currently: security researcher @ RedHunt Labs — Surat, IN
RedHunt Labs
BugBase
Intigriti · HackerOne
Multi-cloud IAM enumeration CLI — effective permissions across 400+ AWS services, 4000+ GCP permissions, 2000+ Azure operations.
Detects and mitigates vulnerabilities across Docker containers and images — secrets, CVEs, misconfigs.
Firebase misconfiguration detection toolkit built for bug bounty hunters and researchers.
Free serverless alternative to Burp Collaborator — catch SSRF and blind XSS callbacks without infrastructure.
Thousands of secrets leaking through vibe-coded sites — Project Resonance, Wave 15.
My first critical: a zero-interaction account takeover on a private HackerOne program.
How BurpSuite intercepts HTTPS, and a simple Frida workflow to strip pinning from Android apps.