BLOGS
When the AI Assistant Skips the Permission Checks the Rest of the App Follows
I found an AI summary button on an identity platform that typed out an applicant's full SSN for me — even though my account was blocked from seeing SSNs. Here's how it happened.
How I Chained 2FA Bypasses in a Crypto P2P System to Drain User USDT
How I chained two logic flaws in a crypto P2P platform — frontend-only 2FA and poor session isolation — to add a payout method to a victim's account and sell their USDT without ever passing OTP.
Bypass WAF by a Simple Trick — Gained $1000 Bounty
How I bypassed Cloudflare WAF protection by finding the origin IP and modifying the HOST header — a simple trick that earned a $1000 bounty.
How I Got Two RCE at a BBP Program
Discovering two Remote Code Execution vulnerabilities in a bug bounty program using Shodan recon and default SAP Commerce credentials.
WHOAMI
Penetration Tester with 500+ vulnerabilities reported across HackerOne, Bugcrowd, HackenProof and Immunefi. Responsibly disclosed issues to Binance, Oracle, VMware, Huawei and John Deere. Specialized in web, API and mobile application security, with a strong focus on business logic flaws, authorization and authentication bypasses, IDORs and API abuse. Also experienced in Active Directory penetration testing and source code review.
ACTIVITY
Bug bounty tips and field notes, posted as I find them — follow on X
EXPERIENCE
Bug Bounty Hunter
5+ yearsHALL OF FAME & AWARDS
Bug Bounty Program swag for responsible disclosure
Acknowledged in Oracle's Critical Patch Update — On-Line Presence Security Contributors
Ranked #31 Worldwide on the 2025 leaderboard
Top 3 Researcher in Binance Bug Bounty Program
Two official acknowledgment letters for accepted vulnerability reports
Official swag for responsible disclosure of a security issue
CVE DISCOVERIES
1 CVE Discovered and Counting...
PROJECTS
h1-asset-fetcher
Fetches, downloads, and decompiles Android/iOS/exe assets from HackerOne bug bounty programs.
Cookie-Swapper
Burp Suite extension that automates session token swapping across Burp tabs during security testing.
h1-monitor
Self-hosted bot that watches HackerOne programs for scope changes and pushes them to Telegram, 24/7.
CERTIFICATIONS
eMAPT
Mobile Application Penetration Tester
INE Security
eWPTX
Web Application Penetration Tester eXtreme
INE Security
eCPPT
Certified Professional Penetration Tester
INE Security
OSCP
Offensive Security Certified Professional
OffSec
CONTACT
$ ssh 0xbartita@connect
Connecting to 0xbartita...
Connection established.
$ cat contact_info.txt
a_7_m_e_d_
github.com/0xbartita
linkedin.com/in/0xbartita
x.com/0xbartita
$ _