🎯 Passionate about application security, vulnerable tooling, and community-driven open source.
-
OWASP VulnerableApp
A scalable intentionally vulnerable app designed to help security professionals and tooling developers test vulnerabilities safely. -
OWASP VulnerableApp-facade
Most modern lightweight distributed farm of Vulnerable Applications built for handling wide range of vulnerabilities across tech stacks. -
LLMForge
LLMForge is a modular AI security gateway for building and testing dynamic LLM-based vulnerability labs. Designed for prompt injection research, exploit simulation, and AI attack experimentation.
- OWASP ZAP — Widely used open-source security scanner.
- Maintainer/Author of OWASP ZAP add-ons:
- JWT Add-on – Detects common JSON Web Token vulnerabilities.
- FileUpload Add-on – Finds file upload misconfigurations.
- Deepening expertise in secure coding principles and DAST/SAST tooling.
- Exploring cloud & API security workflows.
- Improving developer experience around security automation.
- 🐦 Twitter: @sasan_karan
- 💼 LinkedIn: karansasan
- 📬 Email: preetkaran20@gmail.com
- I enjoy building security tools that help both beginners and experts learn by breaking things safely.
- Actively participate in open-source security discussions and tooling improvements.
- Passionate about mentoring and sharing knowledge in the security community.
Thanks for visiting — feel free to explore my projects and contribute! 🚀