BUG BOUNTY HUNTER Ā· SECURITY RESEARCHER
Breaking things
responsibly.
I'm Rasel Rana, a bug bounty hunter focused on finding vulnerabilities in web applications, APIs and modern web infrastructure.
$ whoami
0xraselrana
$ cat focus.txt
Web Security Ā· API Security
Recon Ā· Cloud Security
$ status
ā ONLINE / hunting for bugs
$
01 ā ABOUT
Security is a mindset.
Iām Rasel Rana (0xraselrana), a security researcher
and bug bounty hunter. My work revolves around discovering and responsibly
reporting security vulnerabilities that can affect real users and systems.
I enjoy the full research process ā from attack-surface discovery and reconnaissance to manual testing, exploitation and clear vulnerability reporting.
Find the edge case.
Understand the impact.
Report it responsibly.
02 ā BUG BOUNTY
Find me on the platforms.
Follow my public researcher profiles and security activity.
03 ā RESEARCH
Writeups & findings.
Technical notes, vulnerability research and lessons learned.
MEDIUM Ā· FEATURED WRITEUP
From Probably a False Positive to a Bounty
How I exploited an overlooked API.
04 ā TOOLKIT
Tools of the trade.
Subfinder Ā· Amass Ā· Assetfinder Ā· Findomain Ā· Knockpy Ā· Shuffledns Ā· DNSx Ā· httpx
Burp Suite Ā· Nuclei Ā· FFUF Ā· API Testing Ā· Authentication Ā· Access Control
Attack Surface Mapping Ā· Manual Testing Ā· Vulnerability Validation Ā· Responsible Disclosure
Linux Ā· Git Ā· GitHub Ā· Bash Ā· Cloud Infrastructure
05 ā CONNECT
Let's talk security.
Have a research collaboration, security opportunity or just want to connect?