CYBER SECURITY • RESEARCH • INTELLIGENCE

jeet@security:~$ whoami

Jeet
Ganguly

Cyber Security practitioner focused on Web & API Security, CTI / OSINT, SOCMINT and security research.

0+
Vulnerabilities Found
0+
Birdy-Edwards Stars
0+
Dark-web & Telegram Channels Monitored
0+
THM solved
OSINT and cyber security visual
THREAT INTELLIGENCE / OSINT
jeet@lab — zsh
jeet@lab:~$ cat profile.txt
────────────────────────────────
focus: security research
specialty: web / api / CTI / OSINT
research: C2 & DNS security
tooling: Python / C++ / Docker
mindset: defend by understanding
────────────────────────────────
responsible disclosure
threat intelligence
security automation
continuous learning
jeet@lab:~$ _
Fan of Sherlock Holmes
Cyber security detective illustration

01 / About

Security through
curiosity.

I work across offensive and defensive security — finding weaknesses in applications, investigating threat ecosystems, building security tooling and researching how modern infrastructure can be abused.

My strongest areas are application security, threat intelligence, OSINT/SOCMINT, dark-web monitoring, network analysis and security automation. I enjoy turning messy security problems into practical tools, repeatable research and useful intelligence.

Web & API Security Threat Intelligence OSINT / SOCMINT Security Research

02 / Experience

Where I've worked

JUN — AUG 2025

Indian Army

Cyber Security Research Intern · Delhi

SELECTED 2 / 6,000+
  • • Designed an AI-based Secure DNS Firewall for real-time DNS exfiltration and C2 detection.
  • • Built a Random Forest + DistilRoBERTa pipeline achieving a reported 98% blocking rate against 3,000+ generated malicious DNS requests.
  • • Developed a testing C2 malware for controlled firewall benchmarking and studied DNSSEC standards RFC-4033/4034/4035.
APR 2025 — APR 2026

In a Start Up

Cyber Security Intern — Application Security · Remote

APPSEC + CTI
  • • Tested production web applications and APIs; identified 50+ vulnerabilities across access control, authentication, race conditions, JWT, XSS, SSRF and business logic.
  • • Monitored 100+ dark-web forums and Telegram channels for threat gathering and threat-actor profiling.
  • • Conducted cybercrime ecosystem research and dark-web investigations for threat intelligence operations.
OCT — DEC 2025

Independent Vulnerability Research

Bug Bounty & Responsible Disclosure

  • • Identified 15 API vulnerabilities across public bug bounty programs over two months.
  • • Recognized by the Netherlands Government SOC and Delta Exchange for responsible disclosure.

03 / Selected Research

Things I've built

View all repositories ↗
01 SOCMINT / AI ★ 79

Birdy-Edwards

AI-powered Facebook SOCMINT platform for threat-actor profiling, behavioral analysis, relationship mapping and intelligence reporting.

Python Ollama Gemma Docker Network Graphs
Birdy-Edwards project
02 / DEFENSIVE AI

AI-Based Secure DNS Firewall

Real-time filtering architecture for DNS-based data exfiltration and C2 beaconing, developed during the Indian Army internship.

Random Forest DistilRoBERTa DNS Python
DNS Firewall visual
98% reported malicious-request blocking rate
03 / SECURITY RESEARCH ★ 8

Canva-C2

Research exploring potential abuse of legitimate SaaS infrastructure for command-and-control communication and the defensive indicators such behavior can create.

C++ Python MITRE ATT&CK Detection
Canva-C2 research visual

04 / Arsenal

Technical stack

01

Web & API Security

OWASP Top 10, API security, IDOR, broken access control, auth bypass, race conditions, JWT attacks, XSS, CSRF, SSRF, price tampering and business logic flaws.

02

CTI & OSINT

Dark-web monitoring, Telegram OSINT, SOCMINT, threat-actor profiling, cybercrime ecosystem research and intelligence investigations.

03

Binary Exploitation

Linux binary exploitation, ret2libc, ret2syscall, ROP chains, reverse engineering.

04

Network & System

Wireshark, tcpdump, traffic analysis, Linux/Windows privilege escalation, Linux log analysis and covert-channel research.

05

SIEM & Threat Hunting

ELK Stack, Kibana Query Language, threat hunting workflows built around security telemetry, DNS tunneling, DGA and C2 detection.

06

Development

Python, C++, PowerShell, SQL, Docker and local LLM inference with Ollama.

TOOLS_I_USE.txt
Burp Suite Caido Nmap Wireshark tcpdump Ghidra IDA Binary Ninja Metasploit Docker Ollama SQLmap PowerShell ELK stack Process Hacker Linpeas Winpeas Hydra, John, HashCat Holehe Maltego Google-dorks GDB

05 / Recognition

Proof of work

Competition Record

2025Finalist — NCIIPC-AICTE Pentathon
20247th Place — Z3R0 D4Y CTF (International)
20242nd Place — Urecon’24 CTF, UEM Kolkata
20242nd Place — Innovacion CTF, IEM Kolkata
2026Top 3% Globally — TryHackMe · 100+ machines
EDUCATION
B.Sc. Computer Science
Ramakrishna Mission Vidyamandira · University of Calcutta
CGPA 8.36

06 / Contact

Let's build something
secure.

Security research, application security, threat intelligence or an interesting technical problem — I'm always open to meaningful conversations.