Skip to content
View jankesec's full-sized avatar

Block or report jankesec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
jankesec/README.md

Sevban Dönmez

Senior Cyber Security Consultant · Red Team & Offensive Security Researcher

OWASP WSTG Author Website GitHub Pro PGP Verified

[ CVEs & Research ]  •  [ Field Notes ]  •  [ Projects ]  •  [ Contact ]


About

I am a Senior Cyber Security Consultant at PwC Turkey, leading Red Team engagements, adversary simulations, and advanced vulnerability research. Over 13+ years in offensive security, my work spans low-level binary exploitation, cloud & identity security, mobile internals, and AI agent threat modeling.

I actively contribute to global application security standards and develop open-source offensive & defensive security frameworks.


Flagship Security Tools

Project Description Technology
mcpbait AI Agent & MCP Red Teaming framework proving whether agents can be hijacked via rogue servers. 13 local attack modules, in-process canary exfiltration, and automated resilience scoring. Python · MCP · AI Security
evilcorp-ios Modern intentionally vulnerable iOS security benchmark featuring 30 hands-on challenges mapped to OWASP MASVS v2 & CWE, with embedded Frida scripts and live logging console. Swift · SwiftUI · MASVS v2
driftnet2 High-performance kernel-level network sniffer and credential extractor. Features eBPF/XDP in-kernel packet capture on Linux, libpcap fallback, 9 protocol parsers, and dual red/blue audit modes. Go 1.24+ · eBPF · XDP · pcap
ghostlink Surgical multi-channel Out-of-Band (OOB) data exfiltration & covert C2 framework in Go. Features 9 covert channels, Forward Error Correction (FEC), and dead-drop mode. Go 1.21+ · C2 · Covert Channels

Cryptographic Identity & Contact

PGP Fingerprint : FF0A 7D83 6751 CCE3 F9CC F574 FCF8 39FB 7F00 4626
GPG Key ID      : 5FDB257F4AAE8C3F
Signed Comms    : contact@jankesec.com
Website         : https://jankesec.com
All research, field notes, and code releases are cryptographically signed with GPG.

@jankesec's activity is private