Hello!

I’m a security researcher on a journey to becoming an Application Security Expert.

This blog documents my entire learning process, hands-on practice, and research — from lab writeups to real-world DevSecOps.

Skills in Development

  • Web & API Penetration Testing
  • Source Code Review (SAST)
  • OWASP ASVS / Top 10
  • DevSecOps Pipeline (CI/CD Security)
  • Threat Modeling

Certification Goals

  • OSWE (Offensive Security Web Expert)
  • eWPTX (eLearnSecurity)
  • CSSLP (ISC2)

Contact

Find me on GitHub or leave a comment on any post.