Skip to content
View BUSH-xanta's full-sized avatar

Block or report BUSH-xanta

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
BUSH-xanta/README.md

Alexey Lazarev

Junior Security Engineer focused on Web Security, Network Security, and Infrastructure Security.

Profile views GitHub followers GitHub User's stars


About

Infrastructure-oriented security specialist with hands-on experience in Linux, networking, server environments, and web application analysis.

  • penetration testing
  • API security
  • vulnerability assessment
  • infrastructure security
  • Red Team fundamentals

Focus Areas

  • Web Security
  • Network Security
  • API Security
  • Linux & Infrastructure
  • Penetration Testing
  • Red Team Learning Path

Tech Stack

Security & Pentest

Nmap Burp Suite OWASP ZAP Nuclei Kali Linux

  • Nmap
  • Burp Suite
  • OWASP ZAP
  • Nuclei
  • dirsearch / ffuf
  • Amass / Subfinder
  • Kali Linux

Systems & Networking

Linux Ubuntu Nginx Docker PostgreSQL

  • Linux / Ubuntu Server
  • Nginx, SSL/TLS, DNS
  • TCP/IP, HTTP/HTTPS, VLAN
  • VPN, VLESS, Xray
  • Docker, Docker Compose
  • PostgreSQL basics

Programming & Automation

Python Bash Git GitHub

  • Python
  • Bash
  • Git / GitHub
  • Log analysis
  • CLI tools
  • CSV / JSON / Markdown

Projects

Nginx Access Log Parser

Security-oriented Nginx log analysis tool.

  • Parses .log and .gz files
  • Detects suspicious IPs, paths, User-Agents and scan-like patterns
  • Exports reports to JSON, CSV and Markdown
  • Supports live monitoring mode

Repository: https://github.com/BUSH-xanta/nginx-access-log-parser


Site Contact Parser

Tool for extracting public contact data from websites.

  • Extracts emails, Russian phone numbers and Telegram contacts
  • Crawls main and contact-like pages
  • Supports HTTPS to HTTP fallback
  • Deduplicates results and exports to CSV

Repository: https://github.com/BUSH-xanta/site-contact-parser


AppSec Learning Labs

Hands-on labs for web and API security.

Status: in progress

Planned topics:

  • OWASP Top 10
  • IDOR
  • Broken Access Control
  • API authentication flaws
  • Burp Suite testing
  • Vulnerability reports

Practical Experience

  • Identified a business logic vulnerability in a payment flow of a small business website
  • Performed MITM labs in an isolated virtual environment
  • Worked with server infrastructure and internal technical processes at Selectel
  • Built and maintained small infrastructure projects on Ubuntu Server with Nginx, SSL/TLS and Docker

Currently Learning

  • Web Pentesting
  • API Security
  • Advanced Linux
  • PostgreSQL
  • Vulnerability Research
  • Red Team fundamentals

GitHub Stats

GitHub Stats

Top Languages

GitHub Streak


Contacts


Goal

Grow as an Information Security specialist focused on penetration testing and Red Team.

Long-term focus:

  • adversary emulation
  • infrastructure security assessment
  • vulnerability research
  • practical attack-defense understanding

Pinned Loading

  1. BUSH-xanta BUSH-xanta Public