Skip to content
View kewmine's full-sized avatar
🟢
🟢

Organizations

@clickswave

Block or report kewmine

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
kewmine/README.md

Dikshant Chandel

Software Engineer and Security Researcher
I write Rust that holds up, and I break software that doesn't
Founder of Clickswave. Web apps, binaries, reverse engineering.

Rust SvelteKit Postgres


Products

Crossfyre runs recon and vulnerability workflows across a fleet of nodes in parallel. Pure Rust, no Python glue.

SiloCat encrypts files in the browser. The server only ever holds ciphertext, so there is nothing useful to leak.

Open source

crossfyre-toolchain The scanners on their own, in your terminal. It ate voyage and mach. Apache-2.0.
silocat silo.cat's source, so you don't have to take my word about the encryption. AGPL-3.0.
limeyard Deliberately vulnerable targets with an answer key, for finding out how bad your scanner really is. MIT.

Bugs

I find them in other people's software and report them privately. They get listed here once the vendors ship fixes, which takes however long it takes.


LinkedIn Hack The Box

Contract work and collaborations: team@clickswave.org

Pinned Loading

  1. clickswave/silocat clickswave/silocat Public

    End-to-end encrypted file sharing and storage. Files are encrypted in your browser before upload, so the server only ever holds ciphertext it cannot read.

    Svelte 9 1

  2. clickswave/crossfyre-toolchain clickswave/crossfyre-toolchain Public

    Recon and vulnerability scanning tools that run in your terminal. Find subdomains, scan ports, discover hidden paths, fingerprint what's running, and check it for vulns.

    Rust

  3. clickswave/limeyard clickswave/limeyard Public

    A security testing lab: deliberately vulnerable targets, a routable network estate with its own DNS, and a machine-readable answer key per target, so a scanner's precision can be measured and not j…

    Python 1 1

  4. clickswave/faultline clickswave/faultline Public

    FaultLine ISP: a fictional internet provider website built as a realistic but deliberately insecure full-stack app (SvelteKit + Rust/axum + Postgres + Redis). Marketing pages, a customer portal, an…

    Svelte

  5. clickswave/mach clickswave/mach Public archive

    Mach is a fast, reliable, and extensible web fuzzing tool built for security researchers, bug bounty hunters, and penetration testers. Designed with performance and simplicity in mind, it helps unc…

    Rust 119 5

  6. clickswave/voyage clickswave/voyage Public archive

    Voyage is a stateful subdomain enumeration tool that combines passive and active techniques, user-specific databases, and fine-grained control built for efficient and reliable subdomain reconnaissa…

    Rust 257 14