Zishan Ahamed Thandar
Offensive Security Expert and Ethical Hacker helping SaaS, startups, and enterprises discover and fix real-world vulnerabilities in their web applications, APIs, and infrastructure — before attackers do.
Security Products & Resources
Products
Structured, battle-tested notes and guidance for certifications and red-team learning. Designed for professionals who want to move from theory to hands-on offensive security skills.
Hall of Fame & Recognitions
Recognized over twenty times by international organizations for impactful, responsible disclosure that helped protect millions of users and critical systems.
…and additional organizations across technology, education, and government sectors that have trusted my work to improve their security posture.
Experience
Offensive Security Consultant & Independent Researcher
2018 — Present · HackerOne · Yogosha
Conducted independent security research across real-world production systems, responsibly disclosing high-impact vulnerabilities including access control flaws, authentication issues, stored XSS, and complex business logic vulnerabilities.
Recognized through public Hall of Fame acknowledgements and verified reports on industry-standard vulnerability disclosure platforms.
Projects
Hackify
Bash script that automates installation of common wordlists and penetration testing tools on Debian-based systems, so new lab or VPS environments are ready for testing with a single command.
Hacker Proxy Pro (Browser Add-on)
Lightweight Firefox add on used by security professionals to toggle quickly between Burp Suite proxy and TOR, reducing setup overhead and keeping one browser dedicated to offensive security work.
WebsiteDorkerPro
OSINT and recon tool for red teamers, bug bounty hunters, and web app pentesters to quickly generate dorks, discover exposed endpoints, and map attack surfaces around a target domain.
CyberTerminus (Browser Theme)
Sleek, hacker-inspired Firefox dark theme mirroring the glow of a terminal. Designed for coders, ethical hackers, and cyberpunk lovers who live in the browser.
Certifications & Education
Cyber Security Certifications
Academic Qualification
Coding & Technology Certifications
Testimonials
“We greatly appreciate your effort in disclosing a security vulnerability responsibly and confirming the fix.”
“Thanks for your hard work, Zishan!”
“We appreciate you bringing this to our attention.”
“Thank you for bringing the following vulnerability to our attention.”