About B0dj0x

Offensive security specialist. I break systems so they can be built stronger.

Who Am I

I'm B0dj0x — a cybersecurity researcher and red team operator focused on offensive security, bug bounty hunting, and vulnerability research.

Ranked in the Top 1% globally on TryHackMe, I specialize in discovering critical vulnerabilities across web applications, APIs, and network infrastructure. My work spans penetration testing, red team operations, OSINT, and full-chain exploit development.

I've reported vulnerabilities to major platforms including HackerOne, Bugcrowd, and YesWeHack, and I'm credited for discovering CVE-2025-0133 (Microsoft). I actively contribute to the security community through write-ups, CTF challenges, and open-source tools.

When I'm not hunting bugs, I'm building security tools, competing in CTFs, or teaching others how to think like an attacker — because understanding offense is the best defense.

Core Skills

Penetration Testing
Bug Bounty
Red Teaming
Web Security
Network Security
OSINT
Python
Bash
Metasploit
Burp Suite
Nmap
SQL Injection
XSS
SSRF
LFI/RFI
Active Directory
Linux
Windows

Mission

Make the internet safer by finding and fixing vulnerabilities before malicious actors can exploit them. Every bug found is a system protected.

Experience Timeline

Key milestones in my cybersecurity journey.

CVE-2025-0133 Discovery

2025

Credited by Microsoft for discovering a critical vulnerability. Published advisory and proof-of-concept.

Top 1% TryHackMe

2024 — Present

Achieved global ranking in the top 1% on TryHackMe, completing advanced offensive security paths and rooms.

Bug Bounty Hunter

2023 — Present

Active hunter on HackerOne, Bugcrowd, and YesWeHack. Specializing in web application security and API testing.

Red Team Operations

2023 — Present

Conducting full-scope red team engagements including social engineering, physical security, and network exploitation.

Open Source Security Tools

2022 — Present

Building and maintaining open-source security tools including scanners, automation frameworks, and OSINT utilities.