I'm Öner Efe Güngör, an offensive-security focused Penetration Tester & Vulnerability Researcher based in Ankara, Türkiye.
I started programming at a young age and eventually moved into cybersecurity through game modding, Kali Linux, and security tooling. Today, my main focus is:
- Web & API Penetration Testing
- Vulnerability Research
- Exploit / PoC Development
- Application Security
- CVE / N-day Analysis
- Reverse Engineering
I currently work on security assessments, vulnerability validation, technical reporting, and remediation verification.
-
CVE-2026-19532 — HAVELSAN Liman MYS
Credited finder of a CWE-22 Path Traversal vulnerability. Developed a reproducible PoC and supported remediation validation. -
CVE-2026-15013 — miniOrange SAML SSO Auth Bypass
Independent PoC published on Exploit-DB — EDB-52668. -
CVE-2026-65008 — Grav CMS Authenticated RCE
Python exploit / PoC published on Exploit-DB — EDB-52669.
I also work on CVE reproduction, N-day analysis, validation tooling, and controlled security research.
SecTestGen — Security regression-testing platform combining static analysis, SBOM data, reachability analysis, and automated vulnerability tests.
Flipper_Jam — Wireless-security research tooling for controlled lab environments.
Ghost-Audit — BadUSB / HID attack-surface research for controlled Windows security testing.
- eWPTX — Web Application Penetration Tester eXtreme
- Blue Team Junior Analyst
- Google Cybersecurity Professional Certificate
- IBM Cybersecurity Analyst Professional Certificate
- 🥈 ADS'26 CTF — 2nd Place
- SAS CTF 2026 — Kaspersky
- Türkiye: 4th
- Regional: 11th / 362
- Global: 54th / 1,662
Python Bash SQL PHP Linux Docker
Burp Suite Nmap Nessus ffuf Wireshark
Semgrep Bandit CodeQL CycloneDX
Game development, reading, music production and gaming.
🚀 Open to connecting with security researchers, penetration testers, and developers.



