Skip to content
View tarun1sisodia's full-sized avatar
:octocat:
In Production
:octocat:
In Production

Block or report tarun1sisodia

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
tarun1sisodia/README.md

πŸ‘‹ Tarun Sisodia

CyberSecurity-Focused Developer | Bug Hunter | Open Source Contributor

πŸ“ Noida, India | πŸŽ“ MCA (CyberSecurity) | πŸ› οΈ Flutter β€’ Node.js β€’ JavaScript β€’ Containers and 5+ skills


πŸ’Ό WHO I AM

I’m a full-stack developer and security-minded builder focused on solving real-world problems with clean, scalable tech. I don’t just write features β€” I find flaws, fix them, and ship systems that work under pressure.

From breaking into live class streams to architecting AI-powered helpdesks β€” I thrive where logic meets loopholes.


🚨 THE PROBLEM I SOLVED β€” Sheryians Coding School

β€œon September2 2025, After live class, I noticed something off β€” I could still access the video without being logged in.”

I dug deeper:

  • Opened DevTools β†’ no logout triggered
  • Copied the video URL β†’ played it in incognito tab β†’ worked without auth
  • Recorded proof β†’ reported responsibly β†’ stopped immediately

βœ… Impact: Prevented potential content leaks
βœ… Action: Reported privately with video evidence
βœ… Ethics First: Never shared exploit, never abused access

This isn’t hacking β€” it’s responsible disclosure. And it’s why teams trust me with their systems.


🧩 PROJECTS β€” Problems I Solved & How

1. πŸ”’ cyberThreat β€” Red Team Toolkit for Academic Research

Problem: Security tools are either too basic or illegal to use.
Solution: Built an advanced, modular toolkit for authorized penetration testing β€” with built-in ethics guardrails.

  • Obfuscated strings + stealth loaders to avoid detection
  • Persistence via registry/cron + SMTP exfiltration (for lab use only)
  • Auto-installer + PyInstaller build β†’ ready for controlled environments
  • ⚠️ Strict legal disclaimers + audit logs included

2. 🩸 BloodConnect β€” Blood Donation Matching System

Problem: Blood requests get lost. Donors don’t know where to go.
Solution: Built a Node.js + MongoDB backend that matches donors to patients in real-time.

  • JWT auth + role-based access
  • Smart matching engine based on blood type, location, urgency
  • Email alerts + donation tracking
  • Deployed with Netlify frontend β†’ used by 500+ people

3. πŸŽ“ SmartCampus β€” Attendance System for Colleges

Problem: Manual attendance = errors, delays, fraud.
Solution: Cross-platform Flutter app that lets teachers mark attendance using student photos β€” fast, accurate, offline-capable.

  • Supabase backend + PostgreSQL
  • Carousel UI for quick face-based marking
  • Export reports, multi-language, calendar sync
  • Deployed in 3 colleges β†’ reduced admin time by 70%

Teachers love it. Admins rely on it.


4. πŸ€– PowerSupport AI β€” Self-Learning Helpdesk Engine

Problem: AI chatbots break when they don’t know the answer. Humans get overloaded.
Solution: Designed a flow where AI routes unknown queries β†’ suggests KB articles β†’ admins create them β†’ system gets smarter.

  • No model retraining needed
  • Mermaid flows + React hooks + AI microservices
  • Trained vs Untrained path handling
  • Full audit trail + auto-resolution
  • Still in Development

🌱 CURRENTLY LEARNING

  • JavaScript (Advanced) β€” Async deep dive, closures, event loop, microtasks, DOM optimization
  • DSA Fundamentals β€” Arrays, Hashing, Two Pointers, Sliding Window, Recursion, basic Trees & Graphs
  • CyberSecurity β€” System hardening, network scanning, OWASP Top 10, bug bounty mindset, basic exploit analysis
  • Node.js Security β€” Helmet, rate limiting, input sanitization, JWT best practices, CSRF protection, secure headers
  • Docker for Backend Devs β€” Containerize Node + MongoDB/SQL/Postgressql, docker-compose workflows, multi-stage builds, volume management
  • API Design & Testing β€” REST standards, status codes, Postman automation, contract testing with Supertest, Swagger docs
  • MongoDB Advanced β€” Aggregation pipelines, indexing strategies, schema design, performance tuning, replica sets (basics)
  • Backend Resilience β€” Centralized error handling, logging with Winston/Morgan, graceful shutdowns, health/liveness endpoints

(Focusing on core web + mobile + security stack β€” no Java/AWS distractions)


🀝 OPEN SOURCE CONTRIBUTIONS

I don’t just β€œcontribute” β€” I own modules, write docs, review PRs, and mentor new contributors.


πŸŽ“ EDUCATION

MCA (CyberSecurity Specialization) β€” Ongoing
BCA β€” Agra University (2022-2025)


πŸ’Ό TECH STACK

🧠 Languages

JavaScript TypeScript Python Dart Java

βš™οΈ Frameworks & Platforms

Node.js Express Flutter Supabase MongoDB Firebase

πŸ€– Automation & AI Tools

Lmarena.ai n8n Cursor.sh Warp Terminal GitHub Copilot Claude / ChatGPT

πŸ” Security Focus

Ethical Hacking Secure Auth (JWT/OAuth) Input Sanitization Code Obfuscation

πŸ› οΈ Tools & DevOps

Git Docker Postman VS Code Android Studio MongoDB Compass mongosh

πŸ“¬ LET’S CONNECT

πŸ“§ coccoder999@gmail.com
πŸ™ github.com/tarun1sisodia
πŸ’Ό linkedin.com/in/tarunsisodia
🐦 @tarunsisodia


β€œI don’t wait for permission to solve problems. I find them, fix them, and share how I did it β€” so others don’t have to.”

β€” Tarun Sisodia

Pinned Loading

  1. SmartCampus SmartCampus Public

    SmartCampus App for Colleges & Schools

    Dart 2 1

  2. cyberThreat cyberThreat Public

    Python 1

  3. codequest-platform codequest-platform Public

    Forked from crisecheverria/codequest-platform

    Codequest is a platform for practicing coding challenges.

    TypeScript 1

  4. DSA_Domination DSA_Domination Public

    JavaScript 1

  5. TheAlgorithms TheAlgorithms Public

    Algorithms and Data Structures implemented in JavaScript for beginners, following best practices.

    JavaScript

  6. hacksider/Deep-Live-Cam hacksider/Deep-Live-Cam Public

    real time face swap and one-click video deepfake with only a single image

    Python 76.2k 11.1k