At ANB Solutions Pvt. Ltd., I lead authorised security tests across web, API, mobile, cloud, network, and IT/OT systems for government and enterprise clients. My findings have included SSRF chained to internal RCE, authentication bypass, and race-condition privilege escalation, documented with working proof-of-concepts.
I’ve reverse engineered Android applications using Frida, Objection, and MobSF to bypass SSL pinning and reach protected traffic and hidden API surfaces. I also review PHP, Node.js, and Python codebases to trace vulnerabilities from source to exploitable requests.
At FPLE Technologies Pvt. Ltd., I tested mobile and web gaming platforms, finding flaws in payment flows, wallet logic, and sessions. I uncovered game-economy issues including currency duplication and replay attacks that automated scanners missed.
Earlier, at Swadesh System Pvt. Ltd. and Requin Solutions, I performed VAPT across applications and infrastructure, validated scanner findings, and created Python automation for reconnaissance, enumeration, and reporting. I’ve also delivered security training and founded Cywarx.com, a blog publishing penetration-testing walkthroughs and vulnerability write-ups.

