Open redirects are not dead! Or are they?
Over the last few years doing bug bounties, it's becoming more and more common for companies to reject reports about Open Redirects. Once upon a...
Uncovering security risks where others see features. Expertise in ethical hacking, application security, and building resilient software.
Recent discoveries and technical writeups
Over the last few years doing bug bounties, it's becoming more and more common for companies to reject reports about Open Redirects. Once upon a...
Back in December 2019 I reported a Microsoft Teams Tenancy Permission bypass that allowed a user to modify...
URL shorteners are great! They allows users to turn a 200 character url into something substansially less. It's ideal for those...
Vulnerabilities discovered and reported to strengthen security postures
Many reports since 2018
Shazam Android Vulnerability
Multiple Reports
Android Vulnerabilities
Android Vulnerabilities
No disclosure on details
Many prefer no disclosure
I'm available for web, API and Android application penetration testing, bug bounty engagements, live hacking events, and other security-related projects.
Whether you're securing your digital assets, testing for vulnerabilities, or need an expert eye on your system’s defenses, I’m here to help.
Get in touch to collaborate on securing the digital world!
Security conferences and hackathons I've attended
I attended the first ever live hacking event in London. It was an incredible experience collaborating with other security researchers on finding vulnerabilities in real-time.
POST COMING SOON!This event took place in Las Vegas with high-profile clients. A unique opportunity to test my skills against complex security challenges.
POST COMING SOON!I'm always looking for new challenges and opportunities to share my knowledge with the security community. If you're hosting an event or know someone who is, I'd love to hear from you.
Get in TouchQuestions, feedback, or work inquiries? I'd love to hear from you.
Whether you need help with security testing, vulnerability assessment, or secure development practices, I'm here to help. I'm particularly interested in challenging projects that push the boundaries of web and mobile security.