David Dworken is a Member of Technical Staff and software security engineer with 11 years of experience, currently at Anthropic after a five-year tenure as Staff Security Engineer at Google. He specializes in web and systems security, has reported dozens of vulnerabilities via HackerOne for companies including Uber, United Airlines, and Western Union, and ranks among the top researchers on Uber’s program. His open-source work spans Keybase (adding robust proxy support), Certbot, and network/security tools for wireless and IPv6 reconnaissance—he built a distributed system that discovered over five times more IPv6 hosts than prior public datasets. Hands-on internships at Snapchat, Salesforce, and Datadog produced practical defenses like an automated log-redaction library and CI static analysis tooling, illustrating a rare blend of offensive discovery and production-grade security engineering.
Keybase Go Library, Client, Service, OS X, iOS, Android, Electron
Role in this project:
Back-end Developer
Contributions:210 commits, 59 PRs, 168 pushes in 2 months
Contributions summary:David primarily focused on enhancing proxy support within the Keybase Go client. Their contributions included adding support for various proxy types (SOCKS, HTTP Connect), implementing related configuration options, and incorporating necessary code changes for proxy integration within the go library. They also added unit tests and documentation related to the new proxy functionality. Moreover, the user made changes in the UI to control configured proxy settings.
Contributions summary:David primarily focused on integrating and expanding the functionality of `LANs.py`, a network reconnaissance and exploitation tool. The commits show the addition of features such as Wi-Fi deauthentication capabilities through integration with `wifijammer.py`, alongside improvements to the existing arguments and features. These changes demonstrate a focus on network security auditing and wireless penetration testing techniques, expanding the tool's ability to identify and potentially exploit network vulnerabilities.
probenetwork-toolsandroidaircrack-nginject
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.