CYBER SECURITY PROFESSIONAL

CHANDAN
KUMAR

VAPT SPECIALIST  Β·  BUG HUNTER  Β·  ETHICAL HACKERΒ·  CLOUD PENTESTING

Founder & CEO of @Cyunisec β€” Breaking systems ethically, defending what matters. Specializing in Web App VAPT, Cloud Penetration Testing, Bug Bounty Hunting, and building offensive security tools.

VAPT WEB PENTESTING BUG BOUNTY OSINT CLOUD PENTESTING TOOL BUILDER
RECON SESSION
root@cyunisec ~ whoami
chandan-kumar-eh
root@cyunisec ~ cat skills.txt
[+] Web Application VAPT
[+] Cloud Penetration Testing
[+] Bug Bounty Hunting
[+] OSINT & Recon
root@cyunisec ~ ./leakspy-pro --run
[*] LeakSpy Pro v4 β€” SCANNING
[+] 3 API keys exposed!
root@cyunisec ~
01 //

ABOUT ME

I'm Chandan Kumar, a passionate Cyber Security professional focused on Vulnerability Assessment & Penetration Testing (VAPT). I'm the Founder & CEO of @Cyunisec, where I help organizations identify and fix security vulnerabilities before attackers do.

With hands-on experience in web application security, cloud penetration testing, network testing, and ethical hacking, I approach every engagement with a true attacker's mindset. I've built offensive security tools β€” including LeakSpy Pro, a browser extension for real-time credential leak detection.

I'm an active Bug Bounty Hunter, continuously hunting vulnerabilities across public programs and sharpening offensive skills through real-world labs and CTF competitions.

VAPT SPECIALIST
5+ TOOLS BUILT
CEO @CYUNISEC
πŸ› BUG HUNTER
02 //

SKILL SET

🎯
OFFENSIVE SECURITY
Web App VAPTNetwork Pentesting SQL InjectionXSS / CSRF Privilege EscalationSSRF / XXE IDORBusiness Logic Flaws
☁️
VAPT & CLOUD PENTESTING
AWS Security TestingS3 Bucket Misconfig IAM Privilege AbuseCloud Recon API Security TestingContainer Security Cloud CVE Research
πŸ”
RECONNAISSANCE
OSINTSubdomain Enum Shodan / CensysGoogle Dorking Network ScanningPassive Recon Credential Leak Detection
πŸ› οΈ
TOOLS & FRAMEWORKS
Burp SuiteMetasploit KatanaHttpx NmapWireshark SQLMapGobuster NiktoHydra John the Ripper
πŸ–₯️
SYSTEMS & OS
Kali LinuxParrot OS Ubuntu / DebianWindows Active DirectoryDocker
πŸ“‹
METHODOLOGY
OWASP Top 10PTES MITRE ATT&CKCVE Research Bug Bounty HuntingReport Writing
03 //

MY TOOLS

πŸ•΅οΈ
BROWSER EXT
LeakSpy Pro

A powerful browser extension for security professionals to detect credential leaks, exposed sensitive data, and monitor web applications for information disclosure vulnerabilities in real-time.

JavaScriptHTML Browser APIOSINT
VIEW ON GITHUB
βš™οΈ
COMING SOON
More Tools

Additional offensive security tools currently in development β€” built from real-world pe ntesting experience and lab environments. Will be published on GitHub soon.

PythonBash ReconAutomation
FOLLOW ON GITHUB
04 //

CERTIFICATIONS & TRAINING

πŸŽ“

Cyber Security Internship

PROFESSIONAL EXPERIENCE

COMPLETED
🎯

OSCP

OFFENSIVE SECURITY CERTIFIED PROFESSIONAL

PURSUING
☁️

CARTP

CERTIFIED AZURE RED TEAM PROFESSIONAL

PURSUING
🌐

OWASP Web Security

WEB APPLICATION SECURITY TESTING

ACTIVE
πŸ’»

CTF Competitions

CAPTURE THE FLAG Β· ONGOING

ACTIVE
πŸ”¬

TryHackMe

HANDS-ON LABS & TRAINING PLATFORM

ACTIVE
πŸ›

BUG BOUNTY HUNTER

Actively hunting vulnerabilities across public and private bug bounty programs. Finding real-world security flaws in web applications, APIs, and cloud infrastructure β€” and reporting them responsibly for maximum impact.

HackerOne Bugcrowd Integrity Web App Bugs API Vulnerabilities Responsible Disclosure Cloud Misconfigs
05 //

EXPERIENCE & JOURNEY

2025 β€” PRESENT
Founder & CEO
@CYUNISEC

Founded Cyunisec to deliver professional cybersecurity services including VAPT assessments, cloud security testing, and building offensive security tooling for professionals.

2025
Cyber Security Intern
SECURITY FIRM

Gained hands-on experience in real-world penetration testing, vulnerability assessments, and security report documentation under professional mentorship.

2025 β€” PRESENT
Bug Bounty Hunter & Security Researcher
INDEPENDENT

Actively hunting vulnerabilities on HackerOne, Bugcrowd, and private programs. Built LeakSpy Pro β€” a browser extension for credential leak detection used by security professionals.

ONGOING
Cloud Security & OSCP Path
SELF-STUDY Β· LAB ENVIRONMENTS

Deep-diving into cloud penetration testing (AWS/Azure), Active Directory attacks, and advanced offensive techniques. Working towards OSCP and CARTP certifications.

06 //

GET IN TOUCH

Let's work together

Looking for a skilled VAPT professional or Bug Bounty Hunter? Whether it's a web application assessment, cloud pentest, security consulting, or a custom security tool β€” let's connect.

πŸ“„

MY RESUME

Download my full resume to see my complete experience, skills, certifications, and achievements in cybersecurity.

πŸ“₯ DOWNLOAD RESUME