Cybersecurity learner focused on practical security automation, networking, and Python-based tooling.
I turn security concepts into small, testable projects, with an emphasis on responsible and authorized use.
Projects · Open source · Toolbox · Quiz · Activity · Principles · Get involved
- Python automation for security and system tasks — the SİBERTİM Toolkit puts 40 system, network and security tasks behind one desktop window.
- Web security testing fundamentals and HTTP analysis — Extension Scanner reads raw status codes (
200/401/403) with redirects turned off; the toolkit checks six HTTP security headers and SSL certificate details. - Networking, defensive security, and Windows tooling — ARP discovery with Scapy, port / DNS / traceroute / whois lookups, and shortcuts to SFC, CHKDSK and the Windows firewall.
- Clearer documentation, reproducible steps, and maintainable code — Turkish / English READMEs with install steps, release builds for people without Python, and a usage disclaimer on every security tool.
-
Extension Scanner — A multi-threaded Python tool for checking authorized targets for exposed sensitive files and directories.
Under the hood · Python · MIT · v1.0.0
.exe- Checks 26 well-known paths:
.envvariants,.git/config,.git/index,config.php/wp-config.phpbackups, SQL dumps,backup.zip,.ssh/id_rsa,server-status,docker-compose.yml,.bash_historyand more. - 10 worker threads pull paths from a shared
Queue; a lock keeps the coloured console output readable. - Requests are sent with
allow_redirects=False, so a redirect to the home page is not mistaken for a hit. Each request has a 7-second timeout. - Explains each result while it runs:
200readable,403there but blocked,401asks for credentials.404responses are hidden to keep the output short. - Download: Windows build in Releases.
- Checks 26 well-known paths:
-
SİBERTİM Toolkit — A Windows desktop toolkit that brings together system, networking, encoding, and security utilities in a CustomTkinter interface.
Under the hood · Python · CustomTkinter · 40 tools
Group Tools Windows quick access (8) Control Panel, Registry Editor, Device Manager, Disk Management, Services, Performance Monitor, Firewall with Advanced Security, Task Manager System & network info (7) systeminfo,ipconfig /all, public IP, ping, DNS cache flush, whois, tracerouteSecurity checks (14) IP geolocation, domain ↔ IP resolver, MAC vendor lookup, common-port lookup, security-header check, Scapy ARP sweep, TCP port scan (1–1024), quick Nmap ( -F), DNS records, HTTP header dump, SSL certificate info, subdomain check, link spider, directory discoveryMaintenance & repair (5) SFC, CHKDSK, gpupdate /force, firewall on / offUtilities (6) text hash, file hash, password generator, URL / Base64 / ROT13 encode-decode - Long tasks run on background threads and send results back to the window with
after(), so the interface does not freeze during a scan. - Asks for administrator rights at start-up (
IsUserAnAdmin→runas), because ARP scans, SFC and firewall commands need them. - The header check looks for
Content-Security-Policy,Strict-Transport-Security,X-Content-Type-Options,X-Frame-Options,Referrer-PolicyandPermissions-Policy. - Source code: toolkitt · packaged build: toolkit v1.0.0.
- Long tasks run on background threads and send results back to the window with
More from the workbench — a browser extension, a C# desktop app and a Python console app
| Project | Stack | What it does |
|---|---|---|
| Anket Smasher | JavaScript · Chrome Manifest V3 | Fills long mandatory survey forms in one click. Asks only for activeTab and scripting, recognises ARIA role="radio" / role="checkbox" elements as well as plain inputs, and fires mousedown / mouseup / click / input / change events so framework-based forms register the answers. No external libraries. |
| otobusbileti | C# · WinForms | Bus ticket sales form: route (from / to), bus company, date and price fields, a seat map generated as buttons at runtime with click-to-toggle selection, a running total, and a separate customer entry form. |
| Kitap Takip | Python · gist | Console reading-list app: add, list, mark as read and delete books. Rejects empty titles and authors, and keeps the list in a UTF-8 JSON file between runs. |
Pull requests I have sent to other open-source projects. The first one fixed twyn's requirements.txt parser, which skipped every package pulled in with -r; it shipped in twyn v6.1.5.
| Project | Pull request | Status |
|---|---|---|
| lgtm-ai Your AI-powered code review companion |
fix: do not count "No newline at end of file" markers as diff lines | Merged 2026-10-11 |
| lgtm-ai Your AI-powered code review companion |
fix: accept PR/MR URLs with a trailing slash or a tab path | Merged 2026-10-11 |
| twyn Security tool against dependency typosquatting attacks |
fix: read files included with -r in the requirements.txt parser | Merged 2026-10-10 |
| pySigma Python library to parse and convert Sigma rules into queries (and whatever else you could imagine) |
Allow dashes in "1/all of" selector patterns | Open |
Python · C# · JavaScript · Git · HTTP · Networking · CustomTkinter
| Tool | Where it shows up |
|---|---|
| Python | Extension Scanner, SİBERTİM Toolkit and Kitap Takip, with requests, threading / queue, Scapy, dnspython, python-whois, BeautifulSoup and colorama |
| C# | otobusbileti, a WinForms ticket sales form |
| JavaScript | Anket Smasher, a Manifest V3 extension written without libraries |
| Git | Version history, plus GitHub Releases for the .exe and .zip builds |
| HTTP | Status-code triage, redirect handling, header and SSL certificate checks |
| Networking | ARP sweeps, TCP port scans, DNS records, traceroute, whois |
| CustomTkinter | The toolkit's splash screen, tool panel and output pane |
Four questions taken from the tools above. Click a question to open its answer.
1. A scan returns 403 Forbidden for /.git/config. Is the file there?
Probably, but it is a lead and not proof. Extension Scanner reports 403 as "there, but access is blocked", because the server (or a WAF in front of it) refused the request instead of answering 404. Some servers return 403 for every dotfile whether it exists or not, so the next step is to compare with a path that cannot exist.
2. Why does Extension Scanner send its requests with redirects turned off?
Many sites answer unknown paths with a redirect to the home page. Following it ends in a 200, and every path in the wordlist would look exposed. With allow_redirects=False the scanner judges the first response it gets.
3. Decode this: Hfr frphevgl gbbyf bayl ba flfgrzf lbh bja
It is ROT13: every letter moves 13 places, so applying it twice gives the original text back. The line decodes to "Use security tools only on systems you own", the start of the first principle below. The toolkit has a ROT13 tool under Utilities. ROT13 is an encoding and not encryption, because there is no key.
4. Which response header tells a browser to use only HTTPS for a site from now on?
Strict-Transport-Security (HSTS). It is one of the six headers the toolkit's security-header check looks for, next to Content-Security-Policy, X-Content-Type-Options, X-Frame-Options, Referrer-Policy and Permissions-Policy.
A GitHub Actions workflow redraws this snake from my contribution graph once a day and refreshes the table of latest pushes below.
| Repository | Language | Last push | Latest release |
|---|---|---|---|
| Anket-Smasher | JavaScript | 2026-02-02 | — |
| Extension_Scanner | Python | 2025-12-18 | v1.0.0 |
| toolkit | — | 2025-11-25 | v1.0.0 |
| toolkitt | Python | 2025-10-22 | — |
| otobusbileti | C# | 2025-01-06 | — |
- Use security tools only on systems you own or have explicit permission to test.
- Prefer practical learning, clear documentation, and reproducible results.
- Explain the result instead of only printing it. Extension Scanner shows what
200,401and403mean before the scan starts.
- Know a sensitive path the scanner should check? Suggest it for the wordlist.
- Missing a tool in the toolkit, or found a bug? Open an issue. The toolkit README asks for feedback there.
- Curious how this page updates itself? Read
profile.yml.
Türkçe özet
Siber güvenlik öğreniyorum; pratik güvenlik otomasyonu, ağ ve Python tabanlı araçlar üzerine çalışıyorum. Güvenlik kavramlarını küçük, test edilebilir projelere dönüştürüyorum. Güvenlik araçlarını yalnızca sahibi olduğunuz ya da test için açık izin aldığınız sistemlerde kullanın.
- Extension Scanner — İzinli hedeflerde açıkta kalmış hassas dosya ve dizinleri arayan çok iş parçacıklı Python aracı (26 yol, 10 iş parçacığı).
- SİBERTİM Toolkit — Sistem, ağ, kodlama ve güvenlik araçlarını CustomTkinter arayüzünde toplayan Windows masaüstü araç seti (5 grupta 40 araç).
- Diğerleri: Anket Smasher (Chrome eklentisi), otobusbileti (C# WinForms), Kitap Takip (Python konsol uygulaması).
- Açık kaynak katkıları: twyn'in
requirements.txtayrıştırıcısında-rile dahil edilen paketlerin atlanması hatasını düzelttim; düzeltme birleştirildi ve twyn v6.1.5 ile yayınlandı. Diğer katkıların güncel durumu yukarıdaki "Open source contributions" tablosunda.