Hello, World! 👋

Hi, I'm Raksmey

Full-Stack Security Specialist

Penetration testing & secure development expert with 1+ years of experience in web application security, cloud architecture, and vulnerability assessment.

Mom Raksmey

Experience

1+ Years

Projects

10+

↓ Scroll to explore
Mom Raksmey

About Me.

Hi My Name is Mom Raksmey. I am a Full-Stack Security Specialist delivering secure, scalable, and impactful web applications that protect brands and attract trust.

Software Skills

PT
Penetration Testing
WA
Web App Security
CS
Cloud Security
FD
Frontend Development
BS
Burp Suite

Technical Skills

🔍
Vulnerability Assessment
🛡️
Secure Development
☁️
Cloud Architecture

Highlights

25+
Full-Stack Projects
250+
Vulnerabilities Fixed
80+
Security Audits
1+
Years of Experience

Contact Us

momraksmey5@gmail.com
+855 081438933
Phnom Penh, Cambodia
@raksmey_security

Available

Freelance | Remote | Contract

💬

I build applications that are secure, clean, and unforgettable. Every project is a chance to bring security and performance to life — and I'm ready to do the same for your brand.

Technical Skills

Frontend Development

React & Next.js
TypeScript
Tailwind CSS
JavaScript/ES6+
HTML5 & CSS3
Responsive Design

Tools

Burp Suite
Docker
PostgreSQL Mysql
Git & GitHub
Azure
VS Code
Postman
Nmap & Wireshark

Development

React & Next.js
TypeScript
Docker
CI/CD Pipelines
Linux Administration
Git & Version Control

Security & Best Practices

OWASP Top 10
API Security Testing
Penetration Testing
Secure Coding
SQL Injection Prevention
XSS & CSRF Protection
Data Encryption
Security Compliance

Core Expertise

Full Stack
End-to-end web application development
Security
Secure coding & vulnerability assessment
Frontend
Responsive web design & development

Security Engagements

E-Commerce Platform Security Audit

Critical Severity

Discovered SQL injection vulnerability allowing database access. Implemented parameterized queries and WAF rules.

Impact:

Prevented potential data breach affecting 50K+ users

OWASPBurp SuitePython

REST API Authentication Bypass

High Severity

Identified JWT token validation flaw in mobile API. Demonstrated complete authentication bypass.

Impact:

Critical security patch deployed, preventing unauthorized access

JWTAPI SecurityAuthentication

Bug Bounty - XSS in User Profile

Medium Severity

Found stored XSS vulnerability in user bio field. Achieved session hijacking proof of concept.

Impact:

$2,500 bounty awarded

XSSDOMJavaScript

Cloud Infrastructure Penetration Test

Critical Severity

Complete AWS environment assessment. Discovered misconfigured S3 buckets and overly permissive IAM policies.

Impact:

Exposed 1TB of sensitive data, remediated immediately

AWSCloud SecurityInfrastructure

Third-Party API Integration Vulnerability

High Severity

Identified rate limiting bypass in payment API. Created automated exploit for unauthorized transactions.

Impact:

Prevented $50K+ in fraudulent charges

API TestingRate LimitingPayment Systems

Zero-Day Exploit Development

Critical Severity

Discovered and weaponized zero-day vulnerability in widely-used framework. Responsibly disclosed to vendor.

Impact:

Patch released, $10K bounty awarded

Exploit DevReverse EngineeringC++

Methodology

01

Reconnaissance

Passive and active information gathering to understand the target system architecture, technologies, and potential attack surface.

OSINT
Network Scanning
Technology Profiling
Scope Definition
02

Enumeration

Detailed probing of services, applications, and systems to identify specific vulnerabilities and misconfigurations.

Service Detection
Version Identification
Configuration Review
Access Testing
03

Exploitation

Methodical testing of identified vulnerabilities to prove exploitability and assess real-world impact.

Exploit Development
Privilege Escalation
Lateral Movement
Impact Validation
04

Analysis & Reporting

Comprehensive documentation of findings with risk prioritization, remediation guidance, and executive summaries.

Vulnerability Assessment
Risk Scoring
Recommendations
Report Generation

Ready for a Security Assessment?

Every engagement is tailored to your specific requirements. Contact me to discuss your security needs.

Schedule a Consultation

Get In Touch