I’m a penetration tester and security researcher at Cobalt specializing in web application security. I work with organizations to uncover vulnerabilities before the bad guys do.
I’ve discovered critical vulnerabilities across different industries, including healthcare, finance, SaaS platforms, and others. I also participate in private bug bounty programs such as HackerOne or Bugcrowd.
In this blog I document my research, share some techniques, and think out loud about all things offensive security.