SAKSHITH SHETTY
[ Penetration Tester ]

I'M A
JUNIORPENETRATION TESTER

& OFFENSIVE SECURITY PRACTITIONER
///

I break systems ethically — finding vulnerabilities before the adversaries do.

nmap -sV --script vuln target.com

Specializing in Web and API security, with hands-on experience identifying real-world vulnerabilities through structured testing and bug bounty research. Certified in Red Team Operations Management, ISO 27001, and Ransomware Protection, and actively contributing to vulnerability discovery on Bugcrowd while continuing to develop skills in advanced exploitation techniques and application security testing.

IDSHADOW-269
STATUSACTIVE
CLEARANCELV-I
MODEOFFENSIVE
LOCIND
CERTS06
TARGETACQUIRED
THREATHIGH
Shadow Avatar
01

EXPERIENCE

MAR 2026 – PRESENT
Bugcrowd
Remote · Bug Bounty
Penetration Tester
  • Real-world bug bounty engagements targeting web and API attack surfaces on the Bugcrowd platform.
  • Identify and responsibly disclose access control flaws, SSRF, and business logic vulnerabilities.
JUL 2025 – MAR 2026
CyberSapiens
Remote · Internship
Cybersecurity Intern
  • Web, API, and Mobile Application security testing using Burp Suite and Nuclei.
  • In-depth API testing for BOPLA, BFLA, Mass Assignment, and Excessive Data Exposure.
  • Android VAPT via static (apktool, jadx) and dynamic analysis — insecure storage, SSL, API leaks.
  • Exploited SSRF, out-of-band SQLi, CORS misconfigurations against WAF-protected targets.
  • Delivered structured reports with CVSS ratings and actionable remediation.
FEB 2025 – MAY 2025
Sierra Learning
Mangaluru
UI/UX Design Intern
  • Built multi-page conceptual websites using Framer for E-commerce and EV platforms.
  • Created lightweight design systems and component libraries for visual consistency.
2025
Datacom / Forage
Remote · Simulation
Cyber Security Operations
  • SOC simulations covering incident response and enterprise threat management.
  • Security monitoring principles in simulated enterprise environments.
02

TECHNICAL SKILLS

Offensive Tools
Burp Suite · Nmap · Wireshark · Metasploit · Nuclei · OWASP ZAP
Vulnerability Assessment
OWASP Top 10 · XSS · SQLi · SSRF · CSRF · XXE · IDOR · BOPLA · BFLA
Mobile Security
APKLab · apktool · jadx · MobSF · ADB · Static & Dynamic Analysis
Network & SOC
Splunk · MITRE ATT&CK · IDS/IPS · Firewalls · Zero Trust · VPN
Development
Python · Bash · PHP · MySQL · JavaScript · Full Stack
Infrastructure
Docker · Git · Kali Linux · Parrot OS · Hyper-V · Proxmox
GRC & Compliance
ISO 27001 · PCI DSS · HIPAA · NIST · GDPR · SOC 1/2/3
Cloud Security
AWS Security · Azure Security · Cloud Pentesting Methodology
03

CERTIFICATIONS

Red Team Leaders
Certified Red Team Operations Management (CRTOM)
Jan 2026ID: c87309042f132211

Advanced red team operations certification covering offensive security management, threat simulation, and adversarial tactics.

ICTTF
Certified Ransomware Protection Officer (CRPO)
Dec 2025ID: 64d63660ac9488bbf50f3e76

Specialized certification in ransomware defense strategies, incident response, and organizational protection frameworks.

SkillFront
ISO/IEC 27001:2022 Information Security Associate
Dec 2025

Information Security Management System (ISMS) certification aligned with ISO/IEC 27001:2022 international standard.

AWS Training
AWS Security Specialty – Domain 1 Review
Dec 2025ID: 0056e6e1-4262-42b6-a1a0-231feb648aa8

AWS Security Specialty domain review covering cloud security architecture, threat detection, and incident response on AWS.

CyberSapiens EdTech
Certified Ethical Hacker (CEH)
Dec 2025

Comprehensive ethical hacking certification covering penetration testing methodologies, vulnerability assessment, and exploitation techniques.

Forage
Datacom Cyber Security Operations Job Simulation
Dec 2025ID: NQzgatgizSKMQr7Wk

SOC operations simulation covering threat analysis, incident response workflows, and security monitoring in enterprise environments.

Remarkskill
REMARKSKILL Ethical Hacking Workshop
Mar 2025

2-day hands-on workshop covering fake application awareness, TOR anonymity basics, encryption concepts, and attacker techniques.

SkillFront
Foundations of Business and Entrepreneurship
Dec 2025

Business fundamentals and entrepreneurship foundations certification from SkillFront's accredited learning program.

04

TOOLS & PLATFORMS

BURP SUITENMAPWIRESHARK METASPLOITOWASP ZAPNUCLEI QUALYSNESSUSPOSTMAN MOBSFAPKTOOLJADX ADBKALI LINUXSPLUNK DOCKERPROXMOXGIT BUGCROWDTRYHACKME
05

FEATURED PROJECTS

CIVICEYE
FINAL YEAR · 2025

AI helmet violation detection system — real-time YOLOv8 edge-based detection with a secure PHP/MySQL backend. Features RBAC, strict data validation, and secure coding to prevent injection attacks.

PythonYOLOv8PHPMySQLRBAC
RIG MASTER
48HR BUILD

Conceptual custom gaming PC e-commerce platform built entirely in 48 hours using Framer CMS. Features dynamic product configurator and responsive layout.

FramerCMSUI/UX Design
PURE ENERGY EV
UI/UX · 2025

Responsive electric motorcycle concept website designed with Framer. Features smooth scroll animations, modern clean aesthetics, and a performance-focused UI.

FramerResponsive DesignAnimation
CYBERSAPIENS INTERNSHIP
SECURITY · 2025

Consolidated repository of all reconnaissance, penetration testing, and VAPT tasks completed during the CyberSapiens internship. Includes scripts, methodologies, and structured vulnerability reports.

ReconPentestingVAPTPythonBash
06

GITHUB METRICS

Public Repos
Total Stars
Followers
Following
◈ Contribution Activity
GitHub contribution chart
◈ Top Languages
Fetching language data…
View Full GitHub Profile
07

LIVE STATS

LC
LeetCode
@SHADOW2669
LIVE
Problems Solved
Easy
Medium
Hard
View LeetCode Profile
MT
Monkeytype
@SHADOW2669
LIVE
Best WPM
Total Tests
ACC
Avg Accuracy
Fetching…
View Monkeytype Profile
08

EDUCATION

Bachelor of Computer Applications (BCA)
MANGALORE UNIVERSITY · Mangaluru
2022 – 2025
Class XII — Computer Science, Business & Accountancy
ST. ALOYSIUS · Mangaluru
2020 – 2022
Class X — CBSE
MILAGRES COLLEGE · Mangaluru
2010 – 2020