Skip to content
View anirbala98's full-sized avatar

Block or report anirbala98

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
anirbala98/README.md

πŸ‘‹ Hi, I'm Balachandar Gowrisankar

πŸ” Security Researcher | Penetration Tester | Web Security | Active Directory Security | AI & LLM Security

I'm a cybersecurity professional with 3.5+ years of experience in offensive security and security research.

My interests include penetration testing, vulnerability research, exploit development and red teaming.

Currently building security tools, researching vulnerabilities and contributing to open-source security projects.

I also actively write blogs which can be found here.


πŸ§‘β€πŸ’» About Me

πŸ” Security Engineer
🎯 Penetration Tester
πŸ€– AI / LLM Security
πŸ’₯ Vulnerability Research & Exploit Development
🐧 Linux & Active Directory
πŸ› οΈ Security Tool Development
πŸ“š Continuous Learner
  • πŸ›‘οΈ OSCP Certified
  • πŸ”Ž Interested in Web, API, Network & Active Directory Security
  • πŸ€– Experience with AI Security, Adversarial Testing & LLM Assessments
  • πŸ’₯ Published conference/journal papers, vulnerability research and exploit PoCs
  • πŸ™ Open-source security contributor
  • ✍️ Technical writer covering cybersecurity and vulnerability research

πŸŽ“ Certifications


πŸ› οΈ Featured Projects

πŸ’₯ Exploit Development

Click here for a full list of my PoC exploits for publicly disclosed CVEs. You can find my Exploit-DB submissions here.

πŸ”΄ Open Source Contributions

A list of my contributions to open source security tools.

Metasploit
No. Exploit CVE Status PR
1 Arbitrary file read via SSRF in Planyo WordPress plugin CVE-2026-3576 Merged [Link]
2 User information disclosure via broken access control in 4gaBoards CVE-2026-53959 Under Review [Link]
3 Arbitrary file read via path traversal in Docmost CVE-2025-57231 Under Review [Link]
4 Arbitrary file read in WordPress Welcart e-Commerce plugin CVE-2022-4140 Under Review [Link]
Nuclei
No. Exploit CVE Status PR
1 Arbitrary file read via path traversal in Docmost CVE-2025-57231 Merged [Link]

πŸ”¬ Research Publications

My research has been published at top-tier security conferences and journals.

  • An adversarial attack approach for eXplainable AI evaluation on deepfake detection models, Computers & Security, 2024 [Link]
  • GateKeeper: Operator-centric Trusted App Management Framework on ARM TrustZone, IEEE Conference on Communications & Network Security, 2022 [Link]
  • Designing a Text-based CAPTCHA Breaker and Solver by using Deep Learning Techniques, IEEE International Conference on Advances and Developments in Electrical and Electronics Engineering, 2021 [Link]

🀝 Let's Connect


⭐ If you find my scripts useful, consider giving them a star!

Popular repositories Loading

  1. CAPTCHA-Solver CAPTCHA-Solver Public

    A Text-based CAPTCHA solver designed using Deep Learning Techniques

    Python 3 1

  2. CVE-2026-3576 CVE-2026-3576 Public

    Wordpress Plugin Planyo Online Reservation System <= 3.0 - Arbitrary File Read via SSRF

    Python 2 1

  3. CVE-2026-67206 CVE-2026-67206 Public

    Wolf CMS <= 0.8.3.1 - RCE via Arbitrary File Write

    Python 1

  4. CVE-2026-53959 CVE-2026-53959 Public

    4gaBoards < 3.3.9 - User Information Disclosure

    Python 1

  5. CVE-2022-4140 CVE-2022-4140 Public

    WordPress plugin Welcart e-Commerce < 2.8.5 - Arbitrary File Read

    Python 1

  6. CVE-2025-57231 CVE-2025-57231 Public

    Docmost < 0.22.0 - Arbitrary File Read

    Python 1