Software Engineer · Ethical Hacker · Sri Lanka
Tharindu Yehan
Bandara.
Developer, Designer,
and Penetration Tester.
Building things for the web from Sri Lanka — blending full‑stack development, design precision, and offensive security research. Focused on clean craft and clear intent.
Software Engineer — Open to opportunities
Actively building in web, mobile, and offensive security. Continuing open-source contributions and security research.
BSc (Hons) Software Engineering — KDU
General Sir John Kotelawala Defence University · GPA 3.7
Graduated with GPA 3.7. Final year thesis: WiFiGuardian — a Wi-Fi security assessment tool integrating LLM-based advisory with network attack simulation, helping users understand and harden their wireless networks.
Security Software Engineering Intern — VSIS
Completed industry internship at VSIS, working on real-world software engineering challenges across the stack.
Top 100 Global — HackTheBox
Ranked in the top 100 globally on HackTheBox, competing against thousands of security researchers and penetration testers worldwide. Published exploit PoC writeups across multiple machines.
IEEE Student Branch Website — KDU
Designed and developed the inaugural IEEE Student Branch website for KDU, launched at the Annual General Meeting on 07 May 2024.
Security Tools — SocialPhish, WordBreak & more
Built and released multiple open-source security tools used by researchers worldwide. SocialPhish 3.0 — a phishing awareness framework — grew organically to many GitHub stars with a global following. WordBreak, a password auditing utility, and several other offensive tools followed.
Vulnerability Research — KDU Systems
Identified and responsibly disclosed critical vulnerabilities in university infrastructure — including the internal LMS and web portal. Findings included privilege escalation flaws that allowed admin account creation. All issues were reported to the institution and subsequently patched.
University Entrance — KDU Intake 39
Enrolled at General Sir John Kotelawala Defence University to read for a BSc (Hons) in Software Engineering.
AnonOps — Operations
Joined the global AnonOps network via IRC, contributing to awareness campaigns including #OpSaveTheWorld. Became country channel operator under the alias **********@haunting.your.network — an early chapter in understanding decentralized communities and network culture.
A/L — Combined Mathematics Stream
Completed Advanced Levels in the Combined Mathematics stream, building the analytical foundation that would shape an engineering and security mindset.
Where it began
Curiosity kicked in early — pulling apart how systems work, writing bat scripts, tinkering with networks, staying up late to understand things nobody taught in class. The curiosity never stopped.
Work
Selected projects and tools
WiFiGuardian
LLM-assisted Wi-Fi security assessment with Aircrack-ng integration. Final year thesis.
SocialPhish
Phishing awareness framework with 131 organic GitHub stars from a global security community.
Issue Tracker
Full-stack project management tool with real-time updates and Docker deployment.
SecureDiary
Encrypted Android diary with PIN auth, mood tracking, and theme support.
Writing
Articles and notes on tech, security, and building things
Boost Your Windows Performance Medium · 2023 Enable Local Group Policy Editor using PowerShell Medium · 2023 Download WhatsApp Status Without Any App Medium · 2022 More on Medium →
Got a project in mind?
Let's build it.
Turn your idea into reality