Security Professional

I find
before attackers do

I focus on understanding how systems fail and using that insight to help build more secure and reliable applications.

View Resume
20+ REPORT SUBMITTED
0 THREATS DETECTED
From Development to Security

Independent Security Researcher

Who I Am

I’m a security professional with hands-on experience in cyber security, blockchain, and Web3.I enjoy understanding how systems work, finding where things can go wrong, and helping teams build applications that are secure, reliable, and ready for real-world use.

security.sh
Vulnerabilities

0+

Projects

0+

Solidity
Foundry
Rust
Slither
Ethereum
Aderyn
Solidity
Foundry
Rust
Slither
Ethereum
Aderyn
Career Progression

Hands-On Experience

Security Engineer II

2023 - Present
Albus Security LLP
  • Performed VAPT on client applications to address security risks.
  • Mentored interns in web security and exploit development.
  • Enhanced internal security offerings with cross-team collaboration.
PythonBurpsuiteCRMAPI

Blockchain Intern

2024 - 2024
Metacrafters
  • Assisted in developing and testing smart contracts for EVM-compatible blockchains.
  • Gained practical experience with Solidity, Web3.js, and tools like Hardhat and Foundry.
  • Participated in code reviews, debugging, and unit testing to enhance contract security and reliability.
EVMAvalancheSolidityGo

Security Researcher

2022 - 2023
HackerOne
  • Conducted security research on web applications, APIs, and cloud systems to identify high-impact vulnerabilities.
  • Discovered and reported issues like IDOR data leaks, AWS secret exposures, SQL injections, authentication bypasses, and business logic flaws.
  • Engaged with security communities to share insights and strengthen collective cybersecurity measures.
ReportingOWASPAPIOauth 2.0
Technical Stack

Technologies & Frameworks

Linux

Linux

BurpSuite

BurpSuite

Python

Python

Ethereum

Ethereum

Postman

Postman

React

React

Foundry

Foundry

Docker

Docker

Solidity

Solidity

WordPress

WordPress

Linux

Linux

BurpSuite

BurpSuite

Python

Python

Ethereum

Ethereum

Postman

Postman

React

React

Foundry

Foundry

Docker

Docker

Solidity

Solidity

WordPress

WordPress

Linux

Linux

BurpSuite

BurpSuite

Python

Python

Ethereum

Ethereum

Postman

Postman

React

React

Foundry

Foundry

Docker

Docker

Solidity

Solidity

WordPress

WordPress

Linux

Linux

BurpSuite

BurpSuite

Python

Python

Ethereum

Ethereum

Postman

Postman

React

React

Foundry

Foundry

Docker

Docker

Solidity

Solidity

WordPress

WordPress

Education

Academic & Certifications

Certification

CompTIA

2025 – 2028

CompTIA Security+

Industry-recognized certification covering core cybersecurity concepts including network security, risk management, threat analysis, and security operations.

Bachelor's Degree

Chandigarh University

2022 - 2026

Bachelor of Engineering (B.E.) in Information Security

Focused on security with a specialization in secure systems, programming, and algorithmic problem-solving.

Schooling

Delhi Public School (DPS)

2021-2022

Higher Secondary Education

Completed pre-university studies with a concentration in Physics, Chemistry, and Mathematics (PCM).

Schooling

Delhi Public School (DPS)

2019 - 2020

Secondary Education

Built the foundation of my academic journey while cultivating a strong interest in science and technology.

What I’ve Built

Projects & Publications

Penetration-List

The Penetration List is a curated resource for testers, featuring vulnerabilities, payloads, dorks, bypasses, and fuzzing materials across web, network, and Android penetration testing.

Security ResearchVAPTWeb Security
Vulnerability Assessment Framework - Vagnox

VagnoX 1.0 is a comprehensive Vulnerability Assessment Framework designed to assess web applications effectively. It integrates a variety of in-built techniques and open-source tools to minimize false positives and deliver accurate results.

PythonDevelopmentResearch
Bid Beasts NFT MarketPlace

This protocol implements an auction-based NFT marketplace for the BidBeasts ERC721 token. It enables NFT owners to list their tokens for auction, accept bids from participants, and settle auctions with a platform fee mechanism.

SolidityERC721React
Enhanced 403 Bypass For Web Security – Scopus Publication

In this research, we explore advanced methods for bypassing the 403 (Forbidden) HTTP status code and introduce our custom-built software designed to test web applications for these vulnerabilities. Our study provides a detailed analysis of how effective these bypass techniques are across different web environments.

ResearchPublicationManagement
Polygon Fx-Link

A cross-chain NFT architecture deploying gas-optimized ERC721A contracts on Ethereum. Features decentralized IPFS storage and secure asset bridging to Polygon via the FxPortal protocol.

SolidityFx-PortalPolygon
Contact

Let’s build something
secure and scalable.

Available for new projects
0/500