💼 Hacktify - Cyber Security Intern
Worked remotely as a Cyber Security Intern at Hacktify, where I conducted in-depth testing and reporting of vulnerabilities across various labs and simulated environments.
- Cross-Site Scripting (XSS): Exploited reflected and stored XSS vulnerabilities for alert pop-ups and data theft demos.
- HTML Injection: Injected HTML tags into input fields to simulate phishing UIs and client-side content injection.
- Insecure Direct Object References (IDOR): Accessed unauthorized resources by manipulating object references in URL parameters.
- CORS Misconfigurations: Detected weak cross-origin policies that allowed sensitive data exposure and origin spoofing.
- Cross-Site Request Forgery (CSRF): Crafted forged requests to trigger state-changing actions like password resets without user intent.