AVAILABLE FOR SECURITY RESEARCH

BUG BOUNTY HUNTER Ā· SECURITY RESEARCHER

Breaking things
responsibly.

I'm Rasel Rana, a bug bounty hunter focused on finding vulnerabilities in web applications, APIs and modern web infrastructure.

researcher@0xraselrana:~ ā—

$ whoami

0xraselrana

$ cat focus.txt

Web Security Ā· API Security
Recon Ā· Cloud Security

$ status

ā— ONLINE / hunting for bugs

$

01SecurityResearch
02Bug BountyPrograms
03Web / APIFocus
04ResponsibleDisclosure

01 — ABOUT

Security is a mindset.

I’m Rasel Rana (0xraselrana), a security researcher and bug bounty hunter. My work revolves around discovering and responsibly reporting security vulnerabilities that can affect real users and systems.

I enjoy the full research process — from attack-surface discovery and reconnaissance to manual testing, exploitation and clear vulnerability reporting.

ā€œ

Find the edge case.
Understand the impact.
Report it responsibly.

— 0xraselrana

02 — BUG BOUNTY

Find me on the platforms.

Follow my public researcher profiles and security activity.

03 — RESEARCH

Writeups & findings.

Technical notes, vulnerability research and lessons learned.

01

MEDIUM Ā· FEATURED WRITEUP

From Probably a False Positive to a Bounty

How I exploited an overlooked API.

↗
More research on Medium ↗

04 — TOOLKIT

Tools of the trade.

RECON

Subfinder Ā· Amass Ā· Assetfinder Ā· Findomain Ā· Knockpy Ā· Shuffledns Ā· DNSx Ā· httpx

WEB SECURITY

Burp Suite Ā· Nuclei Ā· FFUF Ā· API Testing Ā· Authentication Ā· Access Control

RESEARCH

Attack Surface Mapping Ā· Manual Testing Ā· Vulnerability Validation Ā· Responsible Disclosure

ENVIRONMENT

Linux Ā· Git Ā· GitHub Ā· Bash Ā· Cloud Infrastructure

05 — CONNECT

Let's talk security.

Have a research collaboration, security opportunity or just want to connect?

0xraselrana@gmail.com ↗
šŸ’¬