Responsible disclosure is at the heart of ethical hacking. Over the past 8+ years, I've reported security vulnerabilities to more than 200 organizations across industries — from Fortune 500 tech giants to government agencies. Each recognition represents hours of research, careful documentation, and professional collaboration with security teams to help make their products and platforms safer for millions of users worldwide.
Featured Findings
CVE-2020-24416 — Adobe InDesign
Discovered a critical reflected Cross-Site Scripting (XSS) vulnerability in Adobe InDesign's web component. A specially crafted URL could execute arbitrary JavaScript in the context of the victim's session, potentially leading to session hijacking, data theft, and account compromise. Reported through Adobe's PSIRT and patched in a subsequent security update.
MindGeek / Pornhub — Critical Vulnerability
Identified a critical security vulnerability in MindGeek's infrastructure (parent company of Pornhub and other major web properties). The finding was awarded a $10,000 USD bounty — one of the highest payouts in the program — reflecting the severity and potential impact of the discovered vulnerability.
Global Recognition
Recognized on Hall of Fame pages by over 200 organizations globally, including Fortune 500 companies, government agencies (US Department of Defense), financial institutions, and leading technology companies. Each recognition reflects a responsibly disclosed vulnerability that helped improve the organization's security posture.
Recognitions by Category
💻 Technology Giants
Security acknowledgments from the world's largest technology companies for discovering vulnerabilities in their products and platforms.
🏦 Financial & Enterprise
Vulnerabilities reported to major financial institutions and enterprise software companies.
📡 Telecom & Communication
Security research conducted on telecommunications and communication platforms.
🏛 Government & Defense
Responsible disclosure to government agencies and defense organizations through authorized programs.
🕷 Bug Bounty Platforms
Active researcher on major bug bounty platforms with consistent high-impact findings.
🌐 Internet & Media
Vulnerabilities discovered in major internet services, media companies, and web platforms.
Note: This page lists selected recognitions. Many additional acknowledgments are from private programs and organizations that do not publicly list researchers. The complete list of recognitions spans across multiple industries including healthcare, education, e-commerce, automotive, and more.
Want Your Organization Tested?
If you'd like to proactively find vulnerabilities before attackers do, let's discuss a penetration testing engagement.
Get in Touch