Shahariar Amin

Bug Bounty Hunter

About

I am a dedicated security researcher with over three years of self-directed training in Penetration Testing, Offensive & Defensive security. My experience spans bug bounty programs, competitive challenges, and academic research, showcasing my ability to identify critical vulnerabilities and develop innovative security solutions. Proficient in a variety of security tools, I continuously strive to enhance my skills and contribute to the cybersecurity community

Bug Bounty Hunter | Security Researcher | Instructor

Specializing in penetration testing, vulnerability research, and threat analysis, I uncover critical security flaws to protect digital ecosystems. With a proven track record in bug bounty programs and a passion for innovative defense strategies, I’m committed to advancing cybersecurity.

  • Birthday: 17 Oct 1999
  • Nationality: Bangladeshi
  • Phone: +8801750009397
  • City: Satkhira, Khulna, Bangladesh
  • Age: 25
  • Degree: BSc. in CSE
  • Email: shahariarwalid@gmail.com
  • Free to work: Available

With a strong foundation in Computer Science and hands-on experience in offensive and defensive security, I’ve successfully identified vulnerabilities for global organizations through bug bounty programs. My work has been recognized in competitive challenges, and I actively contribute to the cybersecurity community by sharing insights and developing tools. I’m driven by a mission to secure technology and empower businesses against evolving threats.

Valid Reported Bugs Bugcrowd, Bugbase & Hackerone

Conducted Sessions RUET Cyber Security Club

CTF participations Cyber Drill, Leetcon etc

Compitative Problem Solver Codeforces & Codechef

Skills

    "Security isn't about perfect systems - it's about perfecting our understanding of imperfect ones. Every zero-day discovered is a lesson learned."

Penetration Testing

  • Web/Network/Cloud based platforms

Bug Bounty Hunting

  • 30+ critical vulnerabilities
  • 10+ ATO vulnerabilities
  • 87% acceptance rate on Bugcrowd

Cloud Security

  • AWS/Azure hardening

Security Framework

  • ISO 27001
  • NIST
  • GDPT
  • HIPPA

LLM Security

  • HouYI Methodology
  • Enhanced HouYI Methodology(R&D)

CTF Specialties

  • Top 2% TryHackMe
  • Cryptography/Forensics
  • Web/OSINT

Programming

  • Python/JavaScript
  • Java
  • C/C++
  • Bash/PowerShell

Tools & Platforms

  • Linux
  • Burp Suite/OWASP ZAP
  • Metasploit/Nuclei
  • Nmap

Soft Skills

  • 50+ training sessions
  • 200+ attendees
  • 3 top-10 teams

Software Engineering Skills

  • Git & Version Control
  • Database Design and Handling
  • MERN stack
  • SDLC & Agile Methodologies

Resume

Download My Resume: Download

Sumary

Shahariar Amin

With three years of focused training in offensive and defensive security, vulnerabilities are systematically identified through bug bounty programs and research. Security solutions are developed while maintaining proficiency across industry tools, contributing to the cybersecurity community through continuous skill enhancement.

  • Rajshahi-6204, Bangladesh
  • +8801750009397
  • shahariarwalid@gmail.com

Education

Bachelor of Computer Science & Engineering

2020 - 2025

Rajshahi University of Engineering and Technology(RUET), Rajshahi, Bangladesh

Research

Enhanced Prompt Injection Attack against LLM-integrated Applications

2025 - Present

Supervised by: Rizaon Toufiq, Assosiate professor, Dept of CSE, RUET

Professional Experience

Cybersecurity Analyst (Intern)

06/2023 - 10/2023

Senselearner Technologies Pvt. Ltd

  • APT threats and enhanced detection rules.
  • Performed real-time log analysis using SIEM tools
  • Created a comprehensive cybersecurity framework for a medical center.

Web Application Penetration Tester (Intern)

06/2024 - 09/2024

TheCyberHost

  • Conducted 5 black-box penetration tests identifying a Critical authentication bypass using Response Manipulation and 2 SSRF vulnerabilities in cloud infrastructure
  • Improved custom Nuclei templates that improved test coverage by 15%
  • Documented findings with actionable remediation guidance for clients

Bug Bounty Hunter

01/2024 - Present
  • Discovered 30+ valid vulnerabilities including 10 Authentication flaws across different platforms
  • Three Hall of Fames
  • Maintained an 87% acceptance rate on the Bugcrowd platform

Security Blogs

I document my valid bug bounty findings and security research through detailed write-ups. Here's a collection of my published blogs.

Portfolio

This is my photo gallery. which contains photos of my works, certification, mentorship etc...

  • All
  • Certificates
  • Honor
  • Sessions

Projects

Sometimes, I develop tools for Bug Bounty and Pentesting purposes, most of them are private, some public tools are given below....

Steganographer

  • Steganography tool to hide data in images
  • Help me solving CTF Challanges
  • Python-based with a simple GUI(django)
  • JS Downloader

  • JavaScript downloader for pentesting
  • Helps to download JS files from a website
  • Bash Script
  • URL Classifier

  • URL Classifier for Bug Bounty
  • Helps to classify URLs based on their responces
  • Python-based project without GUI
  • DOM manipulator

  • DOM Manipulator for Bug Bounty
  • Helps to manipulate DOM elements
  • Simple HTML based project to exclarate DOM based bugs
  • Basic Recon Script

  • Basic Recon Script for Bug Bounty
  • Helps to automate Recon
  • Developed using both python and bash
  • MERN ecom

  • MERN e-commerce website
  • Full-stack project with React, Node.js, Express, and MongoDB
  • Includes user authentication and product management
  • Secure Coding
  • Community Engagement

    Sometimes, I engage with the community by writing blogs, creating tools, and sharing knowledge.

    Mentoring

    Former President

    RUET Cyber Security Club

    Volunteer

    Cloud Native Rajshahi

  • Contributing to the Cloud Environments
  • Participating in events and workshops
  • Contact

    Address

    RUET,Station Road, Rajshahi-6204, Bangladesh

    Call Me

    +8801750009397

    WhatsApp Me

    WhatsApp QR Code
    Get in Touch
    Sending...
    Thank you! Your message was sent successfully. I will get back to you soon.