Skip to content
~/nem0thefinder

Experience

Where I've worked and what I actually did there.

  1. Security Analyst, Vulnerability Triage · HackenProof

    Apr 2026 – Present·7 mos·Remote·Full-time

    Role

    Investigate and triage vulnerability reports across Web3 protocols, from initial submission through reproduction, severity assessment, and final verdict.

    Responsibilities

    • Triage 5,000+ inbound vulnerability reports, validating scope, reproducing reported issues, assessing severity, and determining appropriate escalation.
    • Investigate incomplete or disputed reports by reconstructing attack paths, building timelines, and separating demonstrated impact from unsupported claims.
    • Communicate technical verdicts to researchers, including rejections and the reasoning behind them.
    • Conduct private smart-contract security audits for platform clients across different Web3 protocols.

    Selected work

    • Identified a critical-severity vulnerability in a prediction-market protocol during a private security engagement.
    • Completed 2 private client audits, with 1C · 1M · 8L confirmed findings.

    Technologies

    • Vulnerability Triage
    • CVSS
    • Incident Analysis
    • Solidity
    • Rust
    • Foundry
    • EVM
  2. Independent Security Researcher · Competitive Audit Platforms

    Jan 2025 – Present·1 yr 10 mos·Remote·Freelance

    Role

    Conduct competitive smart-contract security audits through public audit contests and independent research, focusing on identifying vulnerabilities in DeFi and other Web3 protocols.

    Responsibilities

    • Compete in public smart-contract audit contests across Code4rena, Immunefi, Cantina, HackenProof, and CodeHawks.
    • Review Solidity codebases, trace execution paths, analyze protocol invariants, and investigate potential attack surfaces.
    • Develop proof-of-concept exploits and document findings with root cause, impact, attack path, and remediation details.
    • Study published audit reports and security research to continuously improve auditing methodology and vulnerability detection.

    Selected results

    • Placed 3rd of 50 in OpenEden and 7th of 43 in OpenEden USDO Express.
    • Authored public reports for audit engagements, documenting root cause, proof of concept, and remediation.
    • Completed 5 public audit contests, with 7H · 8M · 12L · 3I confirmed findings.
    • Completed 3 first-flight training contests, with 8H · 9M · 5L confirmed findings.

    Technologies

    • Solidity
    • Foundry
    • EVM

Education

B.Sc. Computer Science

2025