stax /stæks/

Full Stack Developer

I'm a full stack developer and security researcher with 13 years of hands-on experience. I specialize in creating dynamic, scalable web applications from front-end to back-end, while also building powerful OSINT and cybersecurity tools. I build responsive user interfaces, robust server-side solutions, and security research tools that work seamlessly across all platforms.

I am proficient in React, Next.js, Node.js, JavaScript, TypeScript, HTML5, CSS, and Tailwind CSS for web development. On the security side, I excel in Python and Bash scripting for creating penetration testing tools, OSINT reconnaissance utilities, and automated security assessment frameworks. My expertise includes Git version control, MongoDB, PostgreSQL, MySQL databases, and deployment on Vercel and Netlify platforms.

I'm passionate about writing clean, maintainable code and staying current with emerging technologies in both web development and cybersecurity. Whether it's building RESTful APIs, implementing authentication systems, developing credential breach checkers, creating Cloudflare bypass tools, or crafting custom OSINT automation scripts, I deliver comprehensive solutions that exceed expectations. I maintain several open-source security tools and contribute to the infosec community.

Freelance Security Researcher & Penetration Tester

Self-Employed·Freelance

Independent security researcher specializing in offensive security, penetration testing, and OSINT tool development. Conduct authorized security assessments, vulnerability research, and exploit development. Develop open-source security tools in Python and Bash.

2016 - Present
Remote
Remote

IT Support Specialist

Redacted·Full-time

Provide technical support and system administration. Implement security best practices and endpoint protection. Collaborate on incident response and security awareness initiatives.

Feb 2023 - Present
2 yrs 11 months
United States
Hybrid

Core Security Skills

Technical Expertise·Specializations
Red Team Operations & Adversary EmulationPenetration Testing & Vulnerability AssessmentSocial Engineering (Phishing/Vishing)Vulnerability Discovery & Exploit DevelopmentOSINT & ReconnaissanceTool Development (Python, Bash, Go)Security Assessment ReportingClient Communication & Risk Analysis
2011 - Present

Professional Certifications

Active Credentials·Certified
Junior Cybersecurity AnalystCyber Threat ManagementEndpoint SecurityNetwork DefenseEthical HackerPursuing More
2020 - Present

BreachPeek

Multi-source breach intelligence platform combining ProxyNova's 3.2B+ credential database with Have I Been Pwned's 570M+ password hashes and 928+ breach records. Features email:password search, password compromise checking with k-anonymity, breach intelligence with domain filtering, and interactive CLI. Complete v2.0 rewrite with type-safe architecture, automatic retry logic, and cross-platform support.

PythonProxyNova APIHIBP APIType HintsDataclassesCLIGitGitHub

CloudRip

Advanced Cloudflare bypass reconnaissance tool for penetration testing and security research. Features full IPv6 support, multiple IP detection per domain, dynamic Cloudflare IP range fetching, real-time progress tracking, and multiple output formats (JSON, YAML, CSV). v2.1.0 includes 600+ subdomain wordlist, multi-threaded scanning, and comprehensive scan reports with categorized results.

PythonDNS ResolutionIPv4/IPv6Multi-threadingType HintsDataclassesGitGitHub

Blitz

Lightning-fast login page bruteforcer written in Go, 10x faster than Python alternatives. Features smart form and field detection, CSRF and clickjacking scanning, Cloudflare/WAF detection, SQL injection bypass checking, multi-threaded worker pool (5-20 threads), intelligent success detection, and rate limiting protection. Cross-platform support for Windows, Linux, and macOS.

GoBrowser AutomationMulti-threadingProxy SupportGitGitHub

InfoSecBot

Automated threat intelligence aggregator Discord bot monitoring 10 security RSS feeds including CISA KEV, US-CERT, Dark Reading, BleepingComputer, Krebs on Security, Ransomware.live, and VX-Underground. Auto-posts CVEs, security news, ransomware intel, and malware drops to Discord channels in real-time. Webhook-based architecture with zero interaction needed.

Node.jsTypeScriptDiscord.jsRSS FeedsWebhooksDockerGitGitHub

DataHawk

OSINT web crawler for identifying sensitive information during security assessments. Supports searching for emails, usernames, phone numbers, URLs, IP addresses, and custom regex patterns. Features multithreading for fast crawling, output in TXT/CSV/JSON formats, proxy support for anonymous scraping, and dynamic user-agent rotation.

PythonWeb ScrapingOSINTRegexMulti-threadingProxy SupportGitGitHub

HODL Board

Cryptocurrency market dashboard with real-time data and analytics. Features live price ticker for 50+ cryptocurrencies, interactive TradingView charts for major crypto pairs, Fear & Greed Index for market sentiment analysis, crypto profit calculator, market bubble visualization, and curated watchlists including US Tokens, Memes, DeFi, RWA, DePin, and AI. Zero installation required - runs entirely in browser using free widgets from CoinGecko, TradingView, CoinStats, CryptoHopper, and CryptoBubbles.

HTMLCSSJavaScriptCoinGecko APITradingView WidgetsCoinStatsGitGitHub

Personal Portfolio

My portfolio website built with Next.js and Tailwind CSS, showcasing my dual expertise in full-stack web development and offensive security research. Features responsive design, modern UI/UX, comprehensive project showcase of both web applications and security tools with 13 years of experience. Designed and automated with Netlify deployment.

Next.jsReactTailwind CSSTypeScriptGitGitHubNetlify

Get In Touch

I'd love to connect and explore exciting opportunities with you! Whether you have interesting projects, creative ideas, collaboration proposals, or just want to chat about technology and innovation, please don't hesitate to reach out. I'm always eager to discuss new challenges, share insights, and build meaningful professional relationships. My inbox is open 24/7, and I typically respond within a few hours!

Connect Now 🚀