Skip to content
View potato-20's full-sized avatar

Block or report potato-20

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
potato-20/README.md

What I do


LinkedIn    Email    Medium    Linktree



mayank@kali:~$ whoami --verbose — Security Researcher & Engineer · status: ACTIVE


Security researcher and engineer running manual and automated penetration tests across web, API, network, and mobile targets for government and enterprise clients. I build security tooling in Python — currently building an automated mobile (Android & iOS) penetration-testing agent — and I contribute upstream to the tools I actually use: drozer, MobSF, nuclei-templates.



---


[ 01 ]   what i do


  • Manual + automated VAPT across web, API, network, and mobile, under direct CTO supervision
  • Identify critical & high-severity findings across 20+ client engagements and deliver remediation guidance
  • Build Python / Docker security-testing automation for DAST & SAST pipelines
  • Threat modeling, risk assessment, and digital-forensics investigations
  • Triage 1,000+ security events from DevSecOps tooling; deploy & tune Cloudflare WAF
  • Operate against NIST · ISO 27001/27017 · PCI DSS · GDPR frameworks


---


[ 02 ]   flagship project


Autonomous Mobile Penetration Testing Agent. An LLM-orchestrated pipeline (LangGraph + Claude) that runs static, dynamic, and network assessments across Android & iOS, with a human checkpoint at every stage gate.

  • 29 static analyzers — manifest, secrets, crypto-misuse, native libs, Firebase rules, trackers, deep-links, WebView, and Ghidra headless decompilation
  • 21 iOS Frida hooks — SSL unpinning, jailbreak bypass, keychain/biometric capture, NSURLSession & WKWebView logging, anti-debug bypass
  • 20 network / API testers — IDOR, injection, mass-assignment, race conditions, auth/session, TLS, plus ZAP & mitmproxy integration
  • Findings mapped to OWASP MASTG / NIAP · exposed over an MCP server · runs on WSL2, Windows, macOS & Linux

status: in active development   source: private



---


[ 03 ]   open-source contributions


Upstream fixes and detections for the tools I rely on day to day — 9 PRs across 7 projects, 2 merged.


Project PR Contribution State
prowler #11471 AWS FSBP ELB.4 — ALB drop-invalid-header-fields check merged ✓
sqlmap #6066 Fix no-op chardet patch in dirtyPatches() merged ✓
ReversecLabs / drozer #500 Fix infinite loop in fs.md5sum / fs.sha1sum on Python 3 open
ReversecLabs / drozer #499 Add initial pytest unit-test suite + CI open
MobSF #2618 Android WebView mixed-content detection rule open
nuclei-templates #16339 Homarr Dashboard exposed-panel detection template open
nmap #3379 NATS server version detection (+ MongoDB mis-ID fix) open
NSA / ghidra #9249 Sanitize generated label name in AutoRenameSimpleLabels open
sqlmap #6067 CockroachDB error-based fingerprints (PostgreSQL fork) open


---


[ 04 ]   skills


skillmon — language load meters, tool process list, and research activity


Frida   objection   MobSF   drozer   pymobiledevice3   Ghidra   Burp Suite   Python



---


[ 05 ]   stats


stats — commits, repos contributed, upstream OSS PRs


Contribution activity graph


Built in the open · tested only with authorization · India

footer

Pinned Loading

  1. potato-20.github.io potato-20.github.io Public

    Mayank Patel — cybersecurity portfolio

  2. job-intelligence-agent/job-intelligence-agent job-intelligence-agent/job-intelligence-agent Public

    Resume-aware job market intelligence tool — skill frequency analysis, AI displacement scoring, and market velocity tracking

    Python 1