About
Hello, this is Duty. Security researcher, Synack Red Team Acropolis inductee, and creator of SubCat. I break things to make them safer.
If you have any suggestions or feedback, feel free to reach out.
| @duty_1g | |
| GitHub | @duty1g |
| Synack | Acropolis Inductee |
| Focus | Offensive Security · Bug Bounty · Tool Development |
Writing
Technical write-ups and community features.
Turning Frontend Clues into Backend Compromise: Insecure Routing to RCE
How a JavaScript file revealed dynamic routing patterns that led to PHP gadget chains and full RCE.
SubCat Community Review
Independent Medium article on SubCat's capabilities for subdomain enumeration.
Synack Acropolis Inductee
Recognized for sustained excellence in vulnerability research and contributions.
Projects
Open-source security tools built from real-world needs.
Skills
Areas of expertise and tools of the trade.
Web Security
Cloud
Windows
Recon
Python
Go
C#
PureBasic