Skip to content
View mir942's full-sized avatar
  • Tp-Link
  • San Francisco, California, USA
  • LinkedIn in/mir942

Block or report mir942

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mir942/README.md

Jahidul Mir

Penetration Tester | Web App, API, Cloud & Active Directory

I test web applications, APIs, cloud environments, and Active Directory, with a focus on identifying, validating, and clearly documenting security vulnerabilities.

Scanner output is a lead, not a finding. I manually reproduce and validate vulnerabilities before they reach a report, with evidence and remediation guidance that engineering teams can act on.

Projects

  • Penetration Testing Methodology — A phased, evidence-based penetration testing methodology guided by NIST SP 800-115 and PTES.
  • Web & API Penetration Testing — A practical testing lifecycle from reconnaissance and enumeration through exploitation, reporting, and retesting, aligned with the OWASP WSTG.

Technical Focus

  • Web Application Penetration Testing
  • API Security Testing
  • Active Directory Security
  • Cloud Security Testing
  • Vulnerability Assessment & Validation
  • Reconnaissance & Enumeration
  • Exploitation & Privilege Escalation
  • Security Reporting & Remediation

Tools & Technologies

Kali Linux · Burp Suite · Nmap · Wireshark · Metasploit · Nessus · Nikto · Gobuster · SQLmap · Python · Bash

Certifications & Goals

  • CompTIA Security+
  • Working toward CPTS → PNPT → OSCP

Connect

LinkedIn

Popular repositories Loading

  1. penetration-testing-methodology penetration-testing-methodology Public

    Phased penetration testing methodology: web, API, cloud, and Active Directory | NIST SP 800-115, PTES, MITRE ATT&CK, CVSS

  2. web-application-pentesting web-application-pentesting Public

    Web and API penetration testing lifecycle: recon to retest | OWASP WSTG, Top 10, API Security Top 10 | manual validation and reporting

    1

  3. mir942 mir942 Public

    Cybersecurity portfolio of Jahidul Mir — Penetration Tester focused on web applications, APIs, cloud security, Active Directory, and offensive security.