Skip to content
View nehemiyawicks's full-sized avatar

Highlights

  • Pro

Block or report nehemiyawicks

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
nehemiyawicks/README.md

Nehemiya Wickramasinghe

Security Researcher & Software Engineer

Typing SVG


> whoami

Independent security researcher specializing in manual source code auditing across low-level systems: blockchain VMs, cryptographic libraries, embedded engines, and infrastructure platforms. No automated scanners. Every finding comes from reading code line by line in containerized environments.

Currently working on AI training data systems for frontier model development and conducting security research across multiple bug bounty programs.


> cat /proc/stats

TryHackMe Top 1% + KOTH Player
CVE Assigned (Integer Overflow, C)
Bug Bounty Active on HackerOne
Disclosure Vulnerabilities responsibly disclosed in production systems

> ls tech_stack/

Languages

C C++ Rust Go Python Java TypeScript JavaScript Solidity SQL

Security

Burp Suite Wireshark Source Code Auditing Memory Corruption

Cloud & Infrastructure

AWS Azure GCP Docker Kubernetes Terraform

DevOps & Tools

Linux GitLab CI/CD GitHub Actions VMware pfSense


> ls projects/

Project Description Stack
CVE Discovery Integer overflow in a monitoring platform's C source. PoC written, CVE assigned. C Docker
Blockchain VM Audit Resource limit bypass in VM allocator. State rollback inconsistencies in mempool block construction. Rust Python
DeFi Protocol SDK Audit Missing validation of leaf values, refund outputs, and timelocks in transfer verification. TypeScript
AI Training Pipeline Task specs, test suites, and QA for frontier AI model training via RL. C++ Rust Python
iExtract iTunes backup extraction tool for iMessages/SMS to CSV. Python
Home Lab ESXi servers, pfSense, network monitoring, ransomware recovery drills. AWS Terraform

> cat /proc/github_stats

GitHub Stats

Top Languages


> cat links.conf

GitHub LinkedIn HackerOne Email Website


0x4E57

Popular repositories Loading

  1. iextract iextract Public

    TeX 1

  2. Sideloader Sideloader Public

    Forked from Dadoum/Sideloader

    Open-source cross-platform iOS app sideloader (yep, even Linux is supported). Alternative to Sideloadly, AltServer, SideServer, Cydia Impactor, iOS App Signer…

    D 1

  3. babel babel Public

    Forked from babel/babel

    🐠 Babel is a compiler for writing next generation JavaScript.

    TypeScript 1

  4. EW-Import EW-Import Public

    Python 1

  5. nehemiyawicks.github.io nehemiyawicks.github.io Public

    ...

    HTML 1

  6. nehemiyawicks nehemiyawicks Public

    1