3 years experience breaking systems to make them stronger. Specialized in penetration testing, vulnerability research, and building open-source security tools.
Computer System โ Major: Cyber Security
Thesis: Information System Security Analysis Using VAPT Methods [Zero Hacking]
Secured bug bounty awards from SAP, IBM, Cambridge University, Bukalapak, and more. Led penetration testing for PT Bank Central Asia, Bank Indonesia, PT Telkom Indonesia.
Offensive Security Engineer specializing in exploit development, CVE research, and scalable offensive tooling. Proven track record in discovering high-impact vulnerabilities, building production-grade security tools, and executing advanced penetration testing across banking, government, and enterprise environments.
Dive into detailed documentation, source code, and security researchers' collaborations.
Research Publication
Research Publication
Research Publication
Research Publication
Executed end-to-end penetration testing across web, API, mobile, cloud, and infrastructure. Identified critical vulnerabilities across application, network, and wireless layers. Conducted Active Directory exploitation and adversarial simulations. Delivered risk-based reports improving client security posture.
Conducted penetration testing on Android apps (Akses Toko, Forca HR), iOS apps, web apps (Firms, Forca ERP, SISI ID, SMART Firms), and MRT firewall systems.
Conducted penetration testing for PT Bank Central Asia, Bank Indonesia, PT Telkom Indonesia Tbk, PT SeaBank Indonesia, Prodia, and other high-profile organizations.
Conducted penetration testing to assess and fortify security of Badung Regency Investment Office main website.
Developed web application using CodeIgniter 4 for cybercrime case monitoring. Conducted penetration testing for cybercrime monitoring web applications.
Uncovering hidden zero-day vulnerabilities. Notable CVE discoveries: CVE-2025-6921, CVE-2025-11231.
Conducting targeted reconnaissance using advanced search operators. GHDB entries: ghdb/8437, ghdb/8446.
Uncovering zero-day vulnerabilities. Discovered 12 CVEs including CVE-2024-27996, CVE-2024-30549, CVE-2024-31928, CVE-2024-32534, and more.
Expert cybersecurity assessments. Specialized in desktop, mobile, web, network, wireless, physical security, and social engineering assessments.
Conducted WiFi penetration testing, desktop penetration testing, network penetration testing, web penetration testing, and mobile app penetration testing on corporate environment. Documented findings and provided remediation recommendations.
Performed secure source code review on critical applications to identify vulnerabilities, insecure coding patterns, and logic flaws. Provided detailed remediation guidance to development teams.
Conducted desktop penetration testing on endpoint systems to assess security vulnerabilities and enhance desktop security frameworks.
Providing comprehensive training on Android Penetration Testing with hands-on approach covering latest techniques and tools.