Thanks to visit codestin.com
Credit goes to github.com

Skip to content
View DmytroKashchuk's full-sized avatar
๐ŸŽ“
University of Tulsa
๐ŸŽ“
University of Tulsa
  • University of Tulsa
  • Tulsa (OK)

Highlights

  • Pro

Organizations

@seconlab

Block or report DmytroKashchuk

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
DmytroKashchuk/README.md

๐Ÿ‘‹ Hello, I'm Dmytro (Dima) Kashchuk

๐Ÿ“ง [email protected]

๐Ÿ‘จโ€๐Ÿ’ป About Me

I'm a PhD student in Cyber Security and Economics at the University of Tulsa. With a strong foundation in computer science, economics, and cybersecurity, I focus on researching large-scale vulnerability scanning and improving internet security practices.

๐ŸŽ“ Education

  • Ph.D. in Cyber Security and Economics
    University of Tulsa, Aug 2024 - Present
    Focus: Large-scale vulnerability scanning and Enterprise Security

  • M.S. in Computer Science and Cyber Security
    University of Trento, Sep 2020 - Jun 2023

  • B.S. in Information Engineering and Business Organization
    University of Trento, Dec 2019

๐Ÿ”ฌ Research & Publications

  • "Mind the CORS" (2023) โ€“ IEEE-TPS 2023
    Authors: Matteo Golinelli, Elham Arshad, Dmytro Kashchuk, and Bruno Crispo
    Presented at the 5th IEEE International Conference on Trust, Privacy and Security in Intelligent Systems and Applications (TPS-ISA). This study conducted a large-scale analysis of Cross-Origin Resource Sharing (CORS) configurations across the Tranco Top 50k websites, revealing security flaws in 29.4% of them. The research highlights critical risks, including Denial of Service (DoS) attacks, emphasizing the real-world exploitability of these vulnerabilities.

    ๐Ÿ“„ Read the full paper: IEEE Xplore

  • "Measuring enterprise software supply chain security using public repositories" (2025) โ€“ ACM CCS-SCORED 2025
    Authors: Dmytro Kashchuk, Tyler Moore Presented at ACM CCS 25 - SCORED Workshop. Large-scale SBOM/CVE study of Forbes Global 2000 GitHub repos showing 11.7% vulnerable dependencies, comparable risk in active vs. inactive projects, and widespread reuse of flawed libraries (semver, Log4j); releases the largest public dataset to date.

    ๐Ÿ“„ Read the full paper: IEEE Xplore

๐Ÿ’ก Projects

  • Java E-commerce Platform
    Developed a web-based e-commerce platform using JSP with a real-time chat feature via WebSocket.
  • Telegram Content Crawler
    Co-founded a tool to detect and remove illicit (GORE) content from Telegram channels, assisting national and international agencies in preventing the spread of harmful content.
  • Python Financial Planner
    Created an expense categorization tool using the LLAMA 3 Model.

๐Ÿ› ๏ธ Skills

  • Programming Languages: C#, C++, Python, Java
  • Web Development: Frontend and Backend, Networks
  • Technologies: MySQL, Android Programming, Blockchain, Cryptography

๐Ÿ’ผ Experience

  • Graduate Research Assistant @ The University of Tulsa | Aug 2024 - Present |Tulsa (OK) - USA Part-time and on-site

  • Cybersecurity Researcher @ University of Trento
    Conducted analysis of CORS flaws in top 50K tranco websites and developed a Python scanner to detect CORS misconfiguration that can lead to DoS attacks.

  • Networking Intern @ University of Trento
    Created a Raspberry Pi-based Wi-Fi detection system for disaster response, helping to locate individuals during natural disasters.

๐ŸŒฑ Currently Learning

I'm deepening my expertise in advanced cybersecurity techniques, vulnerability scanning, and ethical hacking.

๐Ÿ’ฌ Let's Connect

โšก Outiste Academia

  • ๐ŸŽฎ Capture The Flag enthusiast and Hack The Box participant
  • ๐Ÿ’ก Passionate about investing in the stock market
  • โšฝ Amateur soccer player
  • โœˆ๏ธ Love exploring new places and experiencing unique adventures
  • ๐ŸŽฎ Player in the TU League of Legends Esports team

Feel free to connect and collaborate on cybersecurity projects or research initiatives!

Popular repositories Loading

  1. Bill Bill Public

    HTML 1 1

  2. DmytroKashchuk DmytroKashchuk Public

    Config files for my GitHub profile.

    1

  3. sbom sbom Public

    1

  4. measuring_enterprise_software_supply_chain_security_using_public_repositories measuring_enterprise_software_supply_chain_security_using_public_repositories Public

    Measuring Enterprise Software Supply Chain Security using Public Repositories

    1

  5. ase2017 ase2017 Public

    Forked from Nittarab/ase2017

    Material for the "Advanced Software Engineering" course at UNITN, 2017-2018

  6. UniSync UniSync Public