Aditya Telange

With 4.5 years of experience in cybersecurity, I specialize in web and mobile application penetration testing. I have a proven track record of identifying and mitigating critical and high-severity vulnerabilities in business-critical applications, particularly those involving payment, encryption and PII data.

Key Expertise:

  • Web Application Pentesting.
  • Mobile Application Pentesting (Android,iOS).
  • Thick Client Security Testing (Windows).
  • Internal Network Pentesting.
  • Active Directory and AD-CS.
  • API Security (REST, SOAP).
  • Secure Architecture.
  • Containers, Docker, Kubernetes.
  • OAuth, SAML and SSO Authentication.
  • External Attack Surface Management.
  • Phishing simulation.
  • Scripting (Bash, Python, Javascript) and writing tooling.

Achievements:

  • Identified and remediated multiple critical vulnerabilities in popular applications.
  • Conducted comprehensive security assessments for high-profile clients.
  • Received multiple appreciations from clients.
  • Reported multiple security issues in bug bounties.

Projects and Learning:

Certifications:

  • PNPT: Practical Network Penetration Tester (TCM Security)
  • PT1: Junior Penetration Tester (TryHackMe)
  • OS(C|E)P 🔜

Contact Details:

Job Experience

Consultant

KPMG India • Apr 2025 - Present

Associate Consultant

KPMG India • Sept 2023 - Mar 2025

Asst.Systems Engineer

Tata Consultancy Services • Jul 2021 - Sept 2023

For detailed information about my professional journey and achievements, please visit my LinkedIn profile.

Side Projects & Tooling

PaperMod is a fast, clean, and responsive theme designed for creating minimal and feature-rich personal websites or blogs built with the Hugo static site generator.

evil-winrm-py is a Python-based tool for offensive security that provides an interactive shell for executing commands on remote Windows machines using the WinRM protocol.

bhhb

130

BHHB is a Progressive Web App (PWA) designed to parse and display HTTP history and sitemap data exported from Burp Suite Community Edition since it does not support disk-based projects.

MobSleuth is a set of automated scripts that establish a Dockerized, open-source virtual laboratory designed for conducting Android app security assessments and pentesting.

Frida-UI is a modern, lightweight, web-based user interface for Frida, designed for Android application penetration testing. It allows you to interact with devices, processes, and scripts directly from your browser.

View more projects on my GitHub Profile.

Certifications

PNPT

Practical Network Penetration Tester

by TCM Security

PT1

Jr Penetration Tester

by TryHackMe

CNSP

Certified Network Security Practitioner

by SecOps Group

CAP

Certified AppSec Practitioner

by SecOps Group

View more about my educational journey on Education and Certifications Page.

Education

Bachelor of Engineering (B.E.) - Computer Engineering

University of Mumbai • 4 Yr Full Time