My Recon Methodology for Bug Bounty
How I approach passive and active reconnaissance before touching a single exploit — a systematic, noise-reducing methodology that turns OSINT into high-impact findings.
Passionate about discovering complex vulnerabilities before adversaries do. Armed with INE's eJPT, Google Cybersecurity Professional Certification, and a PhD in Physics from JNCASR. Turning curiosity and rigorous scientific method into practical, documented offensive security research and deep learning models.
Methodical security assessments, exploit development, and machine learning pipelines
Selected technical posts on offensive methodologies and AI models
How I approach passive and active reconnaissance before touching a single exploit — a systematic, noise-reducing methodology that turns OSINT into high-impact findings.
A practical walkthrough of privilege escalation vectors in CTFs and real-world engagements: SUID binaries, sudo misconfigs, cron jobs, and kernel exploits.
In-depth research on penetration testing, computer vision ethics, and deep learning architectures
How I approach passive and active reconnaissance before touching a single exploit — a systematic methodology that keeps noise low and findings high.
SUID binaries, sudo misconfigs, cron jobs, writable /etc/passwd — a practical walkthrough of the techniques used in CTFs and pentests.
Convolutional neural network experiments, transfer learning on facial image classification, validation accuracy curves, and data augmentation techniques with FastAI.
Critical analysis of demographic biases, skin tone variations, age representations, and ethical implications in automated facial recognition datasets.
Real-world hands-on vulnerable machine exploits across VulnHub, HackTheBox, and pwn.college
Active vulnerability submissions and validated findings submitted through responsible disclosure and Bugcrowd programs.
Verified professional accreditations and higher academic degrees
A decade of computational modeling, scientific rigor, and programming
Direct communication for security engagements, consultations, or research discussions
For sensitive vulnerability findings, security advisory discussions, or proprietary research, PGP encrypted communication is preferred.