obs1d1an
Operator
OBS1D1AN
Base
Astana, Kazakhstan
Discipline
Web and network
In progress
Not disclosed

Web and network penetration testing.

Third-year student at Astana IT University. I play CTFs and hunt bugs on bounty programs.

Right now

connecting

Reading presence…

01

Capability

Web applications
Authentication and access control, request tampering, injection, logic flaws.
Reconnaissance
Attack surface mapping: subdomains, live hosts, endpoints, historical URLs.
OSINT
Moderate. More useful on live targets than in CTF categories: leaked credentials, forgotten infrastructure, geolocation.
Network
Service enumeration, protocol and traffic analysis.
Code
Tooling for the checks worth repeating, and reading source when there is source.
Systems
Linux administration and hardening.
Reporting
Findings written with impact, reproduction steps and a fix that can ship.

02

What this page already knows about you

Collected on load

Finding 001

Low·informational

Passive data disclosure through ordinary browser APIs

Affected asset
Your current browser session
Vector
Documented web APIs, no exploit
Collected
collecting…

Evidence

Network

IP address
City
Region
Country
Coordinates
Network / ISP
ASN
Connection

Device

Platform
CPU
GPU
Memory
Battery
Display
Touch

Browser

Browser
Languages
Time zone
Cookies
Do Not Track
Reduced motion
Referrer
History
User agent

Remediation

No vulnerability is involved. Every site you open can read this. A VPN hides your IP, location and ASN; a hardened browser profile limits the rest.

03

Console

Eleven commands

guest@obs1d1an: ~

tap to type

guest@obs1d1an:~$ whoami

Identity OBS1D1AN Role Penetration tester Based Astana, Kazakhstan Studying Astana IT University, year three Doing CTF and bug bounty Type help for the other ten commands.

04

Key material

Encrypt anything sensitive you send me: disclosure drafts, credentials, reports.

Ed25519 fingerprint

BF60 FAAF 6F96 6965 A33A 3482 DF56 69CC EF95 E403