{"data":{"recognition":{"edges":[{"node":{"frontmatter":{"title":"National Cyber League, Spring 2026","tech":["NCL","Top 1.3%","Team Game"],"github":"","external":"https://nationalcyberleague.org/"},"html":"<p>Placed <strong>49th</strong> out of <strong>3,634</strong> teams in the Spring 2026 Team Game, scoring <strong>2,960</strong> of 3,000 points with <strong>99%</strong> of challenges completed.</p>"}},{"node":{"frontmatter":{"title":"Duke University Responsible Disclosure","tech":["Duke University","SQL Injection"],"github":null,"external":"https://security.duke.edu/news/duke-recognizes-responsible-disclosure-69/"},"html":"<p>Found a critical Union-based SQL Injection Vulnerability in one of the online assets of <a href=\"https://duke.edu/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Duke University</a>.</p>"}},{"node":{"frontmatter":{"title":"HackerOne Ambassador World Cup","tech":["HackerOne","3rd Globally","Nepal"],"github":"","external":"https://www.hackerone.com/ambassador-world-cup"},"html":"<p>Placed <strong>3rd globally</strong> in the 2023 Ambassador World Cup, representing Nepal.</p>"}},{"node":{"frontmatter":{"title":"Drexel University Bug Bounty","tech":["Drexel University","SSRF"],"github":"","external":"https://drive.google.com/file/d/1du2H22lSkGIjkfu6FVPsHEzCeHgFHR3J/view?usp=sharing"},"html":"<p>Identified and reported a SSRF vulnerability leading to Local File Read in <a href=\"https://drexel.edu/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Drexel University</a>'s online asset and received a <a href=\"https://drive.google.com/file/d/1du2H22lSkGIjkfu6FVPsHEzCeHgFHR3J/view?usp=sharing\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Letter of Recognition</a></p>"}},{"node":{"frontmatter":{"title":"U.S. Department of Health & Human Services VDP","tech":["HHS","XSS"],"github":"","external":"https://www.hhs.gov/vulnerability-disclosure-policy/acknowledgments/index.html"},"html":"<p>Got listed in <a href=\"https://www.hhs.gov/vulnerability-disclosure-policy/acknowledgments/index.html\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">U.S. Department of Health &#x26; Human Services Acknowledgments page</a> for reporting a security vulnerability.</p>"}},{"node":{"frontmatter":{"title":"Microsoft Security Hall-Of-Fame","tech":["Microsoft","MSRC HOF"],"github":"","external":"https://msrc.microsoft.com/update-guide/acknowledgement/online"},"html":"<p>Made it to <a href=\"https://msrc.microsoft.com/update-guide/acknowledgement/online\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">MSRC Hall-Of-Fame</a>, October 2022, by reporting a vulnerability in Microsoft's online asset.</p>"}},{"node":{"frontmatter":{"title":"Top 3% in TryHackMe","tech":["TryHackMe","Top 3%"],"github":"","external":"https://tryhackme.com/p/.nb1b3k"},"html":"<p>I am among Top 3% users in <a href=\"https://tryhackme.com/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">TryHackMe</a>. Checkout my <a href=\"https://tryhackme.com/p/.nb1b3k\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">TryHackMe Profile</a></p>"}},{"node":{"frontmatter":{"title":"YesWeHack Top 50","tech":["YesWeHack","Global","HOF"],"github":"","external":"https://yeswehack.com/hunters/nb1b3k"},"html":"<p>Ranked in the global <strong>top 50</strong> on <a href=\"https://yeswehack.com/hunters/nb1b3k\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">YesWeHack</a> after <strong>450+</strong> valid findings across <strong>300+</strong> programs.</p>"}},{"node":{"frontmatter":{"title":"Lazada Hall-Of-Fame","tech":["Stored XSS","IDOR","BAC"],"github":"","external":"https://yeswehack.com/programs/lazada"},"html":"<p>Listed in <a href=\"https://yeswehack.com/programs/lazada\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Hall-Of-Fame</a> of <a href=\"https://www.lazada.com.ph/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Lazada</a> and also got rewarded nice for finding a security vulnerability.</p>"}},{"node":{"frontmatter":{"title":"Alibaba Hall-Of-Fame","tech":["Alibaba HOF","Stored XSS","OAuth Misconfig"],"github":null,"external":"https://security.alibaba.com/top.htm?tab=1"},"html":"<p>Found multiple security vulnerabilities like Stored XSS, OAuth Misconfigurations, and IDOR in <a href=\"https://www.alibaba.com/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Alibaba</a>.</p>"}},{"node":{"frontmatter":{"title":"Bugv Leaderboard #3","tech":["Bugv","Leaderboard"],"github":"","external":"https://app.bugv.io/researcher/leaderboard"},"html":"<p>Currently ranked #3 on <a href=\"https://app.bugv.io/researcher/leaderboard\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Bugv Leaderboard</a>. <a href=\"https://bugv.io/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Bugv</a> is a Vulnerability Coordination and Bug Bounty platform which is made in Nepal.</p>"}},{"node":{"frontmatter":{"title":"Bytecare Technology","tech":["Information Disclosure"],"github":"","external":"https://drive.google.com/file/d/1cyKp-X4RQHAIpXlBB_SRqa5YErmBxHdt/view?usp=sharing"},"html":"<p>Reported information disclosure vulnerability to <a href=\"https://www.bytecaretech.com/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Bytecare Technology</a> and got a <a href=\"https://drive.google.com/file/d/1cyKp-X4RQHAIpXlBB_SRqa5YErmBxHdt/view?usp=sharing\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Certificate of Appreciation</a>.</p>"}},{"node":{"frontmatter":{"title":"Daraz Bug Bounty","tech":["OAuth Misconfig","Account Takeover","Stored XSS"],"github":null,"external":"https://www.daraz.com.np/"},"html":"<p>Found and reported multiple vulnerabilities to <a href=\"https://www.daraz.com.np/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Daraz</a>, Nepal's largest online shopping platform.</p>"}},{"node":{"frontmatter":{"title":"Dutch Government","tech":["Dutch Government","XSS","IDOR"],"github":null,"external":"#"},"html":"<p>\"I hacked the Dutch Government and all I got was this lousy T-Shirt.\" Yes, I hacked the Dutch Government and got a lousy T-Shirt.</p>"}},{"node":{"frontmatter":{"title":"Ekbana Solutions & QuikrFood","tech":["Account Takeover","2FA Bypass"],"github":null,"external":"https://quikrfood.com/"},"html":"<p>I found a critical Account Takeover vulnerability in <a href=\"https://quikrfood.com/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">QuikrFood</a>, a online food delivery website created by <a href=\"https://ekbana.com/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Ekbana Solutions</a>, and got rewarded for it.</p>"}},{"node":{"frontmatter":{"title":"SastoDeal","tech":["SQL Injection","Gitlab Access","Auth Bypass"],"github":"","external":"https://sastodeal.com/"},"html":"<p>I found and reported multiple critical security vulnerabilities to <a href=\"https://sastodeal.com/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">SastoDeal</a>, Nepal's ecommerce platform, and got rewarded for it.</p>"}},{"node":{"frontmatter":{"title":"CVE-2022-0540 on VZVZ.nl","tech":["CVE-2022-0540","Auth Bypass"],"github":null,"external":"https://www.vzvz.nl/report-vulnerability"},"html":"<p>Found and reported CVE-2022-0540 in one of the subdomains of <a href=\"https://www.vzvz.nl/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">VZVZ.nl</a> and got a T-Shirt as a Swag.</p>"}}]}}}