BUG.HUNTER
Security Researcher — Bug Hunter — 2026
Click to enter
Authenticating
0%
Security Researcher & Bug Hunter

Zahran
Nur Rohman

// Ethical Hacker · OSINT Specialist · Penetration Tester

0 Bugs Found+
0 Sertifikat
0 Tahun Exp+
zahran@hunter: ~/recon — bash
$ nmap -sV --script vuln target.com > SQL Injection: Detected $ sqlmap -u "url" --dbs --dump > XSS: Payload Injected $ nuclei -u target.com -t cves/ > SSRF: Internal IP Exposed $ gobuster dir -u target -w wordlist.txt > IDOR: Privilege Escalation Found $ subfinder -d target.com | httpx > XXE Injection: File Read $ nmap -sV --script vuln target.com > SQL Injection: Detected $ sqlmap -u "url" --dbs --dump > XSS: Payload Injected $ nuclei -u target.com -t cves/ > SSRF: Internal IP Exposed $ gobuster dir -u target -w wordlist.txt > IDOR: Privilege Escalation Found

Who Am I?

Saya adalah Zahran Nur Rohman, seorang Security Researcher dan Bug Hunter berpengalaman dari Indonesia. Dengan lebih dari 2 Tahun pengalaman di dunia keamanan siber, saya telah membantu ratusan perusahaan menemukan dan memperbaiki kerentanan kritis sebelum dieksploitasi oleh pihak jahat.

Spesialisasi saya mencakup Web Application Security, API Security Testing, OSINT, dan Network Penetration Testing. Saya aktif berpartisipasi di platform bug bounty seperti HackerOne dan Bugcrowd, serta rutin mengikuti CTF (Capture The Flag) competition.

Selain hunting bugs, saya juga mengembangkan komunitas bug hunter untuk mendalami ilmu secara bersama.

"Hack ethically, report responsibly, make the internet safer."

Nama
Zahran Nur Rohman
Lokasi
🇮🇩 Indonesia
Pengalaman
2+ Tahun
Platform Bug Bounty
Active Hunter
HackerOne Bugcrowd CTF Competitor
Focus Area
Web AppSec API Security OSINT PenTest

Expertise

🌐 Web Security
Web Application Security98%
SQL Injection XSS Broken Link Hijacking Dump Database XXE Injection IDOR SSRF Business Logic Bugs
🔍 OSINT
OSINT & Reconnaissance89%
Subdomain Enumeration Google Dorking Shodan Intelligence Social Engineering DNS Recon
🛡️ Security Tools
Security Tools91%
Nuclei Nmap Sqlmap Gobuster FFUF Whatweb Paramspider Katana Dalfox XSStrike Metasploit
🖧 Network PenTest
Network Penetration Testing85%
Network Scanning Service Enumeration Exploit Dev Post-Exploitation Privilege Escalation
Security Arsenal
Nuclei Nmap Sqlmap Gobuster FFUF Whatweb Paramspider Katana Dalfox XSStrike Metasploit Subfinder Amass Burp Suite Shodan Wireshark

Credentials

Sertifikat Faculty Of Medicine UI
View Full
CERT — 001
Faculty Of Medicine
Universitas Indonesia
Sertifikat Red Team Leaders
View Full
CERT — 002
Red Team Leaders
Sertifikat ID-Networkers
View Full
CERT — 003
ID-Networkers
Sertifikat Cisco
View Full
CERT — 004
Cisco
Sertifikat Cyber Academy
View Full
CERT — 005
Cyber Academy

Let's Connect

Temukan saya di berbagai platform. Jangan ragu untuk menghubungi terkait kolaborasi, bug bounty, atau sekadar diskusi seputar keamanan siber.

zahran@hunter:~$
$ whoami
zahran_nur_rohman
$ cat role.txt
Security Researcher & Bug Hunter
$ cat location.txt
Indonesia 🇮🇩
$ cat platforms.txt
HackerOne | Bugcrowd | CTF
$ ping zahran