At Jinvani Media and Entertainment, I assess web applications and APIs, identifying and validating high- and critical-severity vulnerabilities. I focus on access control and SSRF testing, and review authentication and authorization flows.
I conduct secure code reviews in PHP and JavaScript, uncovering issues including SQL injection, XSS, IDOR, and SSRF. I also created Python and Bash tools for reconnaissance and reporting, reducing manual assessment time by 40%.
Through HackerOne and Bugcrowd, I’ve discovered and responsibly disclosed vulnerabilities, including authentication bypass and stored XSS, and received Hall of Fame recognition from more than 50 organizations. Previously, as a Junior Security Analyst at We Digital Enterpreneur, I performed web application and API security assessments and supported remediation and incident response.
