Arun S

Arun S

Security Researcher Freelance

Followers of Arun S1000 followers
location of Arun SKerala, India

Connect with Arun S to Send Message

Connect

Connect with Arun S to Send Message

Connect
  • Timeline

  • About me

    Information Security Specialist | Trend Micro | CEH | R&D

  • Education

    • Sree Narayana Gurukulam College of Engineering

      2017 - 2021
      Bachelor of Technology - BTech Computer Science and Engineering
    • APJ Abdul Kalam Technological University

      2017 - 2021
      Btech, Computer Science And Engineering Computer Science and Cyber Security

      Activities and Societies: Conducted Workshops On Ethical Hacking

  • Experience

    • HackerOne

      Sept 2018 - now
      Security Researcher Freelance

      ✓ Bug Bounty Hunting.✓ Web Application Security Testing.✓ Bug Reporting and Mitigation.

    • Chegg Inc.

      Mar 2020 - Jan 2021
      Subject Matter Expert Computer Science
    • S3 Infosoft

      Oct 2020 - Jan 2021
      Cyber Security Intern

      Work From Home Internship

    • Haryana

      Jun 2021 - Jul 2021
      Intern at Gurugram Police Cyber Security Summer Internship
    • Cognizant

      Aug 2021 - Jun 2022
      Security Testing Engineer

      ✓ Cloud Penetration Testing.✓ API Security Testing.✓ Web Application Static Source Code Analysis.✓ Android & iOS Source Code Analysis.✓ Web Application Vulnerability Assessment & Penetration Testing.✓ Static Application Security Testing (SAST).✓ Dynamic Application Security Testing (DAST).

    • Trend Micro

      Jun 2022 - now
      Information Security Specialist (R&D)

      ✓ Developed and implemented numerous Zero Day rules for attack detection, enhancing the security posture of the organization.✓ Created and maintained filters specifically designed to detect and mitigate vulnerabilities associated with Microsoft Patch Tuesday releases, ensuring timely protection against emerging threats.✓ Successfully reproduced vulnerabilities from scratch to accurately analyze and understand their intricacies, enabling the creation of effective filters and proactive defense measures.✓ Conducted thorough research and analysis of the latest security vulnerabilities and exploits, staying up to date with the evolving threat landscape.✓ Develop and Test IPS, Integrity Monitoring, and Log Inspection rules for quality, functionality, false positives and false negatives, regression, performance, etc. This involves✓ Vulnerability/attack scenario reproduction to ensure the attack is well understood and well protected against✓ Carry out testing with exploit PoCs, viruses, Metasploit, and other exploit tools.✓ Review for flaws in the rule and relevant codes which have a tendency of being logical/state/detail-oriented✓ Security patch analysis✓ Implement and design small-scale to medium-scale automation in order to simplify testing tasks, improve and assure the best quality using Perl, python, ruby, etc.✓ Vulnerability and threat monitoring✓ Vulnerability scanner execution & results analysis✓ Develop and perform test cases based on the objectives of the test✓ Script various tasks and activities by using bash, ruby, python, Perl✓ Understand and interpret the detailed information on vulnerabilities and exploits in pursuance of quality testing, test cases generation, and quality assurance✓ Utilize common tools such as VMware suite, SQL, binary editors, terminal clients, RDP clients, Metasploit, Wireshark, Burp Suite, browser’s developers’ tools Show less

  • Licenses & Certifications

    • Google Cloud Development Track

      Google Cloud - Minnesota
    • Google Cloud Infrastructure Track

      Google Cloud - Minnesota
      May 2021
      View certificate certificate
    • Google Crash Course on Python

      Coursera
      Sept 2020
      View certificate certificate
    • Certified Ethical Hacker(CEHv10)

      EC-Council
      Aug 2020
    • Guinness World Record Participation Certificate

      GUVI Geek Networks, IITM Research Park
      View certificate certificate
    • Ethical Hacking

      Internshala
      Apr 2019
      View certificate certificate
    • Build a Face Recognition Application using Python

      GUVI Geek Networks, IITM Research Park
      Apr 2021
      View certificate certificate
    • Android App Penetration Testing

      LinkedIn
      Jan 2022
      View certificate certificate
    • Google: Using Python to Interact with the Operating System

      Coursera
      Oct 2020
      View certificate certificate
    • Cybersecurity Compliance Framework & System Administration

      Coursera
      Mar 2021
      View certificate certificate
  • Honors & Awards

    • Awarded to Arun S
      CVE-2024-35302 (JetBrains TeamCity) JetBrains May 2024 https://nvd.nist.gov/vuln/detail/CVE-2024-35302
    • Awarded to Arun S
      Research Blog on Jenkins (CVE-2024-23897) Trend Micro Mar 2024 In depth analysis of Jenkins CLI protocol and vulnerability analysis.
    • Awarded to Arun S
      CVE-2024-23946 | ZDI-CAN-23030 (Apache Ofbiz) Zero Day Initiative Feb 2024 https://www.zerodayinitiative.com/advisories/ZDI-24-183/https://www.cve.org/CVERecord?id=CVE-2024-23946
    • Awarded to Arun S
      CVE-2023-37280 (Pimcore) Pimcore - Github Jul 2023 https://github.com/pimcore/admin-ui-classic-bundle/security/advisories/GHSA-hqv9-6jqw-9g8mhttps://nvd.nist.gov/vuln/detail/CVE-2023-37280https://huntr.dev/bounties/1fa1cc3b-75ff-4d34-99ae-4a705eb623e7/
    • Awarded to Arun S
      1 Trend Micro AI Hackathon Finalist - Got selected to participate in finals at Japan after qualifying preliminary rounds.
    • Awarded to Arun S
      Acknowledged by NCIIPC NCIIPC RVDP For reporting IDOR Vulnerability
    • Awarded to Arun S
      Acknowledged by pupilfirst.com Pupilfirst.com
    • Awarded to Arun S
      Bug Bounty from hackerone Hackerone Got Bug Bounties from hackerone
  • Volunteer Experience

    • Volunteer

      Issued by Computer Society of India
      Computer Society of IndiaAssociated with Arun S
    • Patrol Leader

      Issued by The Bharat Scouts and Guides on Jan 2013
      The Bharat Scouts and GuidesAssociated with Arun S