Red Team Analyst and Bug Bounty Researcher specializing in AI-augmented offensive security. Hands-on expertise across Red Teaming, Network Pentesting, Active Directory Attacks, API Security, LLM Security, and Web Application Testing.
// 01. about
// 02. experience
// 03. achievements
// 04. projects
AI-driven C2 bridging Sliver with Telegram via OpenClaw. Operator sends plain English commands — Shadow AI executes via Python wrapper. Full adversary simulation: initial access → persistence → lateral movement. Implant generation for Linux/Windows/macOS.
Full SOC stack with Suricata NIDS and Wazuh SIEM on Ubuntu Server. Centralised threat detection and alert correlation. Automated Telegram alerts via OpenClaw every 60 seconds. Auto iptables/UFW IP blocking on configurable severity threshold.
DoS/DDoS detection using Random Forest ML algorithm with real-time CustomTkinter GUI for live traffic monitoring. Automatic IP blocking via iptables on anomaly detection. Trained on network traffic datasets.
// 05. skills
// 06. certifications
// 07. bug bounty
| Platform | Target | Severity | Type |
|---|---|---|---|
| HackerOne | AT&T | 🔴 Critical | Internal Infrastructure Disclosure (WildFly Admin Console) |
| HackerOne | Vodafone Oman | 🔴 Critical | Azure Telemetry Injection |
| HackerOne | Dyson | 🔴 Critical | Host Header Injection → Session Hijacking |
| HackerOne | Udemy | 🟠 Medium | API Improper Access Control |
| Paytm | Paytm | 🏆 Cert | BBCERT #11000000206 |
| Ably | Ably | 💰 $150 | Broken Access Control — Inkeep WebIntegrationKey |
// 08. education
// 09. platforms
// 10. contact
Open to security research collaborations, bug bounty programs, and red team opportunities.
krithickcyber@gmail.com