UCHENNA EBUBE

Cybersecurity Professional | Offensive Security & Bug Bounty Specialist
Nantes, FR.

About

Highly analytical and results-oriented Cybersecurity Professional specializing in Offensive Security and Bug Bounty Hunting. Proven expertise in identifying and exploiting vulnerabilities across web applications, networks, and APIs. Proficient in penetration testing (OWASP Top 10), reverse engineering, and security automation, leveraging Bash, Go, Python, and Node.js. Skilled in utilizing industry-standard tools like Burp Suite, Nmap, and Wireshark for comprehensive security assessments. Recognized for delivering high-impact findings in bug bounty programs and developing custom tools to streamline reconnaissance and exploit development.

Work

Hakai Security
|

Cybersecurity Analyst

Summary

Conducted comprehensive penetration tests and security assessments for web applications, APIs, and internal networks, contributing to enhanced security posture.

Highlights

Executed thorough penetration tests on web applications, APIs, and internal networks, proactively identifying and documenting critical vulnerabilities.

Developed and deployed Python/Bash scripts to automate security scans, significantly improving efficiency and accuracy in vulnerability detection processes.

Performed in-depth network traffic analysis using Wireshark and simulated Man-in-the-Middle (MITM) attacks to comprehensively assess and strengthen organizational security posture.

Self-Employed
|

Bug Bounty Hunter

Summary

Actively participated in leading bug bounty programs, consistently discovering and reporting high-impact vulnerabilities across diverse platforms.

Highlights

Successfully discovered and reported numerous critical vulnerabilities, including SQL Injection (SQLi), Cross-Site Scripting (XSS), and Insecure Direct Object References (IDOR), on prominent platforms like HackerOne and Bugcrowd.

Engineered custom Go/Python scripts to automate advanced reconnaissance techniques, such as subdomain enumeration, significantly enhancing target analysis capabilities and efficiency.

Leveraged Burp Suite extensively for manual testing and complex exploit chaining in intricate web applications, demonstrating advanced proficiency in web application security.

Education

National Open University of Nigeria (NOUN)

Bachelor of Science

Computer Science

Languages

English

Fluent

Skills

Programming Languages

Bash (9), Python (9), Go (Golang) (8), Node.js (7), JavaScript (7).

Security Tools

Burp Suite (9), Nmap (9), Wireshark (9), Metasploit (8), BeEF (8), SQLMap (8), John the Ripper (7).

Security Domains & Methodologies

Web Application Penetration Testing (9), OWASP Top 10 (9), Network Security (8), Vulnerability Research (8), API Security (8), Reverse Engineering (5), Malware Analysis (5).

Operating Systems & Platforms

Linux (Kali, Parrot) (9), Windows (8), Docker (7), AWS Basics (4), GCP Basics (4).

Projects

Automated Recon Tool

Summary

Developed a robust reconnaissance script combining Nmap, Dirb, and Subfinder for efficient and comprehensive target enumeration.

Web App Scanner

Summary

Created a lightweight web application scanner using Node.js and Python to detect common OWASP vulnerabilities.

Burp Suite Extensions

Summary

Developed custom plugins for Burp Suite to automate and streamline repetitive tasks during bug bounty hunting.