Shah Alom Email and Phone Number
Hi there!I'm a Passionate penetration tester with 4+ years of experience in identifying and exploiting security vulnerabilities in web applications, networks, and systems. Proven ability to think like an attacker and use a variety of tools and techniques to gain unauthorized access to critical assets. Skillfulness in risk assessment, vulnerability assessment, and OWASP Top Ten penetration testing methodologies.Key Skills:• Web Application Penetration Testing• Vulnerability Assessment• Security Tools & Techniques• Network Penetration Testing• System Pentesting• Ethical Hacking• Business Logic Vulnerability• Data Protection• Risk Assessment• Report writing and PresentationAccomplishments:Effectively finished over 85+ Penetration tests for clients in a diversity of industries, including financial, healthcare, and technology.Identified and exploited critical security vulnerabilities in major web applications and networks.Helped clients in remediating vulnerabilities and improving their security posture.Presented findings to clients and stakeholders at all levels.My Services: Validation / SanitizationClickjackingCommand InjectionCookie-Based XSSCross Site Script Inclusion (XSSI)CSS injectionCSV InjectionDOM-Based XSSFlash-Based XSSHTML injectionHTTP Parameter Pollution to XSSHTTP Request SmugglingHTTP Response Splitting (CRLF)iframe InjectionLDAP injectionLocal File InclusionOpen RedirectReflected File Download (RFD)Reflected XSSReflected XSS - WAF bypassRemote Code ExecutionRemote File InclusionRosetta FlashServer Side Template InjectionServer Side Template Injection (SSTI) in FlaskSSI InjectionServer-side request forgeryTRACE Method XSS - Cross-Site Tracing (XST)Session management +Access control
Bugcrowd
View- Website:
- bugcrowd.com
- Employees:
- 194
-
Bug Bounty HunterBugcrowd Mar 2024 - PresentSan Francisco, California, United States -
Web Applications Security Researcher | Bug HunterHackerone Dec 2022 - Present -
Penetration TesterZendesk Jan 2022 - 2023San Francisco, California, United StatesI used to work as a Penetration Tester at Zendesk company, example working more on these vulnerability Authentication #1-Authentication Bypass#2-Factor Authentication (2FA) Bypass#3-CAPTCHA Bypass - X-Forwarded-For#4-Lack of Password Confirmation#5-Lack of Verification Email#6-Mail Bombing in the Contact Form#7-Missing brute-force protection for two-factor authentication#8-No Rate Limiting on a Form#9-No Rate Limiting or Captcha on Login Page#10-Password Cracking for Common/Weak Passwords when Password Policy is Weak#11-Username/Email Address Enumeration#12-Using Default Credentials#13-Weak 2FA Implementation#14-Weak Login Function#15-Weak Password Policy#16-Weak Registration Implementation over HTTP Business Logic#1-DoS - App Crash#2-File Upload - No Size Limit#3-Horizontal Privilege Escalation#4-Negative Bank Transaction#5-No Antivirus - EICAR file Upload#6-Unrestricted File Upload - File Extension Filter Bypass#7-Vertical Privilege Escalation Malicious Code#1-Subdomain Takeover#2- Data Protection....Idor#3-Cross-site scripting (XSS)#4-Server-Side template injection#5-RCE I used to work on many other things Etc -
Penetration TesterArena Web Security Jan 2021 - Dec 2021Dhaka, Bangladesh -
Penetration TesterArena Web Security Jan 2021 - Jun 2021Dhaka, BangladeshInternship
Shah Alom Skills
Shah Alom Education Details
-
Web Application Penetration Tester -
HackerseraOffensive Bug Bounty || Offensive Bug Bounty Hunter 2.0 -
Arena Web SecurityPenetration Testing -
Indian Cyber Security Solutions ( Greenfellow It Security Solutions Pvt Ltd)Penetration Testing -
Byte CapsuleCyberattack
Frequently Asked Questions about Shah Alom
What company does Shah Alom work for?
Shah Alom works for Bugcrowd
What is Shah Alom's role at the current company?
Shah Alom's current role is Web Applications Security Researcher & Cybersecurity Specialist | Professional Penetration Tester | Mastered explaining very complicated issues in a simple manner.
What schools did Shah Alom attend?
Shah Alom attended Ines Expertise, Hackersera, Arena Web Security, Indian Cyber Security Solutions ( Greenfellow It Security Solutions Pvt Ltd), Byte Capsule.
What skills is Shah Alom known for?
Shah Alom has skills like Management, Customer Service, Business Planning, Marketing, Sales, Rail, Start Ups, Business Development, Project Planning, Operations Management, Marketing Strategy, Negotiation.
Who are Shah Alom's colleagues?
Shah Alom's colleagues are Sarath Sk, Danylo Dmytriiev, Jr D., Jaishiv Bhardwaj, Athp Tech, Abhiyan Chhetri, Varun Gupta.
Not the Shah Alom you were looking for?
-
2gmail.com, yahoo.com
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial