whoami

I’m xhalyl — bug bounty hunter, CTF player, and all-around app security.

I spend my time hunting bugs, solving CTF challenges, tinkering with DevOps pipelines, and breaking things to understand how they work.

What you’ll find here

  • Bug Bounty — findings, methodology, and lessons from the hunt
  • CTF Writeups — step-by-step solutions with methodology explained
  • Cybersecurity — research, analysis, and deep dives
  • DevOps — infrastructure, automation, and tooling I work with
  • Personal — opinions, reflections, and whatever’s on my mind

Contact

Find me on GitHub or reach out via the links in the footer.