Skip to content
View Swastik-Garg's full-sized avatar

Block or report Swastik-Garg

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Swastik-Garg/README.md

Cybersecurity | VAPT | Web & API Security | Security Automation


πŸ›‘οΈ About Me

I'm a Cybersecurity enthusiast focused on Web Application Security, Vulnerability Assessment & Penetration Testing (VAPT), API Security, and Security Automation.

I enjoy identifying vulnerabilities, understanding attack methodologies, and building practical security solutions.

  • πŸ” Focus: Web Security & VAPT
  • 🌐 Specialization: Web & API Security Testing
  • πŸ”Ž Interests: Reconnaissance & Vulnerability Research
  • 🐍 Automation: Python & Bash Scripting
  • 🐧 Environment: Kali Linux & Linux
  • 🎯 Goal: Build practical cybersecurity solutions and continuously improve my offensive security skills

πŸ› οΈ Security Arsenal

πŸ”΄ Offensive Security 🌐 Web & API Security βš™οΈ Programming & Automation
Penetration Testing OWASP Top 10 Python
Vulnerability Assessment API Testing Bash
Reconnaissance Authentication Testing C / C++
Security Testing SQL Injection JavaScript
Exploitation Access Control Testing SQL

πŸ”§ Security Tools


πŸ’» Technical Skills


πŸš€ Featured Projects

🌐 API Penetration Testing

Performed hands-on API security testing to identify vulnerabilities and security weaknesses across API endpoints.

Areas Tested:

  • Authentication & Authorization
  • Broken Access Control
  • Input Validation
  • SQL Injection
  • Rate Limiting
  • Session Management
  • API Parameter Manipulation
  • OWASP API Security Top 10

πŸ”Ž Real-World Web Application Penetration Testing

Conducted security testing of a real-world web application using a structured VAPT methodology.

Activities Performed:

  • Information Gathering & Reconnaissance
  • Attack Surface Mapping
  • Authentication & Session Testing
  • Access Control Testing
  • Input Validation Testing
  • SQL Injection Testing
  • Business Logic Testing
  • OTP & Authentication Mechanism Testing
  • Vulnerability Validation
  • Evidence & Screenshot Collection
  • VAPT Report Preparation

πŸ›‘οΈ Digital Evidence & Forensics System

A Python-based forensic evidence management system designed to maintain the integrity and traceability of digital evidence.

Key Features:

  • SHA-256 & BLAKE3 hashing
  • Evidence acquisition
  • Metadata extraction
  • Tampering detection
  • Chain of custody
  • SQLite database
  • Automated forensic report generation

⚑ Security Automation

Python-based security utilities designed to automate repetitive cybersecurity tasks, improve reconnaissance workflows, and simplify security assessment processes.

⚑ Security Automation

Python-based security utilities designed to automate repetitive cybersecurity tasks, improve reconnaissance workflows, and simplify security assessment processes.


πŸ“œ Certifications & Learning

  • πŸŽ“ Google Cybersecurity Professional Certificate
  • πŸ” Cybersecurity Foundations
  • 🐧 Linux & Shell Scripting
  • πŸ›‘οΈ Ethical Hacking & VAPT
  • 🌐 Web & API Security
  • πŸš€ Continuous Cybersecurity Learning

🎯 Currently Exploring

Web Application Security     β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆ
API Security                 β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘
Vulnerability Assessment     β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘
Penetration Testing          β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘
Security Automation          β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘β–‘
Reconnaissance               β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘β–‘β–‘
Cloud Security               β–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–ˆβ–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘β–‘

🌐 Connect With Me


πŸ” Learn. Hack. Secure. Automate.

Breaking systems to understand them. Securing them to make them stronger.

Pinned Loading

  1. SNORT-CUSTOM-IDS-RULES SNORT-CUSTOM-IDS-RULES Public

    Production-ready custom Snort IDS/IPS rules for detecting reconnaissance, web attacks, brute-force attempts, and network threats.

    Shell

  2. cybersec-python-lab cybersec-python-lab Public

    cybersec-python-lab is a personal security playground showcasing Python-based cybersecurity projects. Designed for learning, experimenting, and exploring core infosec concepts, this repo grows over…

    Python

  3. MINOR_PROJECT MINOR_PROJECT Public

    πŸ” Digital Evidence Collection System (DECS) β€” A secure and efficient platform for collecting, preserving, and managing digital evidence. Ensures evidence integrity through cryptographic hashing, ma…

    Python 1

  4. certificates_earned certificates_earned Public

    In this repository, You will see my online certifications that I have earned to gain knowledge in deeper and complete it successfully

  5. DSA--in-C- DSA--in-C- Public

    Hello guys, In this repository file you will get the basics of DSA in C++ using Dev C++ Software. Hope you find all programs in understandable form

    C++