BUG BOUNTY HUNTER · SECURITY RESEARCHER
Breaking things
responsibly.
I'm Rasel Rana, a bug bounty hunter focused on finding vulnerabilities in web applications, APIs and modern web infrastructure.
$ whoami
0xraselrana
$ cat focus.txt
Web Security · API Security
Recon · Cloud Security
$ status
● ONLINE / hunting for bugs
$
01 — ABOUT
Security is a mindset.
I’m Rasel Rana (0xraselrana), a security researcher
and bug bounty hunter. My work revolves around discovering and responsibly
reporting security vulnerabilities that can affect real users and systems.
I enjoy the full research process — from attack-surface discovery and reconnaissance to manual testing, exploitation and clear vulnerability reporting.
Find the edge case.
Understand the impact.
Report it responsibly.
02 — BUG BOUNTY
Find me on the platforms.
Follow my public researcher profiles and security activity.
03 — RESEARCH
Writeups & findings.
Technical notes, vulnerability research and lessons learned.
MEDIUM · FEATURED WRITEUP
From Probably a False Positive to a Bounty
How I exploited an overlooked API.
04 — TOOLKIT
Tools of the trade.
Subfinder · Amass · Assetfinder · Findomain · Knockpy · Shuffledns · DNSx · httpx
Burp Suite · Nuclei · FFUF · API Testing · Authentication · Access Control
Attack Surface Mapping · Manual Testing · Vulnerability Validation · Responsible Disclosure
Linux · Git · GitHub · Bash · Cloud Infrastructure
05 — CONNECT
Let's talk security.
Have a research collaboration, security opportunity or just want to connect?