Skip to content
View tobiasGuta's full-sized avatar

Highlights

  • Pro

Block or report tobiasGuta

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
tobiasGuta/README.md

github-header-image

Tobias Guta

Security Researcher | Bug Hunter | Student

New York based cybersecurity student focused on offensive security, vulnerability research, and digital forensics.


About

I am a security researcher and bug hunter with a strong focus on web application security and network analysis. My work involves identifying critical vulnerabilities, automating reconnaissance workflows, and developing custom security tools.

Currently, I am expanding my methodology in developing custom Burp Suite extensions, and deepening my knowledge in malware analysis and reverse engineering.


Focus & Research

  • Vulnerability Research: Web application security (HTTP Request Smuggling), logic flaws, and protocol analysis.
  • Tool Development: creating automation tools for reconnaissance and custom extensions for Burp Suite.
  • Blue Team Operations: Digital forensics, malware analysis, and secure coding practices.
  • Certifications: Preparing for Security+, eJPT, and CEH.

Technical Arsenal

Languages Python Bash JavaScript Powershell SQL

Tools & Environment Linux Git Burp Suite


Featured Projects


Popular repositories Loading

  1. GeminiTerminal GeminiTerminal Public

    GeminiTerminal: A command-line interface (CLI) tool for seamless interaction with Google’s Gemini AI. Easily chat, troubleshoot, and receive helpful responses directly from your terminal. Powered b…

    Python 8 2

  2. FTPHunter FTPHunter Public

    FTPHunter is a powerful and efficient tool designed for FTP server enumeration and vulnerability assessment. It allows security professionals and penetration testers to quickly discover key informa…

    Python 5

  3. Next.js-RSC-RCE-Scanner-Burp-Suite-Extension Next.js-RSC-RCE-Scanner-Burp-Suite-Extension Public

    Burp Suite extension to detect the Next.js / React Server Components (RSC) Remote Code Execution vulnerability (CVE-2025-55182 & CVE-2025-66478).

    HTML 5

  4. sub-enum sub-enum Public

    This tool is designed to automate the discovery of subdomains for a given domain

    Python 4 1

  5. sniff sniff Public

    A lightweight packet sniffer for Windows and Linux that captures Layer 2 (Ethernet) packets, displaying detailed hex and ASCII output. It supports sniffing on any network interface and saves packet…

    Python 3 1

  6. StealthCommand StealthCommand Public

    A Python TCP server that listens for incoming client connections, executes shell commands, and returns the output. It runs as a daemon, handling multiple clients with threads

    Python 3