Bhavuk Jain

Co-Founder

8 yrs 4 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Over $100,000 awarded in bug bounties.
  • Ranked top in security programs by major tech companies.
  • Expert in mobile and web security assessments.
Stackforce AI infers this person is a Cybersecurity expert specializing in mobile and web security.

Contact

Skills

Core Skills

Penetration TestingIos DevelopmentPentestingIos SecuritySecurity ResearchBug Bounty HuntingThreat ModelingReact Native

Other Skills

Amazon Web Services (AWS)Apple PayAutolayoutBeta TestingBitBucketBloggingBraintreeBurp SuiteCC LanguageCloud SecurityCore AnimationCore BluetoothCore DataData Structures

About

With a deep-seated passion and over 9 years of extensive experience, I've honed my expertise in multiple facets of mobile development, spanning iOS native development, React Native development, and web and mobile security. My mission is to contribute to a safer digital world for all. My curiosity leads me to explore the realm of mass-scale user data abuses, data leaks, and the intricacies of data sharing on the internet. I'm currently dedicated to part-time bug bounty hunting while actively participating in live hacking events across the globe. Additionally, I work as a Pentester for HackerOne and share my insights through security research blogs on https://bhavukjain.com. Here's a glimpse of my bug bounty hunting achievements: - Awarded $100,000 by Apple for finding a bug in Sign in with Apple - https://bhavukjain.com/blog/2020/05/30/zeroday-signin-with-apple - Ranked #3 in Facebook Security 2018 - Facebook Whitehat https://www.facebook.com/whitehat/thanks - Ranked #5 in Yahoo Security 2017 - Yahoo Security https://hackerone.com/yahoo/thanks/2017 - Awarded the Most Creative Bug at Bounty Bash Nepal 2019 At my previous organisation, I have catered to Fortune 50 companies, my role encompassed a diverse set of responsibilities. These include performing threat modeling, web security assessments, iOS security assessments, source code reviews, cloud security assessments, reverse engineering to name a few.

Experience

Hackerone

2 roles

Pentest Lead

Promoted

Oct 2024Present · 1 yr 5 mos · Remote

  • Conducted over 30 penetration tests on iOS and web applications spanning diverse sectors such as finance, cryptocurrency, e-commerce, travel agencies, and job portals, serving fast growing startups, unicorns, and Fortune 500 companies.
Penetration TestingiOS DevelopmentWeb Security

Pentester - iOS and Web

Sep 2022Present · 3 yrs 6 mos · Remote

  • Chosen among a select few globally for performing pentests on HackerOne's PTaaS (Pentest as a service), specializing in iOS and web.
PentestingiOS SecurityWeb Security

Confidential

Senior Security Engineer

Jul 2021Jan 2024 · 2 yrs 6 mos

  • Led and mentored the India team, overseeing 6 direct reports.
  • Orchestrated projects with various Fortune 50 companies including Meta (worked with Facebook NPE, Oculus, Threat Modeling team to name a few), Whole Foods Market (an Amazon company), Costco etc starting from scope to a read out call with key stakeholders.
  • Spearheaded web/iOS white box and black box penetration testing, utilizing expertise in JavaScript, Python, Java, Swift, and Objective-C, while leveraging OWASP ASVS and MASVS standards.
  • Conducted AWS cloud security assessments and threat modeling using STRIDE mnemonic.
  • Evaluated candidate skills and experience to match organizational needs during recruitment.
Threat ModelingCloud SecurityPenetration Testing

Stacqtrace

Founder - Security Researcher

Jun 2018Present · 7 yrs 9 mos · Greater Delhi Area

  • Security researcher and one of the top bug bounty hunter for various tech giants including Apple, Verizon Media (Yahoo), Meta (Facebook) etc.
  • Developed a custom static analyzer for iOS applications capable of performing sophisticated exploitation, resulting in the discovery of critical issues that have collectively earned over $50k in bounties.
  • Utilized Frida and Hopper Disassembler to patch iOS applications, bypassing SSL pinning and jailbreak detection measures, while also modifying other functionalities within the code.
Security ResearchStatic AnalysisBug Bounty Hunting

Spotsoon

2 roles

React Native Developer

Mar 2018Jun 2018 · 3 mos

React NativeMobile Development

Product Lead - Sr. iOS Developer

Apr 2016Jun 2018 · 2 yrs 2 mos

iOS Development

Take a sport

CTO

Feb 2016Jul 2017 · 1 yr 5 mos · New Delhi, India

3embed software technologies

iOS Developer

Sep 2014Jan 2016 · 1 yr 4 mos · bengaluru, karnataka, india

  • Working on home automation system to connect to electronic devices via bluetooth or wifi.
  • Developing On-Demand delivery services and working mostly on the driver side.
  • Integrating external libraries and frameworks.
iOS DevelopmentHome Automation

Infinite dreams

Beta Tester

Apr 2013May 2013 · 1 mo

  • I was officially the beta tester of the game Can Knockdown 3 for the iOS/Android platform which has over 15 million downloads.
Beta Testing

Education

Udacity

React Nanodegree — Computer Programming

Jan 2017Jan 2018

Dr. A.P.J. Abdul Kalam Technical University

Bachelor's degree

Jan 2010Jan 2014

Stackforce found 100+ more professionals with Penetration Testing & Ios Development

Explore similar profiles based on matching skills and experience