
Arun S
Security Researcher Freelance

Connect with Arun S to Send Message
Connect
Connect with Arun S to Send Message
ConnectTimeline
About me
Information Security Specialist | Trend Micro | CEH | R&D
Education

Sree Narayana Gurukulam College of Engineering
2017 - 2021Bachelor of Technology - BTech Computer Science and Engineering
APJ Abdul Kalam Technological University
2017 - 2021Btech, Computer Science And Engineering Computer Science and Cyber SecurityActivities and Societies: Conducted Workshops On Ethical Hacking
Experience

HackerOne
Sept 2018 - nowSecurity Researcher Freelance✓ Bug Bounty Hunting.✓ Web Application Security Testing.✓ Bug Reporting and Mitigation.

Chegg Inc.
Mar 2020 - Jan 2021Subject Matter Expert Computer Science
S3 Infosoft
Oct 2020 - Jan 2021Cyber Security InternWork From Home Internship

Haryana
Jun 2021 - Jul 2021Intern at Gurugram Police Cyber Security Summer Internship
Cognizant
Aug 2021 - Jun 2022Security Testing Engineer✓ Cloud Penetration Testing.✓ API Security Testing.✓ Web Application Static Source Code Analysis.✓ Android & iOS Source Code Analysis.✓ Web Application Vulnerability Assessment & Penetration Testing.✓ Static Application Security Testing (SAST).✓ Dynamic Application Security Testing (DAST).

Trend Micro
Jun 2022 - nowInformation Security Specialist (R&D)✓ Developed and implemented numerous Zero Day rules for attack detection, enhancing the security posture of the organization.✓ Created and maintained filters specifically designed to detect and mitigate vulnerabilities associated with Microsoft Patch Tuesday releases, ensuring timely protection against emerging threats.✓ Successfully reproduced vulnerabilities from scratch to accurately analyze and understand their intricacies, enabling the creation of effective filters and proactive defense measures.✓ Conducted thorough research and analysis of the latest security vulnerabilities and exploits, staying up to date with the evolving threat landscape.✓ Develop and Test IPS, Integrity Monitoring, and Log Inspection rules for quality, functionality, false positives and false negatives, regression, performance, etc. This involves✓ Vulnerability/attack scenario reproduction to ensure the attack is well understood and well protected against✓ Carry out testing with exploit PoCs, viruses, Metasploit, and other exploit tools.✓ Review for flaws in the rule and relevant codes which have a tendency of being logical/state/detail-oriented✓ Security patch analysis✓ Implement and design small-scale to medium-scale automation in order to simplify testing tasks, improve and assure the best quality using Perl, python, ruby, etc.✓ Vulnerability and threat monitoring✓ Vulnerability scanner execution & results analysis✓ Develop and perform test cases based on the objectives of the test✓ Script various tasks and activities by using bash, ruby, python, Perl✓ Understand and interpret the detailed information on vulnerabilities and exploits in pursuance of quality testing, test cases generation, and quality assurance✓ Utilize common tools such as VMware suite, SQL, binary editors, terminal clients, RDP clients, Metasploit, Wireshark, Burp Suite, browser’s developers’ tools Show less
Licenses & Certifications

Google Cloud Development Track
Google Cloud - Minnesota- View certificate

Google Cloud Infrastructure Track
Google Cloud - MinnesotaMay 2021 - View certificate

Google Crash Course on Python
CourseraSept 2020 
Certified Ethical Hacker(CEHv10)
EC-CouncilAug 2020- View certificate

Guinness World Record Participation Certificate
GUVI Geek Networks, IITM Research Park - View certificate

Ethical Hacking
InternshalaApr 2019 - View certificate

Build a Face Recognition Application using Python
GUVI Geek Networks, IITM Research ParkApr 2021 - View certificate

Android App Penetration Testing
LinkedInJan 2022 - View certificate

Google: Using Python to Interact with the Operating System
CourseraOct 2020 - View certificate

Cybersecurity Compliance Framework & System Administration
CourseraMar 2021
Honors & Awards
- Awarded to Arun SCVE-2024-35302 (JetBrains TeamCity) JetBrains May 2024 https://nvd.nist.gov/vuln/detail/CVE-2024-35302
- Awarded to Arun SResearch Blog on Jenkins (CVE-2024-23897) Trend Micro Mar 2024 In depth analysis of Jenkins CLI protocol and vulnerability analysis.
- Awarded to Arun SCVE-2024-23946 | ZDI-CAN-23030 (Apache Ofbiz) Zero Day Initiative Feb 2024 https://www.zerodayinitiative.com/advisories/ZDI-24-183/https://www.cve.org/CVERecord?id=CVE-2024-23946
- Awarded to Arun SCVE-2023-37280 (Pimcore) Pimcore - Github Jul 2023 https://github.com/pimcore/admin-ui-classic-bundle/security/advisories/GHSA-hqv9-6jqw-9g8mhttps://nvd.nist.gov/vuln/detail/CVE-2023-37280https://huntr.dev/bounties/1fa1cc3b-75ff-4d34-99ae-4a705eb623e7/
- Awarded to Arun S1 Trend Micro AI Hackathon Finalist - Got selected to participate in finals at Japan after qualifying preliminary rounds.
- Awarded to Arun SAcknowledged by NCIIPC NCIIPC RVDP For reporting IDOR Vulnerability
- Awarded to Arun SAcknowledged by pupilfirst.com Pupilfirst.com
- Awarded to Arun SBug Bounty from hackerone Hackerone Got Bug Bounties from hackerone
Volunteer Experience
Volunteer
Issued by Computer Society of India
Associated with Arun SPatrol Leader
Issued by The Bharat Scouts and Guides on Jan 2013
Associated with Arun S
Recommendations

Priyanka ghosh dastidar
ESL Teacher with 8 + years of experience/ TESOL Certified/ MA with Distinction in TESOL and Applied ...Paris, Île-de-France, France
Syed mohammad abbas
Global Senior Manager, Sales Development at MotiveLahore District, Punjab, Pakistan
Melissa mcginnity
Communications Consultant at AgricorpGuelph, Ontario, Canada
Gabriela manoilescu
Venue Manager at Merkur Casino UKLondon Area, United Kingdom
Omid zeynali
Process EngineerGreater Toronto Area, Canada
Prashant mishra
Student at Vellore Institute of TechnologyNew Delhi, Delhi, India
Shrita pathak
Business Head and Co-Founder, Studio CoversNew Delhi, Delhi, India
Navin bijpuria
Account Executive - Channel || Account Manager - Dell || Ex - Business Manager - NewWave Computing |...Bengaluru, Karnataka, India
Claus lorenzen
As an expert in technical sales, I help companies achieve greater efficiency, acquire more new custo...Greater Flensburg Area
Shiao ling chong
Senior Financial Analyst at HPESelangor, Malaysia
Adnan ajis
Head of Administration & Infrastrure at EPF Learning Campus (ELC)Malaysia
Tomaš malinovski
Sales Manager at Šilputa UABVilnius, Vilniaus, Lithuania
Rimnaz ali
Software Engineer at DirectFN Sri Lanka Freelance content writerkandy, Central Province, Sri Lanka
Rosemary ogboi
Telecoms Operations | Cybersecurity Enthusiast| Project Management | Network Operations Analyst at E...Lagos State, Nigeria
Shona elgar
Project ManagerWellington, New Zealand
Louise orage
DirectorEmneth, England, United Kingdom
Erick schuenck f. mokdeci
Fullstack Dev || Software EngineerFlorianópolis, Santa Catarina, Brazil
Helia jangi
Student at Ferdowsi University of MashhadMashhad County, Razavi Khorasan, Iran
Ismail yassin
Elections Management Officer and Youth EntrepreneurKenya
Jeff huggler
Quality Assurance Manager at Robert Bosch Tool CorporationLincolnton, North Carolina, United States
...