I break things, find what shouldn't be there, and build tools to do it faster — focused on web, source code, and mobile security. CVEs disclosed. Bugs reported. Tools built when nothing else fits.
| ID | Product | Type | Severity |
|---|---|---|---|
| CVE-2024-40422 | Devika v1 | Path Traversal | |
| CVE-2022-28132 | T-Soft E-Commerce 4 | SQLi | |
| GHSA-hv93-r4j3-q65f | OpenClaw | Auth Bypass |
| Project | What it does | Stack |
|---|---|---|
| Vulnerify | Security testing platform for automated vulnerability discovery | Python, Go |
- 🐛 Hunting on HackerOne & Intigriti
- 🛠️ Building offensive security automation tooling
- 🤝 Open to collaborating on open-source appsec tooling




