Available for Engagements

Security you can
actually trust.

Abbytes delivers professional-grade cybersecurity services — from deep penetration testing to cloud hardening — for startups, enterprises, and government bodies across India.

CERT-IN Empanelled Org
8+ Service Areas
Gov & Private Sector Experience

Cybersecurity Services

End-to-end offensive and defensive security expertise, delivered with precision and documented to industry standards.

Penetration Testing

Web, mobile, API, and network pen tests. Real-world attack simulation to find vulnerabilities before adversaries do.

  • OWASP Top 10
  • PTES Standard
  • Manual + Automated

Security Audits

Comprehensive configuration reviews, code audits, and compliance assessments against CERT-IN, ISO 27001, and custom baselines.

  • CERT-IN
  • ISO 27001
  • Custom Baselines

Red Teaming

Adversary simulation across people, processes, and technology. Full-scope engagements that test your entire security posture.

  • APT Simulation
  • Social Engineering
  • Physical

SAST / DAST

Static and dynamic application security testing integrated into your CI/CD pipeline or performed as a standalone engagement.

  • Source Code Review
  • Runtime Analysis
  • CI/CD Integration

Cloud Security

AWS, GCP, and Azure security assessments — misconfiguration reviews, IAM analysis, and cloud-native threat modelling.

  • AWS / GCP / Azure
  • IAM Review
  • CIS Benchmarks

Network Security

Internal and external network assessments, firewall reviews, segmentation testing, and traffic analysis for complete network visibility.

  • Internal / External
  • Firewall Review
  • Traffic Analysis

Forensics & Incident Response

Android and system forensics, malware analysis, APK reverse engineering, and formal incident report generation for CERT-IN submission.

  • Android Forensics
  • Malware Analysis
  • CERT-IN Reports

Not sure which service fits your need?

Let's Talk

Offense-informed defense.

Abbytes is a cybersecurity freelance practice run by a security professional with hands-on experience across offensive security, government audits, and digital forensics — working with CERT-IN empanelled organizations.

I've worked on penetration tests for government mobile applications, built AI-assisted security scanning platforms for national-scale audits, and conducted forensic investigations on phishing malware targeting critical infrastructure users.

Every engagement comes with clear communication, thorough documentation, and actionable findings — not a wall of CVEs.

Tools & Frameworks
Burp SuiteMetasploitFridaNmap WiresharkSemgrepNucleiOWASP ZAP MobSFVolatilityAutopsyspaCy
Platforms
AndroidiOSLinuxWindows AWSGCPDockerFlutter Apps
Languages
PythonJavaScriptBashSQLJava

Selected Projects

A selection of tools, research, and engagements. More on GitHub.

AI + Security 2025–26

CyberDrishti (साइबर दृष्टि)

AI-assisted automated security scanning platform for CERT-IN's national cyber audit mandate. Scans Indian government domains for exposed credentials, PII, misconfigurations, and secret leaks using spaCy NER, OCR, and heuristic pipelines.

PythonspaCyOCRNode.jsReact
View on GitHub →
Mobile Pentesting 2025

Government[Redacted] App — SSL Pinning Bypass

Authorized penetration test of a Flutter-based government Android application. Overcame complex SSL pinning via binary patching of libflutter.so to disable BoringSSL certificate verification on ARM64/x86_64.

FridaFlutterARM64BoringSSLBurp Suite
Request Case Study →
Forensics 2025

Phishing Malware Forensics — Delhi Utility

Forensic analysis of Android phishing malware targeting Delhi electricity utility customers. Produced formal CERT-IN incident reports and APK analysis methodology documentation for a government defence-adjacent entity.

APK AnalysisMobSFCERT-INAndroid
Request Case Study →
Full Stack 2025

GROCER — Price Tracker

Full-stack grocery price tracking app for comparing Blinkit and Zepto purchases with historical pricing and feedback logging.

Node.jsExpressMongoDBReactVite
View on GitHub →

Blog

Security research, writeups, and thoughts on the offensive security landscape.

Start a Project

Looking for a security assessment, audit, or a quick consultation? Reach out — I respond within 24 hours.

Delhi / NCR, India & Remote
Response within 24 hours