Jr. Penetration Tester · PT1 · eJPTv2
Abdul Samad
Aurakzai
I study systems until they fail — then I make them hold.
Offensive security · AI · software engineering
- Years in the wild
- 02+
- Live programs
- 03
- TryHackMe
- PT1
- INE certified
- eJPT
01 — The brief
About
Security engineer in the making. Still a student. Already in the field.
Software engineering student (5th semester) at the Institute of Management Sciences. Certified eJPT and TryHackMe Junior Penetration Tester, with time in CTFs, web and API security, vulnerability assessment, and bug bounty programs. Linux is home. Burp Suite, Nmap, Wireshark, and Metasploit are daily tools. Python and C++ are how I automate and think. Currently studying AI and machine learning, with a research pull toward AI-driven cybersecurity and secure AI systems.
01 / Builder who breaks
I learn by shipping projects and by taking systems apart. Capture-the-flag work, web and API assessments, and public bug bounty programs keep the craft honest.
02 / AI with a security bias
I am studying machine learning with a growing research interest in AI-driven defense and in keeping models themselves from becoming the weak link.
03 / Ready for the room
Open to internships, collaborations, and teams where I can contribute, get sharper, and work next to people who have already been there.
02 — Trail so far
Career journey
2026
RoleJan 2026 — Present
AsefaSec
Penetration Tester
Current
01Junior penetration tester. Hands-on assessment work, expanding from public hunting into structured offensive security practice.
2026
StudyJul 2026 — Aug 2026
Ghulam Ishaq Khan Institute
Advanced AI Bootcamp
02Intensive AI training at GIKI. Strengthening the machine-learning foundation behind a longer bet on secure AI systems.
2024
StudySep 2024 — Sep 2028
Institute of Management Sciences
B.S. Software Engineering
Current
03Undergraduate software engineering at IMSciences, Peshawar. Currently in the fifth semester — systems, code, and the discipline around both.
2024
ProgramJul 2024 — Present
Bugcrowd
Bug Hunter
Current
04Public-program hunting across web and API surfaces. Methodology, report quality, and the patience the work actually takes.
2024
ProgramFeb 2024 — Present
HackerOne
Bug Bounty Hunter
Current
05Where the trail started. Live targets, real reports, and the shift from studying security to practicing it in public.
03 — Stack & paper
Capabilities
Offensive
- Penetration testing
- Web application security
- API security
- Vulnerability assessment
- Bug bounty methodology
- CTF competitions
Tooling
- Linux
- Burp Suite
- Nmap
- Wireshark
- Metasploit
- Python
- C++
Adjacent
- Artificial intelligence
- Machine learning
- Prompt engineering
- Secure AI systems
Certifications & coursework
- TryHackMe Junior Penetration TesterPT1
- eLearnSecurity Junior Penetration TestereJPTv2
- Certified in CybersecuritySecurity
- Learning Linux for LFCA CertificationLinux
- Mastering SQL InjectionWeb
- Open Source Intelligence from ScratchOSINT
- Web Fundamentals CertificateWeb
04 — Portfolio
Selected work
Case files will land here. Until they can live in public, the slots stay empty on purpose — not as a gap, as a standard.
Open portfolioWeb assessment
Application security case file
Scoped findings, impact, and fix notes — publishing when they can live in public.
API security
Interface attack surface study
Auth, object-level access, and abuse cases from programs and labs.
Secure AI
Model-adjacent threat notes
Early research into AI-driven security and the ways models themselves fail.
Engineering
Build log
Software I ship while studying — tools, labs, and systems worth showing.
05 — Ask the record
Digital twin
A counterpart that can talk through the career — without leaving the public file.
Ask what I have done, what I study, and what I want next. The twin does not invent and does not walk through attacks.
Open the twin06 — Next move
Contact
Internships, collaborations, and rooms that take security seriously.
If you need a junior penetration tester who already hunts in public and is studying the overlap of AI and security — write. I read everything.