Open to opportunities

Abhradeep
Maitra

Cybersecurity Lead · Penetration Tester · Tool Builder

B.Tech CSE student at RCCIIT with hands-on experience in offensive security, network defense, and web application testing. I build tools, break systems legally, and run security events that people actually remember. CEH v13 trained.

200+CTF Participants
100+Workshop Attendees
₹2L+Prize Pool Secured
5+Tools Built

// capabilities

Skills & Tools

Security Tools

NmapBurp SuiteWireshark HydraJohn the RipperAircrack-ng NucleiMetasploit

Programming

PythonBashCJava

Domains

Web App SecurityPenetration Testing Network DefensePort Scanning Vulnerability AssessmentOSINT

Operating Systems

Kali LinuxParrot OSWindows

// work

Experience

Cybersecurity Lead

IgniteX Club, RCCIIT

Oct 2025 – Oct 2026
  • Leading cybersecurity initiatives for the IgniteX RCCIIT chapter — overseeing vulnerability research, awareness programs, and technical events
  • Planning and executing workshops and CTF competitions, ensuring technical accuracy and smooth coordination
  • Mentoring junior members and collaborating with faculty to expand campus-wide cybersecurity engagement

Cybersecurity Day Organizer

IgniteX Club, RCCIIT

Mar 2026
  • Organised a dedicated Cybersecurity Day with 100+ attendees focused on building real security awareness on campus
  • Skipped the slides — opened terminals instead. Walked peers through live password cracking and auditing using Hydra and John the Ripper
  • Received Certificate of Appreciation from the HoD, Department of IT, RCCIIT

CTF Organizer

RCCIIT — Techtrix '26

Aug 2025
  • Designed and deployed web-based challenges covering SQL Injection, XSS, and authentication flaws
  • Managed challenge validation, scoring logic, and participant support for 200+ participants
  • Secured ₹2 Lakhs+ in sponsorships through cold outreach and a professional pitch deck to infosec companies
  • Built a fully custom CTF platform themed around Stranger Things — containerized with Docker

// flagship project

Main Project

The primary tool I built — everything else led to this.

crecon
★ Flagship Tool v0.1.0
⚡ Automated recon toolkit — chains Nmap, CVE lookup, dir brute-force, web crawl, SSH testing, and Nuclei into one command. AI builds complete attack chains from all findings.

One command. Full recon. Five tools chained automatically based on what the previous step finds. Port 80 open → auto-triggers directory brute-forcing, web crawl, Nuclei CVE validation. Port 22 open → auto-tests default SSH credentials. NVD CVE lookup runs automatically on every detected service. Then feeds everything to AI for actual attack paths with exact commands and payloads.

Supports 5 AI providers (GitHub Models — DeepSeek-R1, Groq, Gemini, OpenAI, Anthropic) with automatic fallback if one runs out of credits. Installable as a real Kali Linux command.

PythonNmapNuclei paramikoBeautifulSoupdnspython NVD APIDeepSeek-R1subprocess ThreadPoolExecutorsocket
GitHub ↗ Writeup ↗ ↓ Full Docs
crecon auto scan running
auto mode — full chain: Nmap → CVE lookup → SSH test → dir enum → web recon → Nuclei
crecon banner
crecon --help — banner + subcommands
dir enum results
dir enum + recon — .htpasswd, .svn, Apache detected
AI analysis
AI analysis — CVE-2021-44224 (CVSS 8.2) — complete attack chain with exact commands

// case-based projects

Case-Based Projects

Focused tools built to solve specific problems. Each one taught a skill that fed into crecon.

SafeWall IDS / Monitor

Real-time network security monitor. Sniffs every incoming packet with Scapy, detects DDoS attacks (>40 pkt/sec), checks for malware signatures (SQL injection, XSS, Nimda, path traversal), and auto-blocks IPs with iptables.

PythonScapyiptables
IPclean Forensics

Log file auditor and IP wiper. Scans a directory of log files, finds every file containing a specific IP address, and optionally deletes them. Useful for post-incident forensics and cleanup.

Pythonargparseos
expDB Utility

ExploitDB instant search launcher. Reads whatever software/version is on your clipboard and opens ExploitDB pre-filled with that search. Saves time during every engagement — copy a version, run expDB, done.

Pythonpyperclipwebbrowser

// events & initiatives

On The Ground

Security events I organised and ran — where the work moved from the terminal into the real world.

Cybersecurity Day 2026 Workshop
100+ attendees Mar 2026 RCCIIT

Organised a full-day security awareness event. Skipped the slides — opened terminals instead. Live demos of password cracking and auditing using Hydra and John the Ripper. Received Certificate of Appreciation from HoD, Dept. of IT.

Stranger's CTF — Techtrix '26 CTF Event
200+ participants ₹2L+ prize pool Kolkata

Fully custom CTF platform themed around Stranger Things. Gutted CTFd's frontend for a glitchy terminal aesthetic. Containerized all vulnerable machines with Docker. Cold-pitched infosec companies to fund a ₹2L+ prize pool. Officially listed on CTFtime.

Live Site ↗

// credentials

Certifications & Training

🛡

CEH v13 — Certified Ethical Hacker Training

Simplilearn · EC-Council · Training completed — exam in progress

🏆

Certificate of Appreciation — Cybersecurity Day 2026

RCCIIT · Signed by HoD, Dept. of IT & Faculty Advisor, IgniteX Club

🐍

Automate the Boring Stuff with Python

Udemy · Al Sweigart · March 2026 · 9.5 hours

TryHackMe & HackTheBox

Penetration testing, privilege escalation, and network recon in simulated enterprise environments

🎓

B.Tech — Computer Science & Engineering

RCCIIT University · 2023 – 2027 · Relevant: Data Structures, Networking, Cybersecurity

// reach out

Contact