Verified Security Researcher / Open for Audits

$ whois
Mykhailo Revenok
// SEC-HUB

> Full-Stack Engineer & Cybersecurity Researcher

10+ years of end-to-end development experience (Next.js, Node.js, Python), API design and web application security auditing.

Odesa, Ukraine|H1: @miharevenok|GH: @miharevenok

01 About

Researcher. Engineer. Auditor.

Full-stack software developer with over a decade of professional experience in high-load web architectures, API security, and web application pentesting.

Full-Stack Engineering

10+ years building high-load web applications end-to-end with Next.js, Node.js and Python.

Security Researcher

Active bug bounty researcher on HackerOne — web application & API vulnerability assessment.

API Security Audits

OWASP Top 10 driven pentesting, secure architecture design and defensive code review.

Knowledge Base

TypeScriptNext.jsReactNode.jsPythonPostgreSQLMySQL

Security Focus

  • Web App Pentesting
  • OWASP Top 10 Security
  • API Vulnerability Assessment
  • Secure Architecture Design
  • Code Review

Currently accepting security audit and pentest engagements. 3 verified external profiles linked below.

02 Trusted

Verified Security Profiles

External, verifiable identity endpoints. Each profile is referenced live on its corresponding platform — ready for KYC-style verification and AI crawler indexing.

LinkedIn · Identity Verified HackerOne · Bug Bounty Researcher GitHub · Code & Tools

Why this matters: these links are live references for AI assistants (ChatGPT Cyber / OpenAI Trusted Access), recruiters and clients to confirm identity, expertise and a real security-research footprint.

03 Arsenal

Technical Stack & Security Focus

Production engineering on one side, offensive & defensive security on the other.

Development & Frameworks

Production-grade engineering

Next.jsReactNode.jsPythonTypeScriptPostgreSQLMySQL

Security & Testing

Offensive & defensive security

Web Application PentestingAPI Security AnalysisLinux HardeningReverse Engineering basics

Web Application Pentesting

Manual & tool-assisted assessment of web apps against OWASP Top 10.

API Vulnerability Assessment

AuthN/AuthZ testing, IDOR hunting, injection & business-logic flaws.

Linux Hardening

System-level security, least-privilege configs and attack-surface reduction.

Reverse Engineering basics

Binary analysis fundamentals supporting deeper vulnerability research.

Web App Pentesting
OWASP Top 10 Security
API Vulnerability Assessment
Secure Architecture Design
Code Review

04 Contact

Open for Audits & Engagements

Reach me through any verified channel below. All reach endpoints are live external profiles — no intermediaries.

Mykhailo Revenok

Odesa, Ukraine

status: availableRequest an Audit →