0%
Home About Tools Projects Writeups TryHackMe GitHub Certs Contact
About Tools Projects Writeups TryHackMe GitHub Certifications Contact
⬇ Resume Hire Me

Ethical Hacking · Penetration Testing · Bug Bounty

BHAKTASHARMA

Ethical Hacker Penetration Tester Bug Bounty Hunter CEH v12 · CHFI

Ethical hacker and penetration tester specialising in web application security, bug bounty hunting, and red team operations. TryHackMe Top 2% globally with hands-on lab experience across real-world attack and CTF scenarios.

6+
Real Projects
150+
THM Rooms
Top 2%
Globally
2x
EC-Council Certs
Bhakta Sharma
CEH
Certified
01 — About

Who I Am

Ethical Hacker & Bug Bounty Hunter

I'm Bhakta Sharma — a cybersecurity professional focused on ethical hacking, penetration testing, and bug bounty hunting. I actively hunt real vulnerabilities on public programs, perform authorised pentests, and build my own security tooling. My Civil Engineering background gave me a systematic, methodical approach I now apply to breaking down security problems.

I actively study on TryHackMe (Top 2% globally, 150+ rooms), build real security tools in Python and Bash, and document my findings through detailed CTF writeups. I'm currently deepening my skills in web application security, red teaming, and advanced exploit development.

My goal: a career in penetration testing or bug bounty hunting where I can find and responsibly disclose real vulnerabilities. I also hold a Digital Forensics certificate (Grade A+) and have solid DFIR knowledge as a complementary skill to my offensive security work.

Skill Proficiency

DFIR
90%
Network Sec
82%
Web App
80%
Malware
75%
Python
85%
Bash
78%
Pentest
83%
02 — Arsenal

Tools & Technologies

Click any tile for full specs, usage examples, and proficiency breakdown.

🔮Autopsy
🧠Volatility
💾FTK Imager
🦈Wireshark
🔍Nmap
💣Metasploit
🕷️Burp Suite
🐉Kali Linux
🔐Hashcat
🌎OSINT
📡Aircrack-ng
🭮Ghidra
🕷️Maltego
🐍Python
📊Splunk
🔎Gobuster
💬SQLMap
🧍John the Ripper
🔎Nikto
👑Mimikatz
🐕BloodHound
OWASP ZAP
🐉Hydra
🎯Recon-ng
🛡️Snort
🧪YARA
03 — Projects

Real Projects

All tools built from scratch and tested in lab environments. Click any card for full details.

🔐
Cryptography · HTML / JavaScript
HashForge — Cryptographic Hash Toolkit
✔ 9 algorithms · 100% client-side · zero server · works offline
► OUTPUT  ·  Single HTML file — open in any browser, no install
Fully client-side hash toolkit. Hash text or files, verify integrity, compute HMAC, identify unknown hashes, and inspect deep file metadata — your files never leave your device.
HTML5 Web Crypto API SHA-256/512 BLAKE2b
🔑
Cryptography · Python
Caesar Cipher Encrypter & Decrypter
✔ Encrypt / decrypt / brute-force all 25 shifts — demonstrates classical cryptanalysis
► OUTPUT  ·  CLI tool — instant encrypted/decrypted text
Python implementation of the Caesar cipher with encrypt, decrypt, and brute-force modes. Shows why classical ciphers have zero real security — useful for CEH cryptography study.
Python Cryptography CLI Tool Brute Force
🪟
Security Assessment · Python
Windows Security Assessment Tool
✔ System enumeration, privesc checks & misconfiguration detection in lab environments
► OUTPUT  ·  CLI severity-ranked report of weaknesses
Python-based Windows security assessment for authorised engagements. Checks unquoted service paths, AlwaysInstallElevated, weak ACLs, and world-writable directories.
Python Windows API Privesc Enumeration
🔎
Digital Forensics · Python
DFIR Suite — Forensics Triage Platform
✔ Full DFIR pipeline — imaging, carving, EXIF, hash verification, timeline & HTML report
► OUTPUT  ·  Structured HTML evidence report with timeline
End-to-end DFIR triage platform covering disk imaging, file carving, EXIF extraction, SHA256 chain-of-custody, and MAC-time timeline reconstruction.
Python File Carving EXIF Timeline
🦠
Malware Analysis · Python
DFIR & Malware Analysis Tool
✔ PE analysis + IOC extraction + VirusTotal + MITRE ATT&CK mapping in one pipeline
► OUTPUT  ·  IOC report with MITRE ATT&CK technique mapping
Static malware analysis + DFIR triage. PE headers, entropy, IOC extraction, VirusTotal hash lookup, and MITRE ATT&CK technique suggestion in a structured report.
Python pefile YARA VirusTotal
04 — Research

CTF Writeups

Detailed step-by-step walkthroughs of TryHackMe and HackTheBox challenges.

Easy
Blue
TryHackMe · Windows Exploitation
EternalBlue MS17-010 Metasploit Hashdump
Medium
Internal Windows
TryHackMe · Active Directory
AD Enum Privilege Escalation Pass-the-Hash
Hard
Memory Forensics
TryHackMe · DFIR
Volatility Memory Dump Process Injection
Easy
Pickle Rick
TryHackMe · Web Exploitation
Command Injection Web Enum Gobuster
Medium
PCAP Analysis
TryHackMe · Network Forensics
Wireshark C2 Detection tshark
Hard
AD Penetration
TryHackMe · Active Directory
Kerberoasting BloodHound DCSync
TryHackMe Rooms Completed
🐉
Blue
Easy
🧠
Volatility
Hard
🔐
Cryptography
Medium
🕷️
OWASP Top 10
Medium
🌎
OSINT
Easy
🔍
Linux Privesc
Medium
💻
Active Directory
Hard
🦠
Malware Analysis
Hard
🖠
Wireshark
Medium
🎯
Jr Pentester
Easy
📊
SOC Level 1
Medium
🚨
Incident Response
Hard
05 — Proof

TryHackMe Profile

🏆 Hacker Rank
bhaktabsharma
// Ethical Hacker · Bug Bounty Hunter · Top 2% globally
Top 2%
Global Rank
150+
Rooms Done
170+
Day Streak 🔥
2
Paths Completed
Jr Penetration Tester Completed
SOC Level 1 Completed
Red Teaming In Progress
Cyber Defence In Progress
06 — Open Source

GitHub Repositories

github.com/bhaktabsharma

All tools are open source — built, tested, and documented in real lab environments.

🐉 View Profile ↗
Python
Automated-Recon-Enumeration-Toolkit
Modular recon framework v2.0 — DNS enum, port scanning, subdomain BF, web fingerprinting, CVE hints, HTML report.
⭐ 1🍴 0Active
HTML
HashForge
Client-side cryptographic hash toolkit — 9 algorithms, file integrity verifier, HMAC, hash identifier, metadata inspector.
⭐ 1🍴 0Active
Python
Ceaser-Cypher-Encrypter
Caesar cipher encrypt / decrypt / brute-force — demonstrates classical cryptanalysis weaknesses.
⭐ 0🍴 0Active
Python
Windows-Pentesting-Tool
Windows security assessment — system enumeration, privesc checks, misconfigurations, severity-ranked report.
⭐ 0🍴 0Active
Python
DFIR_Suite
Full DFIR triage platform — disk imaging, file carving, EXIF, SHA256 chain-of-custody, MAC-time timeline, HTML report.
⭐ 0🍴 0Active
Python
DFIR-Malware-Analysis-Tool
PE analysis + DFIR triage — imports, entropy, IOC extraction, VirusTotal lookup, MITRE ATT&CK mapping.
⭐ 0🍴 0Active
07 — Credentials

Certifications & Credentials

A+
🍽 NEWVERSIONHACKER
NVH Digital Forensic
3-Month Program · Grade A+
// Issued: 8 Jun 2026  ·  Valid: Jun 2028
CN-NVHDF26B07002AS
🔮 ETHICAL HACKING 101
Ethical Hacking 101: Beginners Guide
Certificate Code: 10338271
// Issued: 12 June 2026
🎖 EC-COUNCIL
Certified Ethical Hacker
CEH v12
// 2024
🔗 Verify
🔮 EC-COUNCIL
Computer Hacking Forensic Investigator
CHFI
// 2024
🔗 Verify
🎯 TRYHACKME
Jr Penetration Tester
Learning Path
// 2024
🔗 View Profile
🛡️ TRYHACKME
SOC Level 1
Learning Path
// 2024
🔗 View Profile
08 — Contact

Get In Touch

Let's Work Together

Open to opportunities in DFIR, penetration testing, and security analysis. Whether you have a project, a job offer, or just want to talk security — reach out.