kartik@kali:~ — zsh — 80×24
OFFENSIVE SECURITY SPECIALIST • VAPT • PENTEST
KARTIK
YADAV
❯

Certified Ethical Hacker with hands-on expertise in web application security, vulnerability assessment & penetration testing. Linux + Windows, Active Directory, network enumeration — sharpened through CTFs, HTB/TryHackMe labs and real-world bug hunting. Currently preparing for HTB CPTS.

LOC Indore, M.P, India ROLE Security & IT Analyst
STATUS: ONLINE  •  AVAILABLE FOR OPPORTUNITIES  •  kartikyad007@gmail.com
Kartik Yadav
5+CTFs
20+THM LABS
6+CERTS
GITHUB EMAIL
SYSTEM.SUMMARY

About — offensive mindset, defender discipline.

Strong foundation in networking, cybersecurity & system administration across Windows and Linux. I hunt vulnerabilities, document them cleanly, and help teams ship safer systems.

// WHAT I DO

Web application penetration testing (OWASP Top 10, auth & access control), reconnaissance & footprinting, scanning/enumeration, server exploitation, packet analysis and privilege escalation — with a focus on reproducible PoCs and clear reporting.

VAPTPentestingBug HuntingReport Writing

// HOW I WORK

  • Methodical recon → targeted enumeration → manual validation
  • Tool-assisted, human-verified — no noisy scanner dumps
  • Clean, developer-friendly remediation guidance
  • Linux & Windows tradecraft, AD fundamentals, lateral movement concepts
SKILL_SET

Skills & toolkit

Built around real labs, CTFs and assessments — not just theory.

// WEB SECURITY

OWASP Top 10Web App PentestingAuth & Access ControlVulnerability AssessmentBug Hunting

// NETWORK & SYSTEM

Network Scanning & EnumerationActive Directory FundamentalsLateral MovementPacket AnalysisLinux & Windows SysAdminPrivilege Escalation

// SECURITY CONCEPTS

ReconnaissanceFootprintingServer ExploitationVuln IdentificationSecurity Testing Methodologies

// TOOL_KIT

Burp SuiteNmapMetasploitNiktoBloodHoundWiresharkAircrack-ngDirsearchGobusterNetcatHydraLinuxWindows ServerDHCP & DNSActive Directory
CREDENTIALS.CERTIFICATIONS

Certifications & verified credentials

Tap any certificate to preview full-size. All originals are in /Certification. Resume also available as PDF.

Certified Ethical Hacker CEH

Certified Ethical Hacker

Certified Ethical Hacker — core offensive security certification.

ESCHATON CTF Certificate ESCHATON CTF

ESCHATON CTF — Certificate of Participation

Successfully participated in the ESCHATON CTF Qualifiers, held online on 31st January 2026.

31 JAN 2026 VIEW →
Armour Infosec Web Application Penetration Tester ARMOUR INFOSec

Web Application Penetration Tester

Armour Infosec — Web exploitation, OWASP, manual pentest methodology.

Wireless-Penetration-Tester WAPT

Wireless-Penetration-Tester

Comprehensive web pentest certification — auth, injection, access control.

Certified Linux Server Administrator AILWSA

Certified Linux Server Administrator

Armour Infosec — Linux hardening, services, networking & administration.

ARMOUR INFOSecVIEW →
Certified WordPress Security Expert WP SECURITY

Certified WordPress Security Expert

WordPress hardening, plugin/theme audit, WAF & misconfiguration review.

ARMOUR INFOSecVIEW →
EDUCATION.TIMELINE

Education

Master of Computer Applications (MCA)

Oriental University, Indore
2022 — 2024

Bachelor of Computer Applications (BCA)

Dr. A.P.J. Abdul Kalam University, Indore
2018 — 2021
CTF.PRACTICAL_EXPERIENCE

Practical experience & CTFs

Learning by breaking — and fixing.

⚑

5+ CTF Competitions

ESCHATON, Pragyan, Nullcon Goa HackIM, Pascal, CyberQuest — web & network security challenges, live scoreboards, team & solo rounds.

▶

20+ TryHackMe Labs

Structured paths across web, network & privilege escalation — plus PortSwigger Web Security Academy & Hack The Box labs.

◆

Bug Bounty Practice

Real-world recon, vulnerability discovery and responsible disclosure practice with written reports.

⬡

Currently: HTB CPTS

Preparing for Hack The Box Certified Penetration Testing Specialist — active lab time, methodology & reporting.

CONTACT.OPEN_SESSION

Let's connect

Open to entry-level cybersecurity, VAPT & penetration testing roles — freelance assessments and collaborations too.

// REACH ME

⌖Indore, Madhya Pradesh, India

// QUICK MESSAGE

Prefer email for fastest response. Attach scope/target details for assessments and I'll reply with methodology, timeline and next steps. Response typically within 24 hours.

✉ EMAIL_KARTIK
$ echo "Available for: VAPT • Web Pentest • Network Assessment • AD Review"
→ Strong analytical & documentation skills • Quick learner • Red Team focused