera honeypot with real-time dashboard and threat intelligence.

    Python 1

  2. IoT-Honeypot-Summary IoT-Honeypot-Summary Public

    Summary reports and daily capture data for the IoT camera honeypot final-year project — see HoneyPot-FYP and IoTLogAnalyzer for the live system and analysis pipeline.

  3. IoTLogAnalyzer IoTLogAnalyzer Public

    IoTLogAnalyzer is a specialized analysis platform built to process and visualize log files from an IoT honeypot project. It transforms raw capture data into structured threat intelligence by classi…

    Python

  4. reconsentry reconsentry Public

    Continuous attack-surface change monitor for bug bounty & security teams — diffs your authorized targets on a schedule and alerts the moment a new subdomain, live host, subdomain-takeover risk, or …

    Go 1

  5. maruftak maruftak Public

    ✨ My GitHub profile — Penetration Tester · Ethical Hacker · SOC Analyst

  6. awesome-bugbounty-tools awesome-bugbounty-tools Public

    Forked from vavkamil/awesome-bugbounty-tools

    A curated list of various bug bounty tools