Ubaid Ur Rehman
AI-Native Security Researcher & Open Source Contributor
Security researcher and full-stack developer building open-source Android, web, and CLI tools. Experience includes static analysis, API security research, privacy-focused software, and AI-assisted engineering workflows, with public contributions to GitLab and Inkscape.
Source Code Security + Privacy Engineering
Security researcher and open-source contributor from Karachi, Pakistan. I build security tooling and full-stack applications with AI-assisted engineering workflows and evidence-led validation.
Recognized in the EC-Council Hall of Fame for responsible vulnerability disclosure. Contributor to GitLab (gitlab-shell) and Inkscape. Currently building shadowaudit — an open-source CLI that detects unauthenticated and undocumented API routes through static analysis.
I approach security research through passive analysis, source code review, and AI-assisted attack-surface mapping, keeping every finding evidence-driven and reproducible.
Technical Department Member at 360 Muslim Experts — a global network of Muslim experts committed to positive change through Islam, education, and research. Building Pak Books (free digital library for Pakistani students) and contributing to the organization's technical infrastructure.
Passive Analysis
Non-intrusive observation of application behavior and data flows
JS Bundle Review
Source code analysis of client-side JavaScript for leaked secrets and logic flaws
Responsible Disclosure
Evidence-driven reports with verified, reproducible findings
360 Muslim Experts
Technical Department Member — building tech for global Muslim community (Pak Books, infrastructure)
shadowaudit
Static API-route security scanning for the endpoints teams forget to protect.
shadowaudit
Security visibility for undocumented and unauthenticated API routes.
An open-source static scanner for reviewing application route exposure before production. It is designed to turn route discovery, OWASP-aligned risk context, and severity signals into a repeatable developer workflow.
Route Discovery
Finds undocumented and unauthenticated API routes before they reach production.
Security Context
Maps static findings to OWASP API Top 10 risk areas for clear review priorities.
Risk Scoring
Assigns severity signals so teams can focus on routes with the highest exposure first.
Developer Workflow
Built as a CLI for repeatable local checks and CI-friendly security review workflows.
Current status: active public development with releases, a contributor guide, and a documented project workflow.
Software Forge
Personal open-source tools built with Kotlin, Python, and TypeScript. Every repository shown here is hosted on GitLab.
KarobarX
Trust-first social-commerce platform for Pakistan, built with React, Supabase, Cloudflare Pages, and Capacitor. It focuses on safer transactions, fast product discovery, and student needs.
Pak Books
Free digital library for Pakistani students, built for 360 Muslim Experts. It brings textbooks, notes, past papers, and learning resources into a bilingual web experience with Telegram-based discovery; public usage metrics are not yet published.
shadowaudit
Open source CLI security tool that detects unauthenticated and undocumented API routes via static analysis. Supports Express, FastAPI, Django, Flask, NestJS, Rails, and Spring Boot. Maps findings to OWASP API Top 10 with risk scoring.
Noor Connect
Comprehensive, beautiful, and privacy-focused Islamic companion application published on F-Droid.
HaramVeil
Privacy-first, Islamic-values-aligned, FOSS GPL-v3 on-device content-filtering Android app.
Neuron-Encrypt
Transparent, open-source file encryption application featuring cryptographic security software.
nafs-ai
Simulation of a primitive AI agent with zero world knowledge.
HAYAT-AI
Offline-first mobile medical assistant for high-conflict and crisis zones like Gaza and Kashmir. Provides physician-validated emergency protocols without internet.
Onionroute-Lite
Lightweight Orbot alternative for low-end Android. Tor VPN, SOCKS5/HTTP proxy, obfs4 and snowflake bridges, kill switch.
Pocket Relay
Self-hosted Android agent host with private Telegram control and embedded runtime.
Nofap Fursan
Elite sovereign Command Centre for masculine discipline. Decentralized via Nostr with end-to-end NIP-44 encryption, featuring active Mindset Interventions and Biological Signal tracking.
Photon-Dns
Android local-VPN DNS resolver manager with bounded DNS forwarding and resolver latency monitoring.
synthetic-spirit
High-performance Android DNS sinkhole with a large malicious, tracking, and adult-content domain database.
KarobarX
The Unified Social-Commerce Protocol for Pakistan
KarobarX
The Unified Social-Commerce Protocol for Pakistan
Trust-first, all-category commerce platform. Think OLX with a zero-scam guarantee, a TikTok-style discovery feed, and a student ecosystem — all running on zero-cost infrastructure.
Four Pillars. One Protocol.
Trust Protocol
- Handshake PIN — 6-digit delivery confirmation, no escrow, no platform liability
- Ghost-Cart masked P2P chat — phone numbers hidden until both parties agree
- CNIC Verification — manual admin review for high-risk categories
- Karobar Score — dynamic reputation from transactions, account age, CNIC status
- Privacy Mode — 30-day auto-purge of chat logs & transaction history
Commerce Engine
- Structured listings — condition, warranty, authenticity, price type, geotag
- Hyper-local "Nearby Now" — bounding box + Haversine, 2km default radius
- All categories — Consumer Goods, Vehicles, Real Estate, Food, Industrial, Medical
- Delivery flow — InDrive/Yango/Bykea booking, no platform liability
- Manual verification — every listing admin-approved before going live
Discovery & Engagement
- TikTok-style Reel Feed — 15s vertical MP4, Cloudflare R2 storage
- New Arrivals — auto-highlights listings from last 14 days by location
- Optimised for 3G/4G — low bitrate MP4, no adaptive streaming
Student Ecosystem
- Study Graph — university, degree, courses; verified via .edu.pk or admin
- Book Exchange — ISBN-based textbook lookup, filter by semester/course
- Student Alerts — instant notifications when matching listings go live
Zero-Cost Infrastructure
Built by a Security Researcher (EC-Council Hall of Fame · 9 vulns, 3 critical)
Verified Security Research
20+ vulnerabilities across 3 engagements · 7+ Critical findings · 1 Hall of Fame listing
EC-Council (CodeRed)
9 vulns · 3 Critical9 vulnerabilities found (3 Critical). Acknowledged in 12 minutes. Hall of Fame 2026 + Certificate of Appreciation.
PriceOye
5 vulns · 3 Critical PII5 vulnerabilities found, including 3 Critical PII leaks. Remediation confirmed within 72 hours.
Waqar Electronics
6 vulns · XSS-to-ATO6 vulnerabilities found including one Stored-XSS-to-ATO chain via insecure session cookies.
F-Droid App Security Audits
Verifying FOSS apps for tracker-free, privacy-respecting compliance
Audit History
| App | MR | Status |
|---|---|---|
| Resonance | !40311 | Pending |
| Snowflake | !35787 | Merged |
| YouPipe | !34597 | Merged |
| Acutis Firewall | !33629 | Merged |
| Fauxx | !36607 | Merged |
| Yelling | !35886 | Merged |
| ONVIF Camera | !32355 | Merged |
| Kochi Transit Go | !39731 | Merged |
| Conduit | !39885 | Merged |
| Redly | !36246 | Pending |
| Nightbell | !45381 | Pending |
| Lean | !46493 | Pending |
| TabGreater | !46639 | Pending |
| Inkscape | !8122 | Pending |
Audit Activity
Journey So Far
PriceOye
First bug bounty report submitted; 5 vulnerabilities identified, including critical PII leaks.
EC-Council initial report
Initial responsible disclosure submitted to EC-Council.
HaramVeil + NoFap Hydra + Waqar Electronics
Built privacy-focused projects and disclosed Waqar Electronics ATO chain.
FOSS contributions
Continued open-source development on privacy/security-oriented repositories.
F-Droid Snowflake verification
Forward-compatibility verification for Snowflake Volunteer on Android 16 approved by F-Droid maintainer.
ShadowAudit v0.6.1 shipped
Released static API security scanner with 4 framework scanners, SARIF output, and GitHub Marketplace action integration.
EC-Council Hall of Fame
Hall of Fame 2026 listing with Certificate of Appreciation for 9 vulnerabilities (3 Critical).
Certifications & Achievements
Verified credentials from Saylani Cisco Networking Academy & EC-Council.
EC-Council Hall of Fame 2026
Certificate of Appreciation — Responsible Disclosure
Recognized by EC-Council President Sanjay Bavisi for identifying vulnerabilities in EC-Council web assets (9 vulnerabilities, 3 Critical).
CyberOps Associate — Networking Basics
Computer networking fundamentals and how networks operate.
Introduction to Cybersecurity
Introduction to Dark Web, Anonymity, and Cryptocurrency
Network Technician Career Path
Digital Safety and Security Awareness
ChatGPT for Everyone
Foundational ChatGPT usage and prompting best practices.
CyberOps Associate — Networking Basics
CyberOps AssociateComputer networking fundamentals and how networks operate.
Network Technician Career Path
Network Technician Career PathCareer path badge covering networking fundamentals, security, and administration through Saylani Cisco Networking Academy.
Digital Safety and Security Awareness
Digital Safety and Security AwarenessDigital safety, online privacy, and cybersecurity hygiene awareness.
ALL VERIFIABLE ON SAYLANI CISCO NETWORKING ACADEMY & EC-COUNCIL
Contributions
Patching upstream — small changes, real impact. Statuses refresh from GitLab through a cached server lookup.
gitlab-shell
GitLab
Fixed JWT refresh bug before rate-limit retries — preventing authentication failures under retry pressure.
Inkscape 1.5
Inkscape
Fixed the Wide Screen preference-state regression so the action restores correctly after interface-mode changes and restart.
GitLab Docs
GitLab
Fixed test environment fallback mounts configuration — restored English-only doc resolution for localized sites (Japanese, French, Korean) by removing duplicate module.mounts override and adding --environment test to review-app CI. Closes #708.
OpenMW
OpenMW
Documented a launcher-first mod-installation path so users can manage data directories without manually editing openmw.cfg.
Skills & Tools
Every line has a receipt.
Python
Nafs AI (PPO+GRU agent), Hermes automation pipeline
Kotlin
Noor Connect — F-Droid published, 395+ downloads
TypeScript
KarobarX full-stack marketplace (React + Supabase)
Node.js
shadowaudit CLI — npm package, 875+ downloads/week
Rust
Neuron-Encrypt — AES-256-GCM-SIV encryption tool (in progress)
Next.js
Portfolio site, shadowaudit dashboard (Vercel-hosted)
React + Vite
KarobarX frontend, chatbot widget iframe system
Supabase
RLS hardening, pg_cron jobs, JWT-based admin roles
Cloudflare Workers + Pages
Zero-cost hosting stack across 3 live projects
Capacitor
KarobarX Android APK wrapping
Security Research
20+ vulnerabilities, EC-Council Hall of Fame 2026
Static Analysis
ShadowAudit — OpenAPI/code diff, SARIF, GitHub Action (MIT, 875+ dl/wk)
API Security
shadowaudit maps findings to OWASP API Top 10 with risk scoring
OWASP
Findings mapped to OWASP API Top 10 across Express, FastAPI, Django, Flask, NestJS, Rails, Spring Boot
Bug Bounty
20+ vulns found across EC-Council CodeRed, PriceOye, Waqar Electronics
Web Pentesting
EC-Council Hall of Fame — 9 vulns, 3 critical
Responsible Disclosure
Z.ai — 11 findings across 4 severity levels, 90-day window
F-Droid Security Audits
11 MRs submitted, MR !35617 merged by linsui
Kali Linux / Burp Suite
Active TryHackMe labs + real target recon
CLI Tools
shadowaudit — production-grade Node.js CLI with npm distribution
AI-Assisted Engineering
Uses Claude and Gemini alongside Git-based implementation, testing, and documentation on public software projects
QwenWork AI
Autonomous browser agent — built and deployed a live Pinterest affiliate automation system with stealth Chromium, image processing pipeline, and daily scheduler
Git + GitHub Actions
CI/CD pipeline for Hidayah OS ISO builds
Bash
Watchdog scripts, start.sh automation, Live ISO overlay system
n8n
Workflow automation for Pinterest affiliate pipelines and AI agent orchestration
Common questions
Everything you need to know before reaching out.
Still have questions? Send a message
Public writing and evidence
Security research, build notes, and methodology published in the open.
Portfolio report
A Boundary-First Method for Reviewing an Android/F-Droid Submission
Methodology
Portfolio report
Building shadowaudit: Turning Route Inventory into Reviewable API-Security Context
Technical note · Active development
Portfolio report
Inkscape Contribution: Fixing a Small UI State Regression with a Reproducible Test Path
Open-source case study · Merged
I Built a Free Shadow API Scanner and Found 269 Forgotten Routes in Ghost CMS
Jul 12, 2026
I Put My AI on a Dating App for Other AIs. Things Got Weird.
Jul 1, 2026
GPT-5.6 Is Here — Meet Sol, Terra, and Luna
Jun 27, 2026
They Rejected My Bugs. I Came Back Same Day With 9 More.
May 5, 2026
I Built a File Encryption App in Rust. Here's What I Learned About Trust.
Apr 15, 2026
6 Hardware-Level Surveillance Technologies That Changed How I Think About Privacy
Apr 18, 2026
LET'S WORK
TOGETHER
Security engagement, collaboration, or just want to talk shop. All communications treated with strict confidentiality.
Let's Build Something
Android apps · Websites · Security audits
Need a secure Android app, a blazing-fast website, or a thorough security audit? Let's discuss your project.
Typical response < 24h · Available now
GitHub
@darkmaster0345
X
@Ubaid4tech
GitLab
@theredhacker0345
shadowaudit
Dashboard
/in/ubaid-ur-rehman-979623401/
Responsible Disclosure
All findings reported through proper channels. Available for bug bounty and private security consulting.