HARSHVARDHAN SINGH RATHORE
Security Researcher & Bug Bounty Hunter
OPEN TO WORK (REMOTE)
Download PDF
Dedicated Cybersecurity Professional with Calculating... of total immersion in security concepts and deep-dive vulnerability research. Passionate about securing complex systems, weaponizing advanced security tools, and contributing to enterprise cyber defense. Proficient in exploiting the OWASP Top 10, advanced CWE/CVE analysis, and modern, stealth-focused penetration testing methodologies.
01. Offensive Security Experience
Independent Bug Bounty Hunter
Active
HackerOne, Bugcrowd & Intigriti
- Recent Achievement: Awarded a $1,000+ bounty on Bugcrowd for discovering and exploiting a critical Server-Side Request Forgery (SSRF) vulnerability.
- Developed highly customized testing methodologies focused on exploiting complex business logic flaws and multi-step authorization bypasses.
- Consistently analyzed over 100+ disclosed vulnerability reports to adapt to bleeding-edge exploitation techniques.
Web Application Security Researcher
CTF & Labs
Intigriti, PortSwigger, HackerOne, bWAPP, DVWA
- Regularly solve highly complex Intigriti Monthly Challenges and advanced PortSwigger Academy scenarios, mastering practical CVE exploitation.
- Mastered the exploitation of SQL Injection, XSS, RFI, and LFI across maximum difficulty levels in controlled environments.
02. Projects & Development
HOLE (Bug Bounty Lab)
Cross-platform Desktop Application
A high-end, luxurious application designed for writing professional security blogs and managing a bug bounty research laboratory workspace.
View on GitHub →
GOUP
Professional Journey Tracker
A web application designed to track and showcase professional milestones and career progression.
Visit Website →
03. Technical Arsenal
Vulnerability Expertise
SSRF
IDOR
SSTI
Account Takeover (ATO)
Business Logic Flaws
Server-Side Flaws
API Testing
OAuth Exploitation
MCP
JWT Misconfigurations
Cloud Misconfigurations
Tools & Frameworks
Burp Suite
Nuclei
Metasploit
Nmap
Wireshark
Katana
GoSpider
SQLMap
OWASP ZAP
Acunetix
Web & Architecture
REST APIs
GraphQL
OAuth 2.0
JWT / WebSockets
TCP/IP & VPN
Kali Linux
04. Education & Certifications
Advanced Diploma in Ethical Hacking
Grade: A+ | Samyak IT Solutions
Aug 2024 - Jul 2025 | ID: H3108202-74738J
Ethical Hacking Course
Grade: A | NSDC by Samyak IT Solutions
Completed: Dec 12, 2025 | ID: CAN_34970244
Self-Taught Cybersecurity Research
Dropped out of traditional college after the first year to focus strictly on real-world, practical cybersecurity work and vulnerability exploitation.
12th Grade (Commerce)
Board Examination (78.6%)
05. Professional Strengths
- Zero-Day Mindset: Strong analytical and problem-solving abilities tailored for discovering non-obvious attack vectors.
- Lethal Reporting: Exceptional communication and technical writeup skills, ensuring CVSS scores are accurately articulated for triage teams.
- Adaptive Intel: Highly self-motivated quick learner who constantly adapts to bleeding-edge defensive mitigations.
- Operational Security (OpSec): Disciplined and detail-oriented approach to maintaining integrity during engagements.