Skip to content
View Raiders0786's full-sized avatar
🎯
Building
🎯
Building

Block or report Raiders0786

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Raiders0786/README.md

MasterHead

Hi πŸ‘‹, I'm Chirag

Security Researcher | Synack Red Team Member | Technical Writer

hackinggg

raiders0786

__raiders

  • I'm the creator of Web3Sec.News & DigiBastion.com (Received Ethereum Grants), comprehensive platforms for Web3 security research and operational security/personal digital protection respectively.

  • Synack Red Team Member conducting enterprise security assessments for Fortune 500 companies with 200+ vulnerabilities reported across public and private programs.

  • My expertise spans penetration testing, vulnerability research, smart contract auditing, and incident response with 2 published CVEs (CVE-2023-3067, CVE-2022-4722).

  • To reach out DM me on Telegram -> https://t.me/Raiders0786

  • Professional background LinkedIn

  • Fun fact I believe security is like chess - every move matters, and I enjoy thinking several steps ahead!

Security Research

I work as a professional security researcher focusing on web application security and enterprise penetration testing. As a part of Synack Red Team member conducting security assessments for Fortune 500 companies.

Research highlights:

  • 2 Published CVEs - Critical vulnerabilities in popular applications (30k+ GitHub stars)
  • 200+ Vulnerabilities reported across public and private programs
  • Major platform discoveries - Found critical flaws in GitBook, HackerRank, HashNode, and CodeChef

Public Bug Bounty Achievements

Monetary bounties:

  • Multiple bounties from E-bay (Account takeover, Business logic flaws)
  • Dba.dk (SQL injection, Database compromise)
  • Mobile.de (Stored XSS, Session hijacking)
  • Tebex.io (Mass assignment, Admin escalation)
  • Site.pro, Azena, Athento.com and others

Hall of fame recognition:

  • Post.nl, mmc.nl, free.law, linkiti.com, powerassist.nl

CTF competitions:

  • Winner at Haxxor CTF and Essence Hackathon

Technical Expertise

Specialized in authentication bypass, injection vulnerabilities (SQL, XSS, Template injection), business logic flaws, API security testing, and advanced attack techniques including sandbox escapes and SSRF.


πŸ“‹ View Complete Security Research Portfolio - Detailed technical writeups, CVE information, and professional credentials


Connect with me:

__raiders chirag-agrawal-770488144 @chirag-agrawal

Security Tools & Technologies:

python bash go javascript docker kubernetes aws gcp linux postgresql mongodb postman git jenkins grafana elasticsearch

raiders0786

Β raiders0786


πŸ† GitHub Trophies

Pinned Loading

  1. web3-security-resources web3-security-resources Public

    The Web3 Security Resources Hub is a comprehensive collection of curated tools, guides, and best practices for securing decentralized systems and smart contracts in the blockchain space.

    342 57

  2. ClickjackPoc ClickjackPoc Public

    Seamlessly Detect and Construct Exploit POCs for ClickJacking Vulnerability using this Automated tool

    Python 46 9

  3. digibastion digibastion Public

    Digibastion is an open-source, comprehensive Web3 Operational Security Checklist designed to help users improve their personal digital security across crypto, Web3, and beyond

    TypeScript 8

  4. CrytpoTransfer CrytpoTransfer Public

    Transfer Crypto's Today is a user-friendly platform designed to facilitate seamless cryptocurrency transfers while providing real-time visibility into blockchain transactions.

    JavaScript 4 2

  5. oswar oswar Public

    Forked from CyVers-AI/oswar

    OSWAR is a comprehensive framework inspired by the MITRE ATT&CK framework, designed to identify, categorize, and mitigate Web3-related attacks and vulnerabilities