Automation & Reverse Engineering Engineer
Python · Web Scraping · Anti-Bot · Reverse Engineering · Backend
I reverse-engineer how systems protect themselves, then rebuild them in clean Python.
For 5+ years I've specialized in request-level automation and web scraping — HTTP-only systems with no browser or DOM — which means getting deep into the hard parts: reversing client-side token and signature schemes, deobfuscating dynamically-generated JavaScript, defeating anti-bot controls (CAPTCHA, proxies, rate limits), and recovering in-app logic through Android RE.
I came from a law background and taught myself all of this. Now extending into backend and application security.
🔭 Open to roles in automation / web scraping / data acquisition, anti-bot & anti-fraud, reverse engineering, and Python backend.
| Project | What it does |
|---|---|
| Reqvexa | HAR-based HTTP provenance analyzer that traces cookies, tokens, headers, and request dependencies with temporal evidence. |
| jsunveil | Pattern-based deobfuscator for string-array (obfuscator.io-style) JavaScript. Survives per-build regeneration. |
| capture2tls | Turns Charles Proxy captures into ready-to-run tls_client / curl_cffi code (preserves header order + TLS fingerprint). |
| api-automation-platform | FastAPI backend — OAuth2/JWT auth, layered architecture, CI, pytest. |
- I Spent a Week Inside a Top-Tier Web Anti-Bot Stack — JS deobfuscation, device fingerprinting, headless challenge reproduction.
- An Infinite Loop in Samsung's UltraHDR Stack — a CWE-835 DoS found via arm64 reverse engineering and AFL++.
Python · requests · HAR · tls_client · BeautifulSoup · Scrapy · Playwright · FastAPI · Flet · PostgreSQL · Docker · Frida · JADX · Burp Suite · Charles Proxy