Hi there ๐Ÿ‘‹, I'm

Saroj Kumar Mukhiya.

I break |

Bug Hunter & Security Researcher finding vulnerabilities before the bad guys do. Currently focused on web app security, API testing and penetration testing.

01. About Me

Hello! I'm Saroj, a cybersecurity enthusiast who enjoys turning complex security challenges into simple, actionable solutions. My journey started in 2019 when I discovered the world of ethical hacking โ€” since then I've helped startups and enterprise teams secure their applications.

I specialize in penetration testing, vulnerability assessment, and secure application development. I care deeply about finding bugs before attackers do, and writing secure code that's a joy to audit.

When I'm not hacking, you'll find me contributing to open source security tools, writing tech blogs, or hiking with a camera.

0+

Years Experience

0+

Bugs Found

0+

Apps Tested

0+

CTF Challenges Solved

02. Security Skills & Tools

03. Security Projects

04. Security Experience

2023 โ€” Present

Senior Security Researcher ยท CyberShield Labs

  • Led penetration testing for enterprise clients, finding 100+ critical vulnerabilities.
  • Built automated security scanning pipelines reducing manual audit time by 60%.
  • Mentored junior researchers and established secure code review standards.
Burp SuiteMetasploitAWSKubernetes
2021 โ€” 2023

Bug Hunter ยท Freelance

  • Found 50+ bugs in HackerOne and Bugcrowd programs.
  • Specialized in API security, SSRF, and authentication bypass vulnerabilities.
  • Implemented CI/CD security checks reducing release vulnerabilities by 80%.
OWASPAPI SecurityBug Bounty
2019 โ€” 2021

Junior Security Analyst ยท Freelance

  • Performed vulnerability assessments for small business websites.
  • Automated security scanning workflows saving clients ~10 hrs/week.
NmapLinuxPython

05. Get In Touch

I'm currently open to freelance security consulting and bug bounty hunting. Whether you have a security question or want a pentest โ€” my inbox is always open!