$ initializing_portfolio_
Available for opportunities

Hello, I'm Dharmendra
Kumar.

|

eJPT v2 Certified Security Professional specializing in Vulnerability Assessment, Penetration Testing & Web Application Security. Recognized in NASA, Ulta Beauty & Dreamscape Hall of Fame.

0+ Hall of Fame
0 Published CVEs
0+ Projects Done
0 Services
Dharmendra Kumar - Cybersecurity Engineer
Scroll
Dharmendra Kumar
eJPT v2 Certified Professional

Security Engineer &
Penetration Tester

I'm Dharmendra Kumar, a dedicated cybersecurity professional with a relentless passion for uncovering vulnerabilities and fortifying digital defenses. As an eJPT v2 certified penetration tester, I bring methodical precision to every security assessment I conduct.

My expertise spans the full spectrum of offensive security — from web application penetration testing and network security audits to IoT device assessments. I've honed my skills through real-world engagements, CTF competitions on Hack The Box and TryHackMe, and responsible disclosure programs that earned me recognition from NASA, Ulta Beauty, and Dreamscape Networks.

NASA

Vulnerability Disclosure Program - Hall of Fame

Ulta Beauty

Security Program - Hall of Fame

Dreamscape

Security Program - Hall of Fame

Published CVEs

CVE-2026-30503 HIGH Stored XSS — OpenKM v6.3.12
CVE-2026-30502 HIGH Reflected XSS — OpenKM v6.3.12
Burp Suite Nmap Metasploit Wireshark Python OWASP Top 10 Kali Linux

Security Services

Comprehensive offensive security solutions tailored to protect your organization from evolving cyber threats

01

Web Application Pentesting

OWASP-based security assessment to identify SQLi, XSS, CSRF, and authentication flaws in web applications.

OWASPSQLiXSS
Learn More
02

Network Penetration Testing

Internal and external network testing to discover misconfigurations, vulnerable services, and attack vectors.

InternalExternalWireless
Learn More
03

API Security Testing

Comprehensive REST/GraphQL API testing for authentication, authorization, injection, and data exposure flaws.

RESTGraphQLOAuth
Learn More
04

Mobile Application Security

Android & iOS security assessment including static/dynamic analysis, reverse engineering, and API testing.

AndroidiOSMSTG
Learn More
05

VAPT

Full-spectrum vulnerability assessment and penetration testing with risk-rated findings and remediation plans.

ScanningExploitationReports
Learn More
06

Cloud Security Assessment

AWS, Azure & GCP security audits covering IAM, storage, networking misconfigurations, and compliance gaps.

AWSAzureGCP
Learn More
07

IoT Security Testing

Firmware analysis, protocol testing, and device-level vulnerability assessment for IoT ecosystems.

FirmwareProtocolHardware
Learn More
08

Source Code Review

Manual and automated code analysis to identify security flaws, logic errors, and insecure coding patterns.

SASTManualCI/CD
Learn More
09

Security Consultation

Strategic security advisory covering architecture review, policy development, and compliance frameworks.

StrategyComplianceAdvisory
Learn More
10

Security Awareness Training

Customized training programs covering phishing, social engineering, password hygiene, and incident response.

PhishingSocial EngTraining
Learn More

Ready to Secure Your Infrastructure?

I'm available for freelance penetration testing engagements, security consulting, and full-time opportunities.

Featured Projects

Security tools and systems I've engineered to solve real-world cybersecurity challenges

Real-Time IoT Security Monitoring Dashboard
IoT Security

Real-Time IoT Device Security Monitoring

Engineered an intelligent monitoring system that performs continuous surveillance of IoT device networks, detecting anomalous traffic patterns and unauthorized access attempts. Features a real-time dashboard with instant alert notifications for security teams.

PythonScapyFlaskWebSocket
Bug Bounty Reconnaissance Automation Framework
Automation

Bug Bounty Recon Automation Framework

Developed a comprehensive reconnaissance automation pipeline that streamlines the information gathering phase of security assessments. Automates subdomain enumeration, directory brute-forcing, endpoint discovery, and technology fingerprinting with structured output reporting.

PythonBashAPIsRecon
Web Application Vulnerability Scanner
Scanner

Web Application Vulnerability Scanner

Built an automated security scanner that identifies OWASP Top 10 vulnerabilities including SQL Injection, Cross-Site Scripting, and insecure configurations. Generates detailed vulnerability reports with severity ratings and remediation recommendations.

PythonSQLiXSSReports

Latest Research & Articles

In-depth technical articles on cybersecurity trends, attack vectors, and defense strategies

Secure Coding Practices in Cybersecurity
Sept 17, 2024
Secure Development

The Importance of Secure Coding Practices in Modern Cybersecurity

Why developers are the first line of defense against cyber threats, and how insecure code leads to catastrophic breaches that cost organizations millions...

Read Article
Latest Cyber Threats and Attack Vectors
Sept 16, 2024
Threat Intelligence

Understanding the Latest Cyber Threats and Attack Vectors

A deep dive into ransomware, APTs, phishing campaigns, and emerging attack techniques that are reshaping the cybersecurity threat landscape in 2024...

Read Article
Ethical Hacking and Penetration Testing Guide
Sept 16, 2024
Penetration Testing

A Comprehensive Guide to Ethical Hacking & Penetration Testing

From reconnaissance to reporting — a structured methodology for conducting professional penetration tests and building a career in offensive security...

Read Article

Let's Work Together

Have a security concern or project in mind? I'd love to hear from you

Phone

+91 9234182921

Email

dharmendracyberhack@gmail.com

Location

Remote / Virtual

OR
Fill Google Form