Skip to content
View anirbala98's full-sized avatar

Block or report anirbala98

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
anirbala98/README.md

πŸ‘‹ Hi, I'm Balachandar Gowrisankar

πŸ” Security Researcher | Penetration Tester | Web Security | Active Directory Security | AI & LLM Security

I'm a cybersecurity professional with 3.5+ years of experience in offensive security and security research.

My interests include penetration testing, vulnerability research, exploit development and red teaming.

Currently building security tools, researching vulnerabilities and contributing to open-source security projects.

I also actively write blogs which can be found here.


πŸ§‘β€πŸ’» About Me

πŸ” Security Engineer
🎯 Penetration Tester
πŸ€– AI / LLM Security
πŸ’₯ Vulnerability Research & Exploit Development
🐧 Linux & Active Directory
πŸ› οΈ Security Tool Development
πŸ“š Continuous Learner
  • πŸ›‘οΈ OSCP Certified
  • πŸ”Ž Interested in Web, API, Network & Active Directory Security
  • πŸ€– Experience with AI Security, Adversarial Testing & LLM Assessments
  • πŸ’₯ Published conference/journal papers, vulnerability research and exploit PoCs
  • πŸ™ Open-source security contributor
  • ✍️ Technical writer covering cybersecurity and vulnerability research

πŸŽ“ Certifications


πŸ› οΈ Featured Projects

πŸ”₯ Security Automation

A collection of Python/Bash utilities for automating common penetration testing and reconnaissance tasks.

  • Linux Pentesting Toolkit - Helper scripts for automating privilege escalation and enumeration in Linux [Repo]

πŸ’₯ Exploit Development

A collection of vulnerability research and proof-of-concept exploit development projects.

  • Server-side request forgery leading to local file inclusion in Planyo WordPress plugin (CVE-2026-3576) [Repo]
  • Arbitrary file write leading to remote code execution in Wolf CMS (CVE-2026-67206) [Repo]
  • Broken access control leading to mass user information disclosure in 4gaBoards (CVE-2026-53959) [Repo]
  • Arbitrary file read in Welcart e-Commerce WordPress plugin (CVE-2022-4140) [Repo]

πŸ”΄ Open Source Contributions

A list of my contributions to open source security tools.

  • Metasploit
    • A local file inclusion exploit module affecting Planyo WordPress plugin (CVE-2026-3576) [Merged]
    • A mass user information disclosure module affecting 4gaBoards (CVE-2026-53959) [Under review]
    • An arbitrary file read exploit module affecting Welcart e-Commerce WordPress plugin (CVE-2022-4140) [Under review]
    • An arbitrary file read exploit module affecting Docmost (CVE-2025-57231) [Under review]
  • Nuclei
    • Authored a template for a file path traversal vulnerability affecting Docmost (CVE-2025-57231) [Merged]

πŸ”¬ Research Publications

My research has been published at top-tier security conferences and journals.

  • An adversarial attack approach for eXplainable AI evaluation on deepfake detection models, Computers & Security, 2024 [Link]
  • GateKeeper: Operator-centric Trusted App Management Framework on ARM TrustZone, IEEE Conference on Communications & Network Security, 2022 [Link]
  • Designing a Text-based CAPTCHA Breaker and Solver by using Deep Learning Techniques, IEEE International Conference on Advances and Developments in Electrical and Electronics Engineering, 2021 [Link]

🀝 Let's Connect


⭐ If you find my scripts useful, consider giving them a star!

Popular repositories Loading

  1. CAPTCHA-Solver CAPTCHA-Solver Public

    A Text-based CAPTCHA solver designed using Deep Learning Techniques

    Python 3 1

  2. CVE-2026-3576 CVE-2026-3576 Public

    Wordpress Plugin Planyo Online Reservation System <= 3.0 - Arbitrary File Read via SSRF

    Python 2 1

  3. CVE-2026-67206 CVE-2026-67206 Public

    Wolf CMS <= 0.8.3.1 - RCE via Arbitrary File Write

    Python 1

  4. CVE-2026-53959 CVE-2026-53959 Public

    4gaBoards < 3.3.9 - User Information Disclosure

    Python 1

  5. CVE-2022-4140 CVE-2022-4140 Public

    WordPress plugin Welcart e-Commerce < 2.8.5 - Arbitrary File Read

    Python 1

  6. CVE-2025-57231 CVE-2025-57231 Public

    Docmost < 0.22.0 - Arbitrary File Read

    Python 1