βββββββββββ ββββββββββββββ βββββββββββββββββββ βββββββ
βββββββββββ ββββββββββββββ βββββββββββββββββββββββββββ
ββββββββββββββββββββββ ββββββββββββββββββββββ βββ
ββββββββββββββββββββββ ββββββββββββββββββββββ βββ
βββββββββββ ββββββββββββββ βββββββββββββββββββββββββββ
βββββββββββ ββββββββββββββ βββββββββββββββββββ βββββββ
βββ(ShehSecγΏkali)-[~/]
ββ$ cat identity.json
{
"name" : "Shehzad Ali",
"alias" : "ShehSec",
"role" : "Cybersecurity Engineer",
"teams" : ["π΄ Red", "π΅ Blue", "π£ Purple"],
"location" : "π΅π° Pakistan",
"experience" : "4+ yrs offensive | 2+ yrs industry",
"education" : "BS CS β Hazara University (3.54 GPA)",
"cve" : "CVE-2025-24966 β reNgine Project",
"bounties" : "HackerOne β Active Researcher",
"status" : "[+] Always Hacking... ethically."
}
|
|
|
[2024 β NOW ] π΄ Cybersecurity Researcher | Penetration Tester
Secure Purple Β· Islamabad, Pakistan
β Assessments: Web Β· Mobile Β· API Β· Cloud Β· AI/LLM Β· Desktop
β Manual pentesting + emerging threat research
[2024 β 2025] π΅ Security Engineer Intern
KPITB β Khyber Pakhtunkhwa IT Board Β· Peshawar
β VAPT for government digital infrastructure
β System hardening + compliance security improvements
[2023 β NOW ] π£ Penetration Tester (Contract)
OffensioX Β· Islamabad
β VAPT & Red Team engagements
β Attack simulation + detection/response evaluation
[2021 β NOW ] π’ Security Researcher β Bug Bounty
HackerOne Β· Remote / USA
β Critical vulnerability disclosure for global orgs
β Logic flaws Β· Misconfigs Β· Novel exploitation vectors
| ποΈ | Cert | Full Name | Status |
|---|---|---|---|
| π― | CEH | Certified Ethical Hacker β EC-Council | β |
| π | eCPPTv3 | Certified Professional Penetration Tester | β |
| π | eWPTXv3 | Web App Penetration Tester eXtreme | β |
| π | ASCP | API Security Certified Professional | β |
| π± | CAPen | Certified AppSec Pentester | β |
| π | CASA | Certified API Security Analyst | β |
| π‘οΈ | Cybersecurity Professional | β |
projects = {
"XSS-Finder": {
"type": "π΄ Offensive Tool",
"desc": "CLI β automated XSS detection for bug bounty hunting",
"tech": ["Python", "Requests", "Payload Testing"],
},
"Blind-XSS-Headers": {
"type": "π΄ Offensive Tool",
"desc": "Blind XSS via HTTP header payload injection automation",
"tech": ["Python", "HTTP Manipulation"],
},
"Vuln-Assessment-Tool": {
"type": "π£ Research / FYP-2024",
"desc": "Python scanner β SQLi, XSS & misconfiguration detection",
"tech": ["Python", "SQLi", "XSS", "Remediation Suggestions"],
},
}π [2024] Finalist ββ BlackHat MEA Cybersecurity CTF ββ Riyadh, Saudi Arabia
π [2024] Finalist ββ Digital Pakistan Cyber Security Hackathon
π [2023] Finalist ββ NCCS Hackathon
π [2023] Finalist ββ Ignite Cyber Security Hackathon
π [2025] CVE Contributor ββ CVE-2025-24966 (reNgine Project)
CVE-2025-24966 β Responsible disclosure in reNgine open-source recon framework. Real research, real impact. π―
PING ShehSec ([email protected])
64 bytes: icmp_seq=1 β Open to pentesting gigs, red team collabs & bug bounty. π€
ββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
β π΄ Attack. π΅ Defend. π£ Dominate. β The ShehSec Way. β
ββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
β‘ All activities are authorized & ethical Β· Built with β & terminal sessions
