Skip to content
View tuannguyen14's full-sized avatar

Block or report tuannguyen14

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
tuannguyen14/README.md

Hello, I'm Tuấn

Full Stack Developer | Aspirant Offensive Security Engineer

Typing SVG

About Me

I am an experienced developer with a comprehensive background, currently focusing on transitioning into Offensive Security.

"I believe that hands-on experience building systems from end-to-end is the best foundation for understanding and finding their inherent weaknesses."

  • Development Background: Former Founder & Full Stack Developer of Fanz and TikGrow.
  • Key Strength: Developed and successfully launched multiple applications on the Google Play Store, providing practical, deep knowledge of the Mobile Attack Surface (Android/React Native).
  • Current Focus: Developing expertise in Web and Mobile Penetration Testing, with a deep interest in logic flaws and concurrency vulnerabilities.
  • Methodology: Grey-box testing & Source code review.

⚙️ Current Skill Development & AI Research

  • Reverse Engineering: Actively practicing techniques (Static/Dynamic Analysis) for Mobile apps and strengthening skills in Red Teaming.
  • AI Application in Pentesting: Currently integrating AI to enhance vulnerability discovery automation. Specifically, exploring techniques for predicting logic flaws and optimizing fuzzing efficiency based on traffic analysis.

Private Research & Tooling

Due to the sensitive nature of some projects, certain tools developed for internal auditing and research remain private.

Security Research Project: Custom Race Condition Fuzzer

A high-performance, multi-threaded exploitation tool built to detect and exploit complex Race Conditions in high-concurrency transactional APIs.

  • Technical Capability: Auditing and bypassing common database locks and transaction isolation levels in scale environments.
  • Tech: Written primarily in Go.

The Arsenal (Tech Stack)

Android

Popular repositories Loading

  1. Acunetix-Premium-2025 Acunetix-Premium-2025 Public

    🛡️ Scripts, API integrations, and learning resources for Acunetix Web Vulnerability Scanner – for ethical hacking and research purposes.

    3 1

  2. SmartBus SmartBus Public

    Team 404

    JavaScript 1

  3. care-finder care-finder Public

    JavaScript 1

  4. VoizFM VoizFM Public

    1

  5. Invicti-Professional-2025 Invicti-Professional-2025 Public

    A collection of tools, scripts, and learning resources for working with Invicti Professional (formerly Netsparker) – for research and educational purposes.

    1

  6. ZK-Pwn-Manage ZK-Pwn-Manage Public

    Advanced Offensive Security Toolkit for ZKTeco Devices

    Python 1