
Shahariar Amin
Bug Bounty Hunter
About
I am a dedicated security researcher with over three years of self-directed training in Penetration Testing, Offensive & Defensive security. My experience spans bug bounty programs, competitive challenges, and academic research, showcasing my ability to identify critical vulnerabilities and develop innovative security solutions. Proficient in a variety of security tools, I continuously strive to enhance my skills and contribute to the cybersecurity community

Bug Bounty Hunter | Security Researcher | Instructor
Specializing in penetration testing, vulnerability research, and threat analysis, I uncover critical security flaws to protect digital ecosystems. With a proven track record in bug bounty programs and a passion for innovative defense strategies, I’m committed to advancing cybersecurity.
With a strong foundation in Computer Science and hands-on experience in offensive and defensive security, I’ve successfully identified vulnerabilities for global organizations through bug bounty programs. My work has been recognized in competitive challenges, and I actively contribute to the cybersecurity community by sharing insights and developing tools. I’m driven by a mission to secure technology and empower businesses against evolving threats.
Valid Reported Bugs Bugcrowd, Bugbase & Hackerone
Conducted Sessions RUET Cyber Security Club
CTF participations Cyber Drill, Leetcon etc
Compitative Problem Solver Codeforces & Codechef
Skills
"Security isn't about perfect systems - it's about perfecting our understanding of imperfect ones. Every zero-day discovered is a lesson learned."
Penetration Testing
- Web/Network/Cloud based platforms
Bug Bounty Hunting
- 30+ critical vulnerabilities
- 10+ ATO vulnerabilities
- 87% acceptance rate on Bugcrowd
Cloud Security
- AWS/Azure hardening
Security Framework
- ISO 27001
- NIST
- GDPT
- HIPPA
LLM Security
- HouYI Methodology
- Enhanced HouYI Methodology(R&D)
CTF Specialties
- Top 2% TryHackMe
- Cryptography/Forensics
- Web/OSINT
Programming
- Python/JavaScript
- Java
- C/C++
- Bash/PowerShell
Tools & Platforms
- Linux
- Burp Suite/OWASP ZAP
- Metasploit/Nuclei
- Nmap
Soft Skills
- 50+ training sessions
- 200+ attendees
- 3 top-10 teams
Software Engineering Skills
- Git & Version Control
- Database Design and Handling
- MERN stack
- SDLC & Agile Methodologies
Resume
Download My Resume: Download
Sumary
Shahariar Amin
With three years of focused training in offensive and defensive security, vulnerabilities are systematically identified through bug bounty programs and research. Security solutions are developed while maintaining proficiency across industry tools, contributing to the cybersecurity community through continuous skill enhancement.
- Rajshahi-6204, Bangladesh
- +8801750009397
- shahariarwalid@gmail.com
Education
Bachelor of Computer Science & Engineering
2020 - 2025
Rajshahi University of Engineering and Technology(RUET), Rajshahi, Bangladesh
Research
Enhanced Prompt Injection Attack against LLM-integrated Applications
2025 - Present
Supervised by: Rizaon Toufiq, Assosiate professor, Dept of CSE, RUET
Professional Experience
Cybersecurity Analyst (Intern)
06/2023 - 10/2023
Senselearner Technologies Pvt. Ltd
- APT threats and enhanced detection rules.
- Performed real-time log analysis using SIEM tools
- Created a comprehensive cybersecurity framework for a medical center.
Web Application Penetration Tester (Intern)
06/2024 - 09/2024
- Conducted 5 black-box penetration tests identifying a Critical authentication bypass using Response Manipulation and 2 SSRF vulnerabilities in cloud infrastructure
- Improved custom Nuclei templates that improved test coverage by 15%
- Documented findings with actionable remediation guidance for clients
Bug Bounty Hunter
01/2024 - Present
- Discovered 30+ valid vulnerabilities including 10 Authentication flaws across different platforms
- Three Hall of Fames
- Maintained an 87% acceptance rate on the Bugcrowd platform
Security Blogs
I document my valid bug bounty findings and security research through detailed write-ups. Here's a collection of my published blogs.
Portfolio
This is my photo gallery. which contains photos of my works, certification, mentorship etc...
- All
- Certificates
- Honor
- Sessions
Projects
Sometimes, I develop tools for Bug Bounty and Pentesting purposes, most of them are private, some public tools are given below....
Steganographer
JS Downloader
URL Classifier
DOM manipulator
Basic Recon Script
MERN ecom
Community Engagement
Sometimes, I engage with the community by writing blogs, creating tools, and sharing knowledge.
Mentoring
- Mentor, RUET Cyber Security Club
- Mentoring aspiring CTF players
- Sharing knowledge and experiences
Former President
Volunteer
Contact
Address
RUET,Station Road, Rajshahi-6204, Bangladesh
Call Me
+8801750009397
WhatsApp Me
