Shah Alom

Shah Alom Email and Phone Number

Web Applications Security Researcher & Cybersecurity Specialist | Professional Penetration Tester | Mastered explaining very complicated issues in a simple manner @ Bugcrowd
san francisco, california, united states
Shah Alom's Location
Faridpur, Dhaka, Bangladesh, Bangladesh
About Shah Alom

Hi there!I'm a Passionate penetration tester with 4+ years of experience in identifying and exploiting security vulnerabilities in web applications, networks, and systems. Proven ability to think like an attacker and use a variety of tools and techniques to gain unauthorized access to critical assets. Skillfulness in risk assessment, vulnerability assessment, and OWASP Top Ten penetration testing methodologies.Key Skills:• Web Application Penetration Testing• Vulnerability Assessment• Security Tools & Techniques• Network Penetration Testing• System Pentesting• Ethical Hacking• Business Logic Vulnerability• Data Protection• Risk Assessment• Report writing and PresentationAccomplishments:Effectively finished over 85+ Penetration tests for clients in a diversity of industries, including financial, healthcare, and technology.Identified and exploited critical security vulnerabilities in major web applications and networks.Helped clients in remediating vulnerabilities and improving their security posture.Presented findings to clients and stakeholders at all levels.My Services: Validation / SanitizationClickjackingCommand InjectionCookie-Based XSSCross Site Script Inclusion (XSSI)CSS injectionCSV InjectionDOM-Based XSSFlash-Based XSSHTML injectionHTTP Parameter Pollution to XSSHTTP Request SmugglingHTTP Response Splitting (CRLF)iframe InjectionLDAP injectionLocal File InclusionOpen RedirectReflected File Download (RFD)Reflected XSSReflected XSS - WAF bypassRemote Code ExecutionRemote File InclusionRosetta FlashServer Side Template InjectionServer Side Template Injection (SSTI) in FlaskSSI InjectionServer-side request forgeryTRACE Method XSS - Cross-Site Tracing (XST)Session management +Access control

Shah Alom's Current Company Details
Bugcrowd

Bugcrowd

View
Web Applications Security Researcher & Cybersecurity Specialist | Professional Penetration Tester | Mastered explaining very complicated issues in a simple manner
san francisco, california, united states
Website:
bugcrowd.com
Employees:
194
Shah Alom Work Experience Details
  • Bugcrowd
    Bug Bounty Hunter
    Bugcrowd Mar 2024 - Present
    San Francisco, California, United States
  • Hackerone
    Web Applications Security Researcher | Bug Hunter
    Hackerone Dec 2022 - Present
  • Zendesk
    Penetration Tester
    Zendesk Jan 2022 - 2023
    San Francisco, California, United States
    I used to work as a Penetration Tester at Zendesk company, example working more on these vulnerability Authentication #1-Authentication Bypass#2-Factor Authentication (2FA) Bypass#3-CAPTCHA Bypass - X-Forwarded-For#4-Lack of Password Confirmation#5-Lack of Verification Email#6-Mail Bombing in the Contact Form#7-Missing brute-force protection for two-factor authentication#8-No Rate Limiting on a Form#9-No Rate Limiting or Captcha on Login Page#10-Password Cracking for Common/Weak Passwords when Password Policy is Weak#11-Username/Email Address Enumeration#12-Using Default Credentials#13-Weak 2FA Implementation#14-Weak Login Function#15-Weak Password Policy#16-Weak Registration Implementation over HTTP Business Logic#1-DoS - App Crash#2-File Upload - No Size Limit#3-Horizontal Privilege Escalation#4-Negative Bank Transaction#5-No Antivirus - EICAR file Upload#6-Unrestricted File Upload - File Extension Filter Bypass#7-Vertical Privilege Escalation Malicious Code#1-Subdomain Takeover#2- Data Protection....Idor#3-Cross-site scripting (XSS)#4-Server-Side template injection#5-RCE I used to work on many other things Etc
  • Arena Web Security
    Penetration Tester
    Arena Web Security Jan 2021 - Dec 2021
    Dhaka, Bangladesh
  • Arena Web Security
    Penetration Tester
    Arena Web Security Jan 2021 - Jun 2021
    Dhaka, Bangladesh
    Internship

Shah Alom Skills

Management Customer Service Business Planning Marketing Sales Rail Start Ups Business Development Project Planning Operations Management Marketing Strategy Negotiation Lettings Real Estate Risk Management Inspection Time Management Investment Properties Team Leadership

Shah Alom Education Details

  • Ines Expertise
    Web Application Penetration Tester
  • Hackersera
    Hackersera
    Offensive Bug Bounty || Offensive Bug Bounty Hunter 2.0
  • Arena Web Security
    Arena Web Security
    Penetration Testing
  • Indian Cyber Security Solutions ( Greenfellow It Security Solutions Pvt Ltd)
    Indian Cyber Security Solutions ( Greenfellow It Security Solutions Pvt Ltd)
    Penetration Testing
  • Byte Capsule
    Byte Capsule
    Cyberattack

Frequently Asked Questions about Shah Alom

What company does Shah Alom work for?

Shah Alom works for Bugcrowd

What is Shah Alom's role at the current company?

Shah Alom's current role is Web Applications Security Researcher & Cybersecurity Specialist | Professional Penetration Tester | Mastered explaining very complicated issues in a simple manner.

What schools did Shah Alom attend?

Shah Alom attended Ines Expertise, Hackersera, Arena Web Security, Indian Cyber Security Solutions ( Greenfellow It Security Solutions Pvt Ltd), Byte Capsule.

What skills is Shah Alom known for?

Shah Alom has skills like Management, Customer Service, Business Planning, Marketing, Sales, Rail, Start Ups, Business Development, Project Planning, Operations Management, Marketing Strategy, Negotiation.

Who are Shah Alom's colleagues?

Shah Alom's colleagues are Sarath Sk, Danylo Dmytriiev, Jr D., Jaishiv Bhardwaj, Athp Tech, Abhiyan Chhetri, Varun Gupta.

Not the Shah Alom you were looking for?

  • Shah Alom

    Cto At Micro Solutions Bangladesh
    Bangladesh
    2
    gmail.com, yahoo.com
  • Shah Alom

    Ux/Ui Designer | Ux Researcher | Creative Thinker | Tech Enthusiast
    Sylhet, Bangladesh
  • Shah Alom

    Recruitment Executive At Foodpanda | Ex Shopup |
    Dhaka
  • Shah Alom

    Search Engine Optimization Specialist At Upwork
    Magura District

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.