Red Teamer | Penetration Tester | CTF Player

LPT (Master) | C|PENT v2 | CNSP | CRTOM | CAPIE | CWAP | CAP

Zabed Ullah Poyel

About Me

Dedicated cybersecurity professional with expertise in offensive security

Zabed Ullah Poyel

I'm a Red Teamer and Penetration Tester with proven real-world impact — critical vulnerabilities discovered and reported at NASA, Amazon, Stanford University and RMIT University through active bug bounty work on HackerOne and Bugcrowd. Certified as an LPT Master and CPENT v2 (EC-Council), I specialize in Web, API, AWS Cloud, Network and AI/LLM application security, combining hands-on penetration testing with Red Team operations and continuous CTF competition. I'm dedicated to ethical hacking, clear technical reporting and mentoring the next generation of security researchers.

  • Keep safe exploring the internet
  • Secure your business and website
  • Connect to ultra-fast private servers

Achievements & Experience

Showcasing my competitive achievements, honors, and professional experience

CTF Achievements

  • CUET StealthFlags 2025 National CTF: 6th
  • MIST Cyber Drill 2025: 13th
  • Knight CTF 2026: 15th
  • BDSec CTF 2025: 22nd
  • BCS ICT FEST 2025: 24th
  • Bugcrowd x Black Hat USA 2025 CTF: 27th

Awards & Recognition

  • Hackers4Humanity Graduate: Recognized at HackerHalted 2026 (EC-Council)
  • Letter of Recognition (LOR): NASA (2025)
  • Coins Awards: Top 100 performers at Bugcrowd Black Hat USA CTF 2025
  • Hall of Fame: NASA, University of Canterbury
  • Thanks Received: Amazon, TECNO SRC, MTN Group, ION Group

Experience

  • Penetration Tester: Metaphor Security LLC
  • Red Team Lead: The Black Onion
  • Support Mentor: Cyber Bangla Academy

Professional Services

Comprehensive cybersecurity solutions to protect your digital assets

Vulnerability Assessment & Penetration Testing (VAPT)

  • Automated vulnerability scanning
  • Manual penetration testing
  • Detailed technical reports
  • Remediation guidance

Web Application & API Testing

  • OWASP Top 10 coverage
  • API security testing
  • Business logic testing
  • LLM / AI-based app security

Network Penetration Testing

  • External network testing
  • Internal network assessment
  • Wireless network testing
  • Network infrastructure security

AWS Penetration Testing

  • IAM:Identity and Access Management
  • VPC: Virtual Private Cloud
  • EC2: Elastic Compute Cloud
  • S3: Simple Storage Service

CMS Security Audits

  • Plugin vulnerability assessment
  • Configuration security review
  • Custom code analysis
  • Update and patch verification

OSINT & Digital Reconnaissance

  • Social Media & Surface Web Profiling
  • Data Breach and Leak Analysis
  • Employee & Organization Recon
  • Dark web and deep web Monitoring

Let's Work Together

Ready to strengthen your cybersecurity posture? Get in touch today.

Email

zabedullahpoyelcontact@gmail.com