Exploit Development
Memory corruption, ROP chains, format strings and Linux kernel exploitation from crash triage to a working exploit.

Penetration tester and solo CTF player specialising in exploit development, reverse engineering, Linux kernel exploitation and LLM pentesting alongside Web, API, Network and Cloud security assessments.
2x
CTF winner — incl. Oscillation CTF 2026
Top 2
HackTheBox India · #20 worldwide
Top 1%
TryHackMe global ranking
603+
Technical writeups published
7x
Bug bounty rewards
8.3k+
Followers on LinkedIn
Expertise across multiple security domains
Responsibly reported vulnerabilities and vendor-patched findings
Roles and engagements from my LinkedIn profile — offensive security consulting, enterprise internships and independent research.
Competition wins, platform rankings, disclosure milestones and community reach.
B.Sc. Information Technology
4th semester · CGPA 7.1
Currently in the 4th semester with a 7.1 CGPA, running offensive security research, CTFs and bug bounty work alongside coursework.
Open-source offensive security tooling — parameter discovery, XSS hunting, URL recon, secret scanning and subdomain enumeration. Star counts come live from GitHub; the full repository list lives on its own page.
603+ writeups mirrored from my GitBook — HTB, picoCTF, exploit development, crypto, Active Directory, AWS and AI pentesting. Each one renders the complete README with every screenshot and diagram.
Hands-on, exam-based offensive security credentials plus verified platform rankings — every entry links to its source so it can be checked independently.
Connect and explore my work across platforms
Interested in collaborating on security research, exploit development, bug bounty programs or penetration testing engagements? Reach out and let's talk.
I take on web and API assessments, network and Active Directory engagements, AWS configuration reviews, LLM red teaming and exploit-development research. Reports come with reproducible proof-of-concepts, business impact and concrete remediation steps — not just a scanner dump.
alhamrizvi@proton.meMumbai, Maharashtra · India