[OPERATIONAL SUMMARY]
Cybersecurity analyst and software engineer specializing in web vulnerability assessment, zero-trust infrastructure, and AI security research. I build systems that stay secure under real attack conditions and write code that ships fast without exposing new attack surfaces.
π·οΈ Defendrix: DAST Security ScannerPython Flask Selenium MySQL
An automated application security tester designed to catch injection vulnerabilities before attackers do. It runs fast and keeps setup simple.
|
Python Flask Selenium Heuristics
A local intrusion prevention tool built to stop credential harvesting and phishing attacks on the desktop before payloads execute.
|
Next.js 15 React 19 Express Prisma
A content management system built on strict zero-trust principles. It handles high traffic while maintaining clear internal privilege boundaries.
|
Next.js TypeScript Firebase Genkit Gemini
A vision assistant built to give low-vision users real-time spatial navigation and environmental awareness through natural spoken interaction.
|
Every release, open-source SDK, and security advisory follows a two-channel communication structure. This keeps technical clarity high for engineers while delivering clear risk metrics to executive leadership:
- Target Channels: Personal LinkedIn, X (Twitter), GitHub repositories, and developer community boards.
- Primary Focus: Developer experience, open-source SDK releases in Python and JavaScript, CLI speed, local key verification, and clear installation instructions.
- Tone: Direct, objective, and casual. Speak plain engineering logic like one developer talking to another over coffee. No buzzwords or PR agency fluff.
- Target Channels: Corporate and institutional feeds, security newsletters, and industry partner networks.
- Primary Focus: Enterprise risk management, non-human identity controls, system governance, root registry updates, and regulatory compliance across OWASP and data privacy standards.
- Tone: Calm, authoritative, and focused on operational risk. Present verified facts directly to CISOs, security directors, and technology governance officers.
[DCG Gurugram] Β· Aug 2025 - Present
- Organize local vulnerability research meetups, live exploit breakdown sessions, and practical application security workshops.
- Connect bug bounty hunters, security engineers, and developers to share actual threat data and practical defensive code.
[MRISA: Manav Rachna InfoSec Army] Β· Aug 2024 - Present
- Lead embedded device firmware dissection and wireless hardware hackathons. Mentor junior analysts in practical firmware dumping and protocol analysis.
- Build infrastructure and custom challenge networks for university Capture The Flag competitions running with over 700 active players.
- Run technical workshops that walk through practical exploit mechanics across standard web and network attack vectors.
| π΄ Offensive Security & VAPT | π’ Defensive & AppSec | β‘ Engineering & Cloud | π€ AI & Cognitive Security |
|---|---|---|---|
Title : "AI-Driven Techniques for Web Search Vulnerability Identification"
Publication : IEEE Xplore (2026)
Co-Authors : Alan Jolly John, Sarthak Dubey, Saurav Kumar
Summary : Built machine learning models to test, discover, and categorize structural flaws across modern web search backends.
Dossier : https://ieeexplore.ieee.org/document/11386307| Year | Engagement & Competition Details | Classification | Outcome |
|---|---|---|---|
| 2025 | INTRUSIONX (Offensive Security & VAPT Tournament) | Rank #1 |
π₯ WINNER |
| 2024 | Avinya Tech Fest, IIT Guwahati (National Hackathon) | National Finalist |
ποΈ FINALIST |
| 2023 | Hacksplash 1.0 (Software Engineering & Innovation) | Rank #1 |
π₯ WINNER |
| 2024 | CyCog CTF (Capture The Flag Security Competition) | Rank #8 |
π TOP 10 |
| 2023 | CyberHavoc CTF (National Cybersecurity Tournament) | Rank 170 / 1500+ |
π TOP 11% |
| 2023 | Tech Trover Debugging (Code & Algorithmic Debugging) | Rank #3 |
π₯ 3RD PLACE |
π SECURE BY DESIGN, TESTED BY BREACH. π
[Operator Dossier Synchronized & Encrypted via Git Telemetry]


