
yosi
Web Application Penetration Tester Security Researcher
Kompetenzen

Meine Dienstleistungen


Portfolio
Arbeitserfahrung
Independent Security Researcher
Freelance • Freiberufler
Sep 2025 - Present • 11 mos
Conduct independent cybersecurity research and authorized security testing focused on web applications, APIs, and external attack surfaces. Perform vulnerability research, manual web security testing, attack surface mapping, asset and endpoint discovery, API analysis, and security automation. Developed Bash-based security automation workflows, including VulnHunter-AI, to organize reconnaissance data, classify endpoints, preserve evidence, and prioritize higher-value investigation targets. Research follows defined authorization and scope, with emphasis on baseline and control comparison, reproducibility, manual validation, minimal-impact proof of concept, and responsible disclosure. Document technical findings with supporting evidence, demonstrated impact, limitations, and actionable remediation guidance.