Penetration tester and bug bounty hunter. with 3+ years finding what security teams miss — and delivering the remediation path, not just the finding.
I break into web applications — legally — and write the report that helps engineering teams close the gap.
work hands-on across the full offensive workflow: reconnaissance, vulnerability assessment, exploitation, and the part most people skip — clear, reproducible reporting that a developer can actually act on.
My day-to-day runs on Burp Suite Pro, custom Python tooling, and a disciplined methodology aligned to OWASP and CVSS. Off the clock, I hunt on public bug bounty programs and document what I learn.
Full-coverage assessment of modern and legacy web apps — from authentication logic to server-side injection points.
Assessment of REST and GraphQL APIs — broken authorization, mass assignment, and the logic flaws that scanners never catch.
Hardening review and exploitation across Windows and Linux hosts — privilege escalation, misconfigurations, and weak credential hygiene.
Internal and external network assessments — from service enumeration and pivoting to identifying the paths an attacker would actually take.
Manual exploitation backed by custom Python proof-of-concepts. I automate the tedious parts and verify the impactful ones by hand.
Findings mapped to CVSS, CWE and OWASP, written so a developer knows exactly what's wrong, why it matters, and how to fix it.
A practical methodology for surfacing broken object-level authorization on real targets — where to look and how to prove impact.
Read writeup → Crypto · AppSecHow predictable ciphertext leaks more than you'd think, and how to demonstrate the risk without hand-waving.
Read writeup → Tooling · PythonChaining small Python scripts into a repeatable recon workflow that feeds straight into Burp.
Read writeup → Bug BountyWhat consistently pays off on HackerOne and Bugcrowd — and the low-severity traps worth skipping.
Read writeup →Delivering full-scope penetration testing engagements for organizations, alongside active bug bounty research.