Report this freelancer

Muzamil

Web Application Security Researcher (Bug Bounty Hunter)
Pakistan
22 November 2004
  • Successful Projects
    0
  • Services Delivered
    1
  • Completed Services
    0
  • Services Pending
    0

Freelancer Information

As a Web Application Security Researcher (Bug Bounty Hunter), I specialize in identifying and reporting security vulnerabilities within web applications. My work involves:

  • Conducting thorough penetration testing to uncover weaknesses in web applications.
  • Analyzing application code and functionality to identify potential security flaws.
  •  Developing and executing proof-of-concept exploits to demonstrate the impact of vulnerabilities.
  •  Creating detailed vulnerability reports with clear steps to reproduce and remediation recommendations.
  •  Staying up-to-date with the latest security threats and vulnerabilities.
  •  Working independently and ethically to improve the security posture of web applications through bug bounty programs.

Work & Experience

M
12 August 2024 Multiple Critical Vulnerabilities Discovered in Acronis
Acronis

During a thorough security assessment of the Acronis, numerous vulnerabilities were identified. This report details several high-severity issues, including stored and reflected XSS vulnerabilities, SQL injection flaws , and parameter manipulation vulnerabilities. These vulnerabilities could allow an attacker to gain unauthorized access, manipulate data, and compromise the confidentiality of sensitive information.


Awards

R
August 12, 2024 Reflected XSS in redirect_url Parameter on learn.acronis.com (Rewarded $100)
A reflected Cross-Site Scripting (XSS) vulnerability was discovered on https://learn.acronis.com/ within the redirect_url parameter. By crafting a malicious URL, an attacker could inject and execute arbitrary JavaScript code within a user's browser. This vulnerability was reported through the Acronis bug bounty program and was subsequently acknowledged and rewarded with $100.