Tijul Kabir Toha

@froster

TryHackMe
Top 1% Globally #58 BD
THM Streak
300 Days
CTF
#16 BD
Projects
9+
01.

Identity Matrix

Tijul Kabir Toha aka Froster

CSE @ Pabna University of Science & Technology • Year 2

Offensive security researcher with a passion for breaking things (ethically). CTF player for PUST_Intruders, ranked #58 nationally on TryHackMe with a 250+ day streak. Building open-source security tools and pushing toward Expert (1600+) on Codeforces.

PentestingCTFReverse EngineeringSystems ProgrammingCompetitive Programming
SYSTEM STATUS
modeACTIVE
focusOffensive Sec
teamPUST_Intruders
country🇧🇩 Bangladesh
codechef1446 2★
repos9 public
TryHackMe Rank
#58
Bangladesh
CTF National
16th
EWU Robofest 2026
Day Streak
300+
Continuous
CF Rating
914
Newbie → Pupil
⬡ JOURNEY
📚
2024

Started CSE at PUST

🔒
2025

TryHackMe Top 1% globally and #58 in BD, BDSec CTF, Meta Hacker Cup

⚡
2026

EWU National Robofest Onsite 16th (first-ever from PUST), IH CTF 35th, 300+ Day Streak, Building Echo & NetForge

⬡ CERTIFICATIONS & COMPETITIONS
🏆EWU National Robofest 2026 (Onsite) — Ranked 16th Nationally (First-Ever from PUST)
✓CCEP — Cybersecurity Educator Professional
✓CPPS — Phishing Prevention Specialist
🏆Meta Hacker Cup 2025 — Round 1
🏆BDSec CTF 2025 — Participant
🏆IH CTF 2026 — 35th Place (1057pts)
02.

Tech Arsenal

K

Kotlin

Primary language for Echo P2P

→ Echo
C+

C++

CF rated 1446, 300+ problems

→ Competitive Programming
Py

Python

Exploit dev, scripting, recon

→ CTF & Automation
Rs

Rust

Memory-safe network tools

→ NetForge
Fl

Flutter

Cross-platform UI for Echo

→ Echo Mobile
JS

JavaScript

XSS research, web pentesting

→ Web Exploits
C

C

Low-level systems programming

→ Systems & OS
SQ

SQL

Injection research & hardening

→ DB Security
03.

Project Arsenal

// Open-source tools built for offensive security, encryption, and systems programming

⬡

NetForge

Active
Offensive Security Toolkit

Industry-grade data processing tool with a stealth calculator disguise. Features a comprehensive cryptographic toolset including Base64, Hex, ROT13, XOR, MD5/SHA hashing, and a recipe system for chaining operations.

▸Stealth Calculator mode — disguises as a standard calculator
▸Recipe system for automated multi-step data processing
▸Comprehensive crypto: Base64, Hex, ROT13, XOR, MD5, SHA256
▸IP Defang/Refang, JSON/XML beautify, URL encode/decode
ReactViteJavaScriptCrypto-JS
◉

FSociety Lab v2

Cybersecurity Training Target
ReleasedJavaScript

A vulnerable-by-design local-first cybersecurity training target that simulates a real-world web app. Built to be scanned, probed, and attacked — your personal punching bag for Kali Linux tools.

▸Verified support for 19 standard Kali tools
▸Built-in Field Manual explaining attack techniques
▸Real-time logs showing attacks from defender's perspective
▸SQLite DB with authentication & logging endpoints
Node.jsExpressSQLiteDocker
◈

Vault 7

Secure Password Manager
ReleasedC

A cross-platform encrypted vault application built with OpenGL/GLFW and C. Features a custom-rendered GUI for securely storing passwords, backup codes, and notes with master-key encryption.

▸Custom OpenGL/GLFW rendered GUI — no web dependencies
▸Master password + encryption key dual authentication
▸Organized storage: Passwords, Backup Codes, Notes
▸Cross-platform: Windows, macOS, Linux (CMake build)
COpenGLGLFWCMake
▣

PDF Locker

Document Encryption Tool
ReleasedC++/Dart

A cross-platform application to password-protect PDF documents with AES encryption. Features a modern drag-and-drop interface with a Windows 11-inspired design and dark mode support.

▸AES encryption for industry-standard document security
▸Drag & Drop interface for seamless file handling
▸Cross-platform: Windows, Android, Linux, macOS
▸Portable Windows build — no installation required
FlutterDartC++AES
◇

Echo

P2P Encrypted Messaging
In DevelopmentKotlin

A decentralized peer-to-peer messaging platform with end-to-end encryption. Built with a custom protocol layer for direct device communication without centralized servers.

▸P2P Architecture — zero central server dependency
▸Custom encryption protocol for message security
▸NAT traversal & hole-punching for direct connections
▸Cross-platform with Flutter mobile client
KotlinFlutterWebSocketCrypto
04.

Live Metrics

🏴CTF Points:4500+│
🔒TryHackMe Rank:#58 BD│
🔥CF Streak:250D+│
⚡CodeChef:1446★│
📦GitHub Repos:9+│
📺YouTube:Byte Froster│
📜Certifications:5+│
🏆National CTFs:4+│
🏴CTF Points:4500+│
🔒TryHackMe Rank:#58 BD│
🔥CF Streak:250D+│
⚡CodeChef:1446★│
📦GitHub Repos:9+│
📺YouTube:Byte Froster│
📜Certifications:5+│
🏆National CTFs:4+│
🏴
0+
CTF Points
🔒
#0 BD
TryHackMe Rank
🔥
0D+
CF Streak
⚡
0★
CodeChef