I am a Security Researcher based in Poland, with a deep focus on Offensive Security and AppSec.
I specialize in penetration testing, developing custom offensive tools, breaking complex systems and thinking like an adversary to secure infrastructure (basically red teaming). I am also the co-founder of White Hats SC at WUST πΉ
- Core Specialization - Offensive Security Research, AppSec and Red Teaming.
- π οΈ Tooling - I develop offensive tools and automations.
- π Current Focus - AppSec, Bug Bounty & Offensive Tool Development.
- π» Tech Stack - Python, Bash, Golang and JavaScript.
- Archives - I maintain forks of cool projects over at arqsz-mirrors.
I also sometimes write articles about my research or just some of my ideas on arqsz.net.
https://img.shields.io/badge/%20-Arqsz-657786?style=for-the-badge&labelColor=657786&logo=x
If you want to collaborate on a cybersec project or just say hi:
- DM me at Twitter/X
- send an email to me directly
Here are some project I work on or participate in:
- JSRecon-Buddy JavaScript - Web recon chrome/firefox extensions.
- ct-hulhu Go - Certificate Transparency monitoring tool.
- tenant-domains Shell - check_mdi replacement.
- bashdog Shell - Bash documenting utility.
- interactsh-collaborator-rev Java - Interactsh collaborator - revised.
- interactsh-server-docker Docker - Dockerized interactsh server.
- domainspotter Shell - Certspotter automation script.
- gcheck Python - Google/Firebase credentials validator.
- BurpSuite-Gitleaks-Extension Java - Gitleaks integration for BurpSuite.
- BurpSuite-Just-Header-Injector Java - Header injection extension for BurpSuite.
- csp-evaluator-burp Java - CSP policy evaluator for BurpSuite.
- spaceship-ip Shell - Spaceship prompt IP module.
Repository updated at Mon Sep 7 03:32:05 UTC 2026