Vikas Rawat profile photo Vikas Rawat

Security engineer, hacker, and somebody who likes digging into how systems break.

whoami

I’ve spent 6+ years across application security, DevSecOps, cloud security, vulnerability management, bug bounty, and security reviews in fintech and product environments. I like practical work, sharp writeups, and finding the weak assumptions hidden inside normal workflows.

I’ve been rewarded by 30+ organizations, including Google, Yahoo, GitLab, Zoom, Paytm, IBM, Linode, and Expedia. I was recognized as one of India’s top hackers for Google VRP in 2019 and earned CVE-2018-17571 for a stored XSS in Vanilla Forums.

what i do

I build security programs, review architecture, test applications, run bug bounty operations, and tune detection quality. More recently, i’ve been spending more time on AI security too, especially prompt injection, unsafe tool use, agent behavior, and model-connected systems that trust too much.

application security bug bounty threat modeling cloud security soc operations ai security compliance

whereami