Mahesh Udaykar
Currently pursuing CSF-PGD  ·  CDAC, India

Hey, It's Mahesh.
Cybersecurity Analyst
and Systems Builder.

~/mahesh $

An Electronic student building production-grade AI security tools, phishing detection systems, and embedded control platforms.

Biography

Electronics & Communication Engineering student (graduating June 2026) from Nutan College, Pune — with hands-on experience in cybersecurity, VAPT, and embedded systems. Built production-grade security tools including an AI phishing detection platform (research paper submitted), an AI-guided security audit automation framework, and a Strandbeest-inspired autonomous rover. Security Analyst Intern at Guru Branding Services; freelance VAPT consultant for CodeServe Tech.

2+Years Experience
10+Projects Shipped
3Certifications
Mahesh Udaykar

Mahesh Udaykar

Pune, India · +91 9373289840

My Services

  • Vulnerability Assessment & Penetration Testing (VAPT)
  • Security Automation & AI-Assisted Threat Analysis
  • Embedded & Distributed Systems Development
  • SOC-style Triage, Monitoring & Incident Response

Activity

Last 6 months · consistently building

Find Me

Featured Work

Security tools, AI systems, and embedded platforms — built for real-world application.

Robotics · Embedded · AIOngoing — Final Year Project

THEO Rover — SIAER

Strandbeest-Inspired Autonomous Exploration Rover

Final-year hybrid terrain robotic system built on Theo Jansen's 12-bar linkage mechanism. Dual-layer control: Raspberry Pi 4 (orchestration, FastAPI/WebSocket dashboard) + Arduino (deterministic real-time motor control). Features Pi-CAM, ultrasonic/IR/DHT/soil/LDR sensors, and LLM-based local voice interface. Developing AI obstacle detection with OpenCV/YOLO.

Raspberry Pi 4FastAPIWebSocketsOpenCVYOLOArduinoUARTPWM
View project
THEO Rover — SIAER
Security · ML · AIOngoing · Research Paper Submitted

Gojo

Hybrid AI Phishing Detection System

Production-grade phishing URL detection combining heuristic rule-based analysis, ensemble ML (lexical + n-gram features), and Thompson Sampling contextual bandit for adaptive real-time learning. Achieves ~99% detection accuracy on ~50,000 URL dataset with ~20ms latency. Exposed via REST API, CLI, and web interface. Research paper submitted.

Pythonscikit-learnFlaskREST APIML PipelineReinforcement Learning
View project
Gojo
Security · AutomationOngoing

Vulnara

AI-Guided Security Audit Automation Platform

Local-first, extensible security audit platform for automated validation of web apps, APIs, and software packages. Multi-module engine: static analysis (Semgrep, Bandit), dynamic testing (OWASP ZAP, Nuclei), dependency scanning (pip-audit, npm audit). AI orchestration via Ollama (Mistral, DeepSeek-Coder) for payload generation and vulnerability reasoning.

SemgrepBanditOWASP ZAPNucleiOllamapip-auditPython
View project
Vulnara
Security · NetworkCompleted

Honeypot Threat Intel

Honeypot Deployment & Threat Intelligence Analysis

Controlled honeypot environment simulating vulnerable systems to capture and analyze real-world attack traffic including brute-force attacks, reconnaissance scans, and exploitation payloads. Behavioral analysis on attacker IPs, payloads, and access patterns with centralized logging and IOC documentation for structured threat intelligence reporting.

PythonLinuxNetwork AnalysisIDS/IPSOSINTIOC Documentation
View project
Honeypot Threat Intel

Core Skills

Tools, languages, and frameworks I use across security, systems, and AI work.

🛡️

Cybersecurity

VAPTOWASP Top 10Threat AnalysisOSINTSOC OperationsIncident ResponseMITRE ATT&CKPenetration TestingSecure Testing Workflows
🔧

Security Tools

Burp SuiteNmapWiresharkOWASP ZAPMetasploitNucleiNiktoSemgrepBanditGitleakspip-audit
⌨️

Programming & Scripting

PythonBashEmbedded CSecurity AutomationFlaskREST APIsWebSockets
🌐

Networking & Protocols

TCP/IPDNSHTTP/HTTPSPort ScanningPacket AnalysisTraffic MonitoringIDS/IPS
💻

Systems & Platforms

Linux (Kali, Ubuntu)Raspberry PiWSLKali LinuxVirtual EnvironmentsCLI
🤖

AI & Embedded

Local LLMs (Ollama)MistralDeepSeek-CoderOpenCVYOLOscikit-learnReinforcement LearningMicrocontrollersUARTPWM

Experience

Internship, freelance security work, and technical leadership across VAPT, threat analysis, and applied engineering.

Security Analyst Intern

Guru Branding Services, Pune

Sep 2024 – Aug 2025
  • Conducted end-to-end VAPT assessments on 4+ client web applications using Burp Suite, OWASP ZAP, and Nikto; identified 15+ vulnerabilities including critical OWASP Top 10 flaws (SQL Injection, Broken Authentication, XSS, IDOR).
  • Performed systematic network reconnaissance and service enumeration using Nmap; produced structured client-facing vulnerability reports with proof-of-concept demonstrations and prioritized remediation roadmaps.
  • Monitored application and system logs for threat indicators and anomalous activity; investigated suspicious patterns and supported incident response across 3 internal security events.
  • Assisted in system hardening by identifying and remediating misconfigurations across web server and application deployments, reducing exploitable attack surface.

Freelance Cybersecurity Analyst & Technical Consultant

Self-Employed (CodeServe Tech, GBS)

2025 – Present
  • Conducted independent security assessments for client web applications and systems applying structured VAPT methodology; delivered client-verified reports with actionable remediation and proof-of-concept evidence.
  • Identified vulnerabilities including input validation flaws, authentication misconfigurations, and exploitation vectors across multiple client environments.
  • Performed full-cycle reconnaissance, scanning, and analysis using Nmap, Burp Suite, and custom Python-based automation scripts.

Technical Lead — Codement-24 Hackathon

Institutional Hackathon

2024
  • Led technical planning and execution of a 24-hour intercollegiate hackathon with 50+ competing teams (~200 participants).
  • Coordinated judging panels, problem statement design, and real-time technical support across all tracks.

Lead — Tech Talk Friday (Technical Podcast)

Institutional Podcast Initiative

2024 – 2025
  • Managed end-to-end production of technical podcast covering cybersecurity, AI, and engineering topics.
  • Led content planning, speaker coordination, and episode structure for a regular technical discussion series.

Security Workflow

From reconnaissance to remediation — a repeatable process that keeps findings practical.

01

Reconnaissance

Map attack surface and service exposure using structured discovery and protocol-level analysis.

02

Validation

Run focused vulnerability checks and verify exploitability across web endpoints and core flows.

03

Reporting

Document impact, proof-of-concept details, and prioritized remediation guidance for implementation teams.

04

Hardening

Apply fixes, retest critical paths, and track residual risk to improve operational security posture.

Education

Academic foundation supporting cybersecurity and systems-focused career goals.

🎓

Nutan College of Engineering and Research, Pune

B.Tech in Electronics and Communication Engineering

2022 – 2026 (Expected Graduation: June 2026)

📚

Sahakar Vidya Mandir and Jr. College, Buldhana

Higher Secondary Certificate (HSC)

2022 · 82.17%

📖

Sahakar Vidya Mandir, Buldhana

Secondary School Certificate (SSC)

2020 · 83.80%

Highlights

Certifications, leadership experience, and hands-on technical growth.

🛡️
Certification

Certified Network Security Practitioner (CNSP)

The SecOps Group

Validated foundational and practical network security skills covering defense concepts, real-world security workflows, and network threat assessment.

Verify Certificate ↗

1 / 7

·

Drag to navigate

Open to Opportunities

Available for remote, hybrid, and on-site roles in security analysis, SOC, and systems engineering.

maheshudaykar11@gmail.com

Security-first mindset, systems-level execution.

Final-year engineering student with practical experience in VAPT, phishing detection, automation tooling, and embedded control systems. Open for internships and full-time opportunities.

Let's Connect

Open to internships, full-time roles, and project collaboration in security and systems.

Currently available

Open to internships, graduate roles, and freelance security or systems projects.