Suggestions
Prosenjiit Paul
OSCP - Security Researcher - Penetration Tester - Information Security Enthusiast
Professional Background
Prasenjit Paul is a dedicated and highly skilled Application Security Engineer with over 7.5 years of extensive experience in the fields of cybersecurity and application security. He holds a prominent position as an Application Security Tech Lead at Accenture in India, where he continues to hone his expertise and contribute to various projects that emphasize secure coding and the overall security of applications. Prior to this role, Prasenjit has gained valuable experience at several renowned organizations, including Cognizant, Sophos, and Indian School of Anti-Hacking Data Securities PVT. LTD. His diverse background not only showcases his technical abilities but also reflects his commitment to the ever-evolving domain of information security.
With a rich history of working in different capacities, Prasenjit understands the multifaceted aspects of cybersecurity. His journey began as a Technical Support Engineer at IBM India Private Limited, where he laid the foundation for his career. He transitioned into roles that emphasized information security analysis, which included his positions as an Information Security Analyst and Infosec Researcher and Consultant. This progression illustrates his deep understanding of security principles and practical applications, making him a trusted resource in the cybersecurity community.
Education and Achievements
Prasenjit holds a Bachelor of Technology (B.Tech.) degree in Electronics and Communication Engineering, which he obtained from the esteemed JIS College of Engineering. With a commendable GPA of 7.37 out of 10, he has demonstrated his academic prowess and technical understanding of complex systems. Prior to that, he studied at Krishnagar Collegiate School where he focused on Physics, Chemistry, and Mathematics, laying the groundwork for his future studies in engineering and technology.
In addition to his formal education, Prasenjit has earned distinguished certifications in the cybersecurity realm, including the Offensive Security Certified Professional (OSCP) and Certified Ethical Hacker (CEH). These credentials enhance his professional profile and affirm his capabilities as a knowledgeable practitioner in the field of information security.
Notable Achievements
Prasenjit’s contributions to cybersecurity are not only academic and professional but also practical. He has made significant contributions to the security of various platforms by identifying vulnerabilities and reporting them effectively. Some of his noteworthy achievements in vulnerability discovery include:
- CVE-2020-3463: Discovered a Reflected XSS vulnerability in Cisco WebEx Meetings.
- CVE-2020-3345: Found an HTML Injection issue in Cisco WebEx Meetings.
- CVE-2019-6146: Identified XSS via Host Header Injection in ForcePoint Web Security.
- CVE-2019-1866: Reported a Password Reset Poisoning vulnerability through Host Header Injection in Cisco WebEx.
- CVE-2019-1680: Discovered Content Injection vulnerabilities in Cisco WebEx.
- CVE-2018-9128: Identified an SEH based buffer overflow in DVD X Player Standard.
- CVE-2018-7886: Reported a Stack based buffer overflow in CloudMe Sync.
Prasenjit has also been honored for his efforts in the cybersecurity domain, earning mentions in prestigious Hall of Fame categories from organizations such as Nokia, Cisco, Google, Sophos, Netgear, and (ISC)². His recognition in these programs speaks volumes about his skills and the impact he has made in the cybersecurity field.
As an active participant in Capture The Flag (CTF) contests, Prasenjit has secured impressive positions, including second and third place multiple times in the InfoComm Hackstar competition. These contests allow him to test his skills against peers while contributing to his ongoing professional development. He is a passionate speaker in the cybersecurity community and has shared his insights at various seminars, including talks for the Null Kolkata Chapter, where he engages with aspiring and established InfoSec professionals alike.
Commitment to Knowledge Sharing
A key aspect of Prasenjit's philosophy is his belief in the importance of knowledge sharing in fostering success within the field of information security. He actively participates in Bug Bounty Programs and various online challenges such as HackTheBox and TryHackMe, which not only keeps him updated on the latest security threats but also allows him to collaborate and learn from fellow enthusiasts. His commitment to continuous learning and sharing knowledge has also led him to create informative resources, including a YouTube channel, Bug Test Lab, where he shares his latest findings, exploits, and tutorials in the InfoSec realm. With over 1,100 subscribers, Prasenjit is making an impact in the cybersecurity community through video tutorials and detailed explanations on pressing issues. His website, Bug Test Lab, serves as a platform for sharing various InfoSec write-ups, reinforcing his dedication to helping others learn and grow in their knowledge of cybersecurity.
Prasenjit Paul exemplifies the mindset of a modern-day cybersecurity professional—curious, passionate, and dedicated to mastering his craft while lifting others as he climbs. With his extensive expertise, notable accomplishments, and commitment to sharing knowledge, he is poised to innovate further in the cybersecurity landscape and help bolster security measures across diverse platforms as an elite hacker on his journey from script kiddie to recognized expert. Whether through his contributions to vulnerability findings, speaking engagements, or educational content, Prasenjit continues to inspire a new generation of cybersecurity professionals and enthusiasts alike.
