Security Researcher · Coimbatore, India

Application & Cloud
Security
Researcher

I focus on application security, cloud security, and AI/LLM security research — finding real vulnerabilities, building defences, and competing in top-tier CTF events with Team Hunter.

Handle GT57
Team Team HunterAmrita Vishwa Vidyapeetham
Global rank #76 348.25 pts · 2026
India rank #7
Location Coimbatore, IN
Bug bounty IntigritiActive researcher

Domains

Focus areas

01
AS
Application Security

Web application penetration testing, API security research, and vulnerability discovery across modern tech stacks. Active bug bounty hunter on Intigriti — focused on IDOR, broken access control, and business logic flaws.

OWASP Top 10 IDOR API Security Burp Suite
02
CS
Cloud Security

Cloud infrastructure security with focus on misconfiguration discovery, IAM privilege escalation, and cloud-native attack paths. Researching AWS and GCP security posture and exposure across multi-tenant environments.

AWS GCP IAM Misconfiguration
03
AI
AI / LLM Security

Researching security of large language model deployments — prompt injection, jailbreaking, indirect injection via RAG pipelines, and model supply chain threats. Exploring red-teaming methodologies for AI-powered applications.

Prompt Injection LLM Red-teaming RAG Security OWASP LLM Top 10

Research

Bug Bounty & Research

Hands-on vulnerability research across real-world programs, with a methodical approach to recon and exploitation.

Cloudways — Intigriti
Web Application Security Research
2025 – Present

Testing authenticated API endpoints for IDOR and broken access control vulnerabilities in a multi-tenant cloud hosting platform. Focus on horizontal privilege escalation and object-level authorisation weaknesses.

  • Burp Suite proxy interception and manual endpoint analysis
  • Cross-account object reference testing across tenant boundaries
  • Business logic flaw discovery in billing and provisioning APIs
IDOR Broken Access Control Intigriti
AS Watson / Kruidvat — Intigriti
Multi-Asset Reconnaissance & API Analysis
2025

Extensive recon across multiple in-scope assets for a major European retail group. JS bundle analysis revealed backend infrastructure (SAP Hybris OCC API, third-party integrations). Identified operator ID discrepancies between test and production environments.

  • JavaScript bundle extraction and endpoint mapping
  • SAP Hybris OCC API surface analysis
  • Third-party PII leakage via Insider personalisation platform
  • Unauthenticated route discovery with ffuf
Recon JS Analysis API Mapping Intigriti
Team Hunter · Amrita Vishwa Vidyapeetham
CTF Competitor — Web / Forensics / Reversing
2025 – Present

Competing as GT57 in international CTF competitions as part of an academic team from Amrita, Coimbatore. Specialising in memory forensics, binary analysis, and web exploitation challenges. Team ranked #76 globally in 2026 with 348 rating points.

Track record

CTF Competitions

Full record ↗
#76
Global rank 2026
#7
India rank
348
Rating points
50+
Events competed
Place Event Year Points Rating pts
1st SecLeaf Q2 CTF 2026 6,195
3rd RAMunchers CTF 2026 3,458 31.067
3rd Hackअस्त्र 2026 7,844 30.084
4th bhackari CTF 2026 2026 4,158 26.248
4th CREST CTF 2026 7,000 7.293
5th CryptoNite CTF 2026 2026 3,356 25.586
31st BYUCTF 2026 2026 8,536 41.611
36th TJCTF 2026 2026 11,106 48.483
63rd UMDCTF 2026 2026 1,737 37.695

Capabilities

Skills & tooling

Security Testing
Web App PentestingAdvanced
API Security TestingAdvanced
Burp SuiteAdvanced
IDOR / Access ControlAdvanced
Recon MethodologyAdvanced
ffuf / NmapIntermediate
Cloud & AI Security
Cloud MisconfigurationDeveloping
IAM AnalysisDeveloping
LLM Red-teamingDeveloping
Prompt InjectionDeveloping
OWASP LLM Top 10Familiar
RAG Pipeline SecurityFamiliar
CTF & Analysis
Memory ForensicsAdvanced
Volatility 3Advanced
Binary AnalysisIntermediate
Reverse EngineeringIntermediate
Python 3Proficient
Bash / ShellProficient

Background

About me

I'm Gautham Ram, a security researcher and CTF competitor based in Coimbatore, Tamil Nadu. I'm part of Team Hunter at Amrita Vishwa Vidyapeetham — a competitive security team ranked #76 globally in 2026.

My primary focus is on real-world vulnerability research — I actively hunt on Intigriti across web application and cloud-hosted programs, with a methodical approach to recon, API mapping, and access control testing.

I'm increasingly interested in the intersection of AI systems and security — specifically how LLM-powered applications introduce new attack surfaces around prompt injection, retrieval-augmented generation, and model supply chains.

Location Coimbatore, Tamil Nadu, India
Institution Amrita Vishwa Vidyapeetham
CTF handle GT57 on CTFtime ↗
Bug bounty Intigriti (active)
LinkedIn gauthamram57 ↗

Get in touch

Let's connect

Open to collaboration on security research, CTF teams, bug bounty partnerships, and AI security projects.

Available for opportunities

Current focus

AS
AppSec Research
Active bug bounty on Intigriti — IDOR, BAC, API security across cloud-hosted platforms.
CS
Cloud Security
Learning AWS/GCP attack paths, IAM misconfiguration, and cloud-native exploitation.
AI
AI Security
Researching LLM threat models, prompt injection, and OWASP LLM Top 10 attack classes.
CTF
CTF Competitions
Team Hunter — ranked #76 globally. Specialising in web, forensics, and reversing.