Skip to content
View memx13's full-sized avatar

Block or report memx13

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
memx13/README.md

Terminal window. whoami prints: Mehmet Emin Mağnısalıoğlu, cybersecurity learner. Then the Extension Scanner status legend: 200 OK is readable, 403 Forbidden is there but blocked, 401 Unauthorized wants credentials. 26 paths, 10 threads, redirects off.

Hi, I'm Mehmet Emin 👋

Cybersecurity learner focused on practical security automation, networking, and Python-based tooling.

I turn security concepts into small, testable projects, with an emphasis on responsible and authorized use.

Projects · Open source · Toolbox · Quiz · Activity · Principles · Get involved

What I'm working on

  • Python automation for security and system tasks — the SİBERTİM Toolkit puts 40 system, network and security tasks behind one desktop window.
  • Web security testing fundamentals and HTTP analysis — Extension Scanner reads raw status codes (200 / 401 / 403) with redirects turned off; the toolkit checks six HTTP security headers and SSL certificate details.
  • Networking, defensive security, and Windows tooling — ARP discovery with Scapy, port / DNS / traceroute / whois lookups, and shortcuts to SFC, CHKDSK and the Windows firewall.
  • Clearer documentation, reproducible steps, and maintainable code — Turkish / English READMEs with install steps, release builds for people without Python, and a usage disclaimer on every security tool.

Featured projects

  • Extension Scanner — A multi-threaded Python tool for checking authorized targets for exposed sensitive files and directories.

    Under the hood · Python · MIT · v1.0.0 .exe
    • Checks 26 well-known paths: .env variants, .git/config, .git/index, config.php / wp-config.php backups, SQL dumps, backup.zip, .ssh/id_rsa, server-status, docker-compose.yml, .bash_history and more.
    • 10 worker threads pull paths from a shared Queue; a lock keeps the coloured console output readable.
    • Requests are sent with allow_redirects=False, so a redirect to the home page is not mistaken for a hit. Each request has a 7-second timeout.
    • Explains each result while it runs: 200 readable, 403 there but blocked, 401 asks for credentials. 404 responses are hidden to keep the output short.
    • Download: Windows build in Releases.
  • SİBERTİM Toolkit — A Windows desktop toolkit that brings together system, networking, encoding, and security utilities in a CustomTkinter interface.

    Under the hood · Python · CustomTkinter · 40 tools
    Group Tools
    Windows quick access (8) Control Panel, Registry Editor, Device Manager, Disk Management, Services, Performance Monitor, Firewall with Advanced Security, Task Manager
    System & network info (7) systeminfo, ipconfig /all, public IP, ping, DNS cache flush, whois, traceroute
    Security checks (14) IP geolocation, domain ↔ IP resolver, MAC vendor lookup, common-port lookup, security-header check, Scapy ARP sweep, TCP port scan (1–1024), quick Nmap (-F), DNS records, HTTP header dump, SSL certificate info, subdomain check, link spider, directory discovery
    Maintenance & repair (5) SFC, CHKDSK, gpupdate /force, firewall on / off
    Utilities (6) text hash, file hash, password generator, URL / Base64 / ROT13 encode-decode
    • Long tasks run on background threads and send results back to the window with after(), so the interface does not freeze during a scan.
    • Asks for administrator rights at start-up (IsUserAnAdmin → runas), because ARP scans, SFC and firewall commands need them.
    • The header check looks for Content-Security-Policy, Strict-Transport-Security, X-Content-Type-Options, X-Frame-Options, Referrer-Policy and Permissions-Policy.
    • Source code: toolkitt · packaged build: toolkit v1.0.0.
More from the workbench — a browser extension, a C# desktop app and a Python console app
Project Stack What it does
Anket Smasher JavaScript · Chrome Manifest V3 Fills long mandatory survey forms in one click. Asks only for activeTab and scripting, recognises ARIA role="radio" / role="checkbox" elements as well as plain inputs, and fires mousedown / mouseup / click / input / change events so framework-based forms register the answers. No external libraries.
otobusbileti C# · WinForms Bus ticket sales form: route (from / to), bus company, date and price fields, a seat map generated as buttons at runtime with click-to-toggle selection, a running total, and a separate customer entry form.
Kitap Takip Python · gist Console reading-list app: add, list, mark as read and delete books. Rejects empty titles and authors, and keeps the list in a UTF-8 JSON file between runs.

Open source contributions

Pull requests I have sent to other open-source projects. The first one fixed twyn's requirements.txt parser, which skipped every package pulled in with -r; it shipped in twyn v6.1.5.

Project Pull request Status
lgtm-ai
Your AI-powered code review companion
fix: do not count "No newline at end of file" markers as diff lines Merged 2026-10-11
lgtm-ai
Your AI-powered code review companion
fix: accept PR/MR URLs with a trailing slash or a tab path Merged 2026-10-11
twyn
Security tool against dependency typosquatting attacks
fix: read files included with -r in the requirements.txt parser Merged 2026-10-10
pySigma
Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)
Allow dashes in "1/all of" selector patterns Open

Tools and technologies

Python · C# · JavaScript · Git · HTTP · Networking · CustomTkinter

Language share across the public repositories of memx13, by code size

Tool Where it shows up
Python Extension Scanner, SİBERTİM Toolkit and Kitap Takip, with requests, threading / queue, Scapy, dnspython, python-whois, BeautifulSoup and colorama
C# otobusbileti, a WinForms ticket sales form
JavaScript Anket Smasher, a Manifest V3 extension written without libraries
Git Version history, plus GitHub Releases for the .exe and .zip builds
HTTP Status-code triage, redirect handling, header and SSL certificate checks
Networking ARP sweeps, TCP port scans, DNS records, traceroute, whois
CustomTkinter The toolkit's splash screen, tool panel and output pane

Quick quiz

Four questions taken from the tools above. Click a question to open its answer.

1. A scan returns 403 Forbidden for /.git/config. Is the file there?

Probably, but it is a lead and not proof. Extension Scanner reports 403 as "there, but access is blocked", because the server (or a WAF in front of it) refused the request instead of answering 404. Some servers return 403 for every dotfile whether it exists or not, so the next step is to compare with a path that cannot exist.

2. Why does Extension Scanner send its requests with redirects turned off?

Many sites answer unknown paths with a redirect to the home page. Following it ends in a 200, and every path in the wordlist would look exposed. With allow_redirects=False the scanner judges the first response it gets.

3. Decode this: Hfr frphevgl gbbyf bayl ba flfgrzf lbh bja

It is ROT13: every letter moves 13 places, so applying it twice gives the original text back. The line decodes to "Use security tools only on systems you own", the start of the first principle below. The toolkit has a ROT13 tool under Utilities. ROT13 is an encoding and not encryption, because there is no key.

4. Which response header tells a browser to use only HTTPS for a site from now on?

Strict-Transport-Security (HSTS). It is one of the six headers the toolkit's security-header check looks for, next to Content-Security-Policy, X-Content-Type-Options, X-Frame-Options, Referrer-Policy and Permissions-Policy.

Activity

Contribution graph of memx13 drawn as a snake game

A GitHub Actions workflow redraws this snake from my contribution graph once a day and refreshes the table of latest pushes below.

Repository Language Last push Latest release
Anket-Smasher JavaScript 2026-02-02 —
Extension_Scanner Python 2025-12-18 v1.0.0
toolkit — 2025-11-25 v1.0.0
toolkitt Python 2025-10-22 —
otobusbileti C# 2025-01-06 —

Principles

  • Use security tools only on systems you own or have explicit permission to test.
  • Prefer practical learning, clear documentation, and reproducible results.
  • Explain the result instead of only printing it. Extension Scanner shows what 200, 401 and 403 mean before the scan starts.

Get involved

Türkçe özet

Siber güvenlik öğreniyorum; pratik güvenlik otomasyonu, ağ ve Python tabanlı araçlar üzerine çalışıyorum. Güvenlik kavramlarını küçük, test edilebilir projelere dönüştürüyorum. Güvenlik araçlarını yalnızca sahibi olduğunuz ya da test için açık izin aldığınız sistemlerde kullanın.

  • Extension Scanner — İzinli hedeflerde açıkta kalmış hassas dosya ve dizinleri arayan çok iş parçacıklı Python aracı (26 yol, 10 iş parçacığı).
  • SİBERTİM Toolkit — Sistem, ağ, kodlama ve güvenlik araçlarını CustomTkinter arayüzünde toplayan Windows masaüstü araç seti (5 grupta 40 araç).
  • Diğerleri: Anket Smasher (Chrome eklentisi), otobusbileti (C# WinForms), Kitap Takip (Python konsol uygulaması).
  • Açık kaynak katkıları: twyn'in requirements.txt ayrıştırıcısında -r ile dahil edilen paketlerin atlanması hatasını düzelttim; düzeltme birleştirildi ve twyn v6.1.5 ile yayınlandı. Diğer katkıların güncel durumu yukarıdaki "Open source contributions" tablosunda.

Pinned Loading

  1. Extension_Scanner Extension_Scanner Public

    Multi-threaded Python scanner for discovering exposed sensitive files and directories during authorized web security testing.

    Python

  2. toolkitt toolkitt Public

    Windows-focused cybersecurity and IT toolkit built with Python and CustomTkinter.

    Python