SYSTEM ONLINE

MIDHUN MOHANAN

>  

"I fuse Offensive Security tactics with AppSec engineering. I don't just patch vulnerabilities; I engineer the system to neutralize the adversary."

IDENTITY

# TARGET_INTEL

BIO

  • Name Midhun Mohanan
  • Location Kerala, India 🇮🇳
  • Education Bachelors in Computer Applications
  • Interests Coding, Coffee, Candy, Friends

CERTIFICATIONS

CRTP CRTA CAP CNSS TCM-Android IruisRisk - Threat Modeling AI/ML Systems Certified Secure Code Review
5
Years Experience
450+
Assessments Completed
12+
Hall of Fames
BFSI
Sector Specialist
HONORS

# HALL_OF_FAME

APPLE Acknowledgment
INTEL Acknowledgment
GOVT OF INDIA Appreciation
NOKIA Acknowledgment
VERIFIED EXPLOSIVE
TACTICS

# TACTICAL_DIRECTIVES

EDR EVASION

Stealth Operations

Implementation of advanced payload customization and behavior-based bypass strategies to neutralize modern Endpoint Detection and Response (EDR) systems during adversary simulations.

RUNTIME INSTRUMENTATION

Mobile Deep Dive

Execution of deep-dive Android security assessments using Frida, MobSF, and Objection for dynamic analysis, logic flaw discovery, and reverse engineering of compiled binaries.

WORKFLOW AUTOMATION

Efficiency Optimization

Development of custom Python scripts to standardize pentest workflows and reporting, successfully reducing vulnerability remediation cycle time by 25% for enterprise clients.

SOCIAL ENGINEERING

Human Layer Testing

Architecture and deployment of scalable phishing infrastructure to execute targeted campaigns, assessing human-layer resilience against sophisticated social engineering attacks.

ARSENAL

# TECH_STACK

WEB APPLICATION SECURITY 95%
ADVERSARY SIMULATION 85%
REVERSE ENGINEERING & AUTOMATION 90%
ANDROID SECURITY 80%
EDR EVASION 75%
API SECURITY 90%
CI/CD & DEVSECOPS 80%
NETWORK SECURITY 85%
PROTOCOLS

# DOMAINS

Offensive Pentesting

Simulating cyber attacks to identify vulnerabilities in computer systems.

Web Development

Building secure and robust web applications with modern frameworks.

Source Code Review

Analyzing source code to discover security flaws and logical errors.

AppSec

Ensuring security is integrated into the application development lifecycle.

Red Teaming

Adversary simulation to test an organization's detection and response capabilities.

NetworkSec

Protecting the underlying networking infrastructure from unauthorized access.

UPLINK

# ESTABLISH_COMMS

Initiate secure transmission or inquiries.

EMAIL

midhunmohan1999.mm@gmail.com

BASE

Kerala, India