Skip to content
View ilyas-cyber's full-sized avatar
πŸ€—
I may be slow to respond.
πŸ€—
I may be slow to respond.

Block or report ilyas-cyber

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
ilyas-cyber/README.md

Muhammad Ilyas – Full Stack Developer | Ethical Hacker | YouTuber

πŸš€ About Me

Hi, I'm Muhammad Ilyas, a Full Stack Web Developer, Bug Bounty Hunter, and Content Creator. I specialize in identifying security vulnerabilities and building secure applications. My YouTube channel, WebWonders, shares my knowledge of ethical hacking and web development.

πŸ† Achievements

  • 2023 Top Hunter at @opn Bug Bounty Program
  • Found vulnerabilities in platforms like Omise, DPD Group UK, Mux
  • Experienced in detecting XSS, CSRF, SSRF, Cache Poisoning, DNS Rebinding, and Account Takeovers

πŸ›‘οΈ Security Highlights (from HackerOne)

  • Omise: Subdomain Takeover via Dangling DNS
  • DPD Group UK: Complete Account Takeover via Autofill Exploit
  • Mux: API Logs Leak (Internal IPs Exposure)
  • Omise: Web Cache Deception & CSRF Token Exposure
  • Omise: Firewall Bypass Leading to Admin Page Access
  • Omise: SSRF via DNS Rebinding
  • Omise: Lack of Rate Limiting in Login Forms

πŸ“‚ Featured Projects

πŸ”₯ Bug Bounty & Security Research

πŸ’» Full Stack & Web Development

🧠 Machine Learning & Automation


πŸ› οΈ Skills & Technologies

  • Languages: JavaScript, Python, Ruby, C++, C#, Shell, PHP, HTML/CSS
  • Frameworks: Ruby on Rails, React.js, Next.js
  • Tools: Docker, Git, GitLab, Nmap, Burp Suite, Knoxss
  • Security: XSS, SSRF, CSRF, DNS Rebinding, Rate Limiting Bypass, Web Cache Deception

🌟 Connect with Me


πŸ’‘ GitHub Stats

Muhammad Ilyas's GitHub stats

Top Langs


🏷️ Badges & Certifications

  • A7: Cross-Site Scripting (XSS) – October 2023
  • A3: Sensitive Data Exposure – August 2023
  • Streaker Badge – August 2023

⭐ Let's Build Something Amazing Together!

Pinned Loading

  1. Best_PV_Sytem_Buy Best_PV_Sytem_Buy Public

    BestPVBuy : https://bestpvbuy.com/ is an innovative project developed by Muhammad Ilyas, a talented backend engineer, in collaboration with Aziz and Waqar Bugti, skilled front-end engineers. The pr…

    Blade 1

  2. Ilyas-Chat-App Ilyas-Chat-App Public

    Hello, I have created an app similar to WhatsApp. Here I have uploaded the code. I am a coder and love to get ideas from existing projects and innovatively do something new. Thanks and Happy coding.

    JavaScript

  3. project_website project_website Public

    This is the Client Project That I have created for you as well

    HTML