Deepak Raj Security research
Deepak Raj

00Initial Access

Deepak Raj

Cybersecurity Researcher Deputy Manager, Protiviti

Offensive security across web, mobile, API, network, cloud and Web3 — full-scope penetration tests, red team operations, and the recon automation that finds the targets before the testing starts.

  • Coimbatore, Tamil Nadu, India
  • Testing since Oct 2021
  • Top 500 · Hack The Box
  • Hall of Fame · BMW & Synack

Attack surface map

attack_surface.map Select a node

  • Target surfaces
  • Emerging technology
  • Offensive operations

readout Eleven nodes plotted. Select any one to read the practice behind it — the skills involved, and the engagements they came from.

Red Team Offensive operations

Adversary simulation and threat modelling across full-scope engagements — run as an operator, and now as the person overseeing the operation.

  • Red Team Operations
  • Threat Modeling
  • Phishing Campaigns
  • Vulnerability Management
  • Overseeing red team operations and vulnerability assessmentsDeputy Manager · Protiviti
  • Led red teaming activities across web, network, API and mobile domainsConsultant 3 · Protiviti
  • Collaborated on red teaming and phishing campaignsSecurity Analyst · WATI
Career chain

Recon / ASM Offensive operations

Attack surface discovery treated as an automated pipeline rather than a manual checklist — enumeration, dorking and intelligence feeds wired into repeatable tooling.

  • OSINT
  • Attack Surface Management
  • Threat Intelligence
  • Subdomain Enumeration
  • Automated Attack Surface Management (ASM) with open-source toolsSecurity Engineer · Accubits
  • Monitor threat intelligence feeds and dark web sources for emerging threatsSecurity Delivery Analyst · Accenture
  • Reconner and DorkScanner — self-built recon automationOpen-source tooling
Tooling

AI Security Emerging technology

The newest surface on the map. Tracked as a stated area of focus alongside the Web3 work rather than as delivered engagement history.

  • AI Security
  • Listed under emerging technology specialisationsSkill inventory
Skill inventory

Web3 Emerging technology

Vulnerability assessment and penetration testing against blockchain platforms, NFT systems and the contracts underneath them.

  • Web3 Security
  • Blockchain Security
  • NFT Security
  • Smart Contract Auditing
  • Conducted VAPT on Web3 applications, NFTs and blockchain platformsSecurity Engineer · Accubits
Skill inventory

Cloud Target surface

Cloud configuration and application testing, assessed against risk and compliance objectives together rather than in isolation.

  • Cloud Security Audit
  • AWS Application Testing
  • Compliance Audit
  • Conducted cloud audits for compliance and risk mitigationConsultant 3 · Protiviti
  • Cloud Application Testing on AWSSecurity Analyst · WATI
Skill inventory

Network Target surface

Network penetration testing across black box, gray box and white box engagement models, depending on how much the client wants the tester to already know.

  • Network Penetration Testing
  • Black / Gray / White Box Testing
  • Performed black box, gray box and white box testingSecurity Analyst · WATI
  • Led red teaming activities across web, network, API and mobile domainsConsultant 3 · Protiviti
Skill inventory

Thick Client Target surface

Desktop applications — the surface most programs skip. Assessed for insecure implementation and the trust the binary places in the machine it runs on.

  • Thick Client Testing
  • Data Encryption
  • Evaluate APIs, Thick Clients and Mobile apps for secure implementationsSecurity Delivery Analyst · Accenture
Skill inventory

Mobile Target surface

Android application security testing, from static analysis of the package through to runtime behaviour and the backend it talks to.

  • Mobile App Security (Android)
  • MobSF
  • Performed comprehensive security testing on web, mobile and APIsSecurity Engineer · Accubits
  • Evaluate APIs, Thick Clients and Mobile apps for secure implementationsSecurity Delivery Analyst · Accenture
Skill inventory

Source Code Target surface

Reading the implementation instead of probing it — static analysis and manual review pushed early in the lifecycle, then handed back to the teams writing the code.

  • Source Code Review
  • SAST / DAST
  • OWASP Top 10
  • SANS Top 25
  • Secure Coding
  • Apply SAST methodologies for early vulnerability detectionSecurity Delivery Analyst · Accenture
  • Source code reviews with OWASP Top 10 and SANS Top 25 expertiseSecurity Engineer · Accubits
  • Deliver training on penetration testing, SAST, DAST and secure coding practicesSecurity Delivery Analyst · Accenture
Skill inventory

API Target surface

The layer between the client and everything behind it — authorisation logic, undocumented parameters, and how the stack disagrees with itself about parsing a request.

  • API Security Testing
  • Parameter Discovery (Arjun)
  • Request Smuggling (Smuggler)
  • CORS Misconfiguration
  • Evaluate APIs, Thick Clients and Mobile apps for secure implementationsSecurity Delivery Analyst · Accenture
  • Led red teaming activities across web, network, API and mobile domainsConsultant 3 · Protiviti
Skill inventory

Web Target surface

The densest node on the map — web application testing across client engagements and live bounty programs, and the surface the Hall of Fame recognition came from.

  • Web Penetration Testing
  • Application Security
  • OWASP Top 10
  • Burp Suite
  • OWASP ZAP
  • Hall of Fame recognition from BMW Group and Synack targetsBug bounty
  • Led red teaming activities across web, network, API and mobile domainsConsultant 3 · Protiviti
  • Worked with healthcare and banking sector clientsConsultant 3 · Protiviti
Recognition

0day Offensive operations

The research track running underneath the assessment work: exploit analysis, vulnerability research, and tracking what is about to become everyone else's problem.

  • 0-day Exploits
  • CVE Analysis
  • Threat Intelligence
  • Research & Analysis
  • 0-day exploits, CVE analysis and threat intelligenceSecurity research focus
Research output

01Reconnaissance

Profile

Finding a bug is the easy half. The useful half is understanding why the design allowed it.

I work the offensive side of security: locating the vulnerability, understanding the technique that makes it exploitable, and tracking the threats that are still forming. That mindset applies the same way to a banking web app, an Android package, a thick client binary or a smart contract.

As Deputy Manager at Protiviti I lead security assessment and penetration testing engagements, manage the consulting projects and client relationships around them, and mentor the team delivering the work. Before that — Accenture, Accubits and West Advanced Technologies — testing web applications, mobile apps, APIs, thick clients, cloud infrastructure and Web3 platforms, including healthcare and banking clients.

The work does not stop at the report. I build the recon tooling I need, hunt on live bounty programs, and hand the methodology back through writeups, guest lectures and training.

02Attack Surface

What I test, and what I test it with

The full inventory behind the map — grouped by the kind of problem rather than by tool logo.

Offensive Testing

Surfaces assessed end to end

  • Web Penetration Testing
  • API Security Testing
  • Mobile App Security (Android)
  • Network Penetration Testing
  • Thick Client Testing
  • Cloud Security Audit

Red Team & Intelligence

Adversary simulation and the intel behind it

  • Red Team Operations
  • Threat Intelligence
  • OSINT
  • Attack Surface Management
  • Phishing Campaigns
  • Threat Modeling

Application & Code Security

Reading the implementation, not only probing it

  • Application Security
  • Source Code Review
  • OWASP Top 10
  • SANS Top 25
  • Secure Coding
  • Data Encryption
  • SAST / DAST

Emerging Technology

Surfaces without a settled playbook yet

  • Web3 Security
  • Blockchain Security
  • Smart Contract Auditing
  • NFT Security
  • AI Security

Toolchain

Commercial tooling and the open-source recon stack

  • Burp Suite
  • OWASP ZAP
  • Kali Linux
  • Qualys
  • MobSF
  • assetfinder
  • subjack
  • CloudFail
  • Arjun
  • Smuggler
  • Selenium

Program & Delivery

Turning findings into organisational change

  • Vulnerability Management
  • Compliance Audit
  • Team Leadership
  • Training Delivery
  • Research & Analysis
  • Communication
  • Problem Solving

03Exploitation

Tooling and field work

Two open-source tools built to make discovery repeatable, and the live-target work that keeps the methodology honest.

Reconner Recon automation Collapses an entire enumeration stack into a single command.
Target
Full-scope engagements and bug bounty programs where the attack surface has to be discovered before anything can be tested.
Approach
Wraps established recon utilities behind one interface, so a scope runs the same way every time instead of being reassembled by hand.
Components
assetfinder for subdomain discovery, subjack for takeover checks, CloudFail for origin exposure, Arjun for parameter discovery, Smuggler for request smuggling probes.
Behaviour
Targeted or full-scope runs, with structured output logging so results stay reviewable long after the run finishes.
  • Recon
  • Subdomain
  • CORS
  • Automation
Source on GitHub
DorkScanner Search automation Turns the Exploit-DB dork corpus into an automated sweep against a domain.
Target
Publicly indexed content that should never have been indexed — exposed panels, configuration files and error output reachable through search alone.
Approach
Scrapes Google dork entries from Exploit-DB, runs them against the target domain, then crawls the URLs that come back.
Challenge
Long-running automated search is fragile. Retry and resume logic lets a sweep survive interruption instead of restarting from zero.
Output
Export functionality for the discovered result set.
  • Google Dorks
  • Selenium
  • OSINT
  • Automation
Source on GitHub
Bug Bounty Field Work Live targets Vulnerability research against production systems, on public programs and vetted platforms.
Recognition
Hall of Fame at BMW Group and on Synack targets, for valid security bug submissions.
Platforms
Synack Red Team and PentaBug.
Live work
Invited by Airtel to run a live bug bounty hunting session at Nullcon.
  • Synack Red Team
  • PentaBug
  • Hall of Fame
Ask for detail

04Privilege Escalation

Career chain

Five roles, most recent first — analyst to engineer to consultant to manager, with the scope widening at each step.

  1. — Present

    Deputy Manager

    Protiviti India Member Firm Bengaluru

    • Leading security assessment and penetration testing engagements
    • Managing security consulting projects and client relationships
    • Overseeing red team operations and vulnerability assessments
    • Mentoring and guiding security team members
    • Delivery
    • Red Team
    • Mentoring
  2. Security Delivery Analyst

    Accenture Bengaluru

    • Tailor security assessments aligned with business objectives and compliance
    • Apply SAST methodologies for early vulnerability detection
    • Evaluate APIs, Thick Clients and Mobile apps for secure implementations
    • Monitor threat intelligence feeds and dark web sources for emerging threats
    • Deliver training on penetration testing, SAST, DAST and secure coding practices
    • SAST
    • API
    • Mobile
    • Threat Intel
  3. Consultant 3

    Protiviti India Member Firm Bengaluru

    • Led red teaming activities across web, network, API and mobile domains
    • Managed penetration testing projects with 3–4 member teams
    • Conducted cloud audits for compliance and risk mitigation
    • Worked with healthcare and banking sector clients
    • Red Team
    • Cloud
    • Healthcare
    • Banking
  4. Security Engineer

    Accubits Technologies Inc Kerala

    • Conducted VAPT on Web3 applications, NFTs and blockchain platforms
    • Automated Attack Surface Management (ASM) with open-source tools
    • Performed comprehensive security testing on web, mobile and APIs
    • Source code reviews with OWASP Top 10 and SANS Top 25 expertise
    • Web3
    • ASM
    • Code Review
  5. Security Analyst

    West Advanced Technologies, Inc Hyderabad

    • Performed black box, gray box and white box testing
    • Collaborated on red teaming and phishing campaigns
    • Cloud Application Testing on AWS
    • Network
    • Phishing
    • AWS

05Persistence

Certifications and recognition

The credentials and external validation that stay on the record.

Certifications

  • CAP
  • eWPTXWeb Application Penetration Tester eXtreme
  • RastaLabs ProHack The Box Pro Lab
  • PentesterLabHands-on exploitation training
  • Synack Red TeamVetted researcher platform

Recognition

  • hall of fame

    BMW Group & Synack

    Recognised by BMW Group and on Synack targets for submitting valid security bugs.

  • ranking

    Top 500 — Hack The Box

    Ranked inside the global top 500 on the Hack The Box platform.

  • speaking

    Nullcon — invited session

    Invited by Airtel to run a live bug bounty hunting session at Nullcon.

06Exfiltration

Knowledge out

What leaves the engagement and goes back to the community — writing, tooling, teaching.

07Exit

Get in touch

Email is the fastest route. Everything else lives on the profiles below.

Composes a message in your own mail client — nothing is sent from this page, and nothing is stored.