Skip to content
View bess1lie's full-sized avatar
💤
💤

Block or report bess1lie

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
bess1lie/README.md

bess1lie

bess1lie

Security Engineer · Bug Bounty Hunter · Open Source · Almaty

Building detection-first, scope-aware security CLIs for bug hunters and security engineers.




Tools

🔍 apihunter NEW

REST API Security Testing CLI

repo python

OpenAPI / Swagger discovery · Heuristic scanning (IDOR, CORS, auth) ·
Authentication auditing · HTML / Markdown / SARIF reports

🎯 bounthunt

Scope-Aware Bug Bounty Orchestrator

repo v1.1.0 tests

Subfinder · dnsx · httpx · naabu · nuclei · katana orchestration ·
YAML scope guard · SQLite history · Checkpoint/resume · Diff monitoring

🚀 gqlhunter

GraphQL Recon & Analysis CLI

repo v0.2.0 tests

Introspection extraction · Field fuzzing · Depth & complexity analysis ·
Persisted queries · Schema diff · IDOR detection · SARIF export · Dashboard


Stack

Python Go JavaScript TypeScript Bash

FastAPI Flask React Docker PostgreSQL SQLite GitHub Actions

Burp Suite Nmap Metasploit Wireshark


Stats



Philosophy

🔍 Detection only, never exploitation — recon and analysis, never payloads
🛡 Scope-aware — every action gated by YAML scope file
📂 Open formats — SQLite, Markdown, HTML, JSON, SARIF 2.1.0
💚 Open source — MIT licensed, community-driven, contributions welcome

Activity


Connect

site  ·  apihunter  ·  bounthunt  ·  gqlhunter  ·  twitter  ·  linkedin


MIT licensed · detection-only security tooling · Almaty
✦ built with Python · designed for security engineers ✦
Копируй и вставляй на https://github.com/bess1lie/bess1lie/edit/master/README.md

Pinned Loading

  1. bounthunt bounthunt Public

    Bug bounty automation framework — recon orchestration, scope-aware scanning, diff monitoring, checkpoint/resume

    Python 1

  2. gqlhunter gqlhunter Public

    GraphQL recon & analysis CLI — schema discovery, introspection, auth analysis, query variants, risk classification, dashboard

    Python 1

  3. apihunter apihunter Public

    Professional REST API security testing CLI for OpenAPI discovery, authentication analysis, security heuristics and bug bounty reconnaissance.

    Python