Hello, World! 👋
Hi, I'm Raksmey
Full-Stack Security Specialist
Penetration testing & secure development expert with 1+ years of experience in web application security, cloud architecture, and vulnerability assessment.

Experience
1+ Years
Projects
10+

About Me.
Hi My Name is Mom Raksmey. I am a Full-Stack Security Specialist delivering secure, scalable, and impactful web applications that protect brands and attract trust.
Software Skills
Technical Skills
Highlights
Contact Us
Available
Freelance | Remote | Contract
I build applications that are secure, clean, and unforgettable. Every project is a chance to bring security and performance to life — and I'm ready to do the same for your brand.
Technical Skills
Frontend Development
Tools
Development
Security & Best Practices
Core Expertise
Security Engagements
E-Commerce Platform Security Audit
Critical Severity
Discovered SQL injection vulnerability allowing database access. Implemented parameterized queries and WAF rules.
Impact:
Prevented potential data breach affecting 50K+ users
REST API Authentication Bypass
High Severity
Identified JWT token validation flaw in mobile API. Demonstrated complete authentication bypass.
Impact:
Critical security patch deployed, preventing unauthorized access
Bug Bounty - XSS in User Profile
Medium Severity
Found stored XSS vulnerability in user bio field. Achieved session hijacking proof of concept.
Impact:
$2,500 bounty awarded
Cloud Infrastructure Penetration Test
Critical Severity
Complete AWS environment assessment. Discovered misconfigured S3 buckets and overly permissive IAM policies.
Impact:
Exposed 1TB of sensitive data, remediated immediately
Third-Party API Integration Vulnerability
High Severity
Identified rate limiting bypass in payment API. Created automated exploit for unauthorized transactions.
Impact:
Prevented $50K+ in fraudulent charges
Zero-Day Exploit Development
Critical Severity
Discovered and weaponized zero-day vulnerability in widely-used framework. Responsibly disclosed to vendor.
Impact:
Patch released, $10K bounty awarded
Methodology
Reconnaissance
Passive and active information gathering to understand the target system architecture, technologies, and potential attack surface.
Enumeration
Detailed probing of services, applications, and systems to identify specific vulnerabilities and misconfigurations.
Exploitation
Methodical testing of identified vulnerabilities to prove exploitability and assess real-world impact.
Analysis & Reporting
Comprehensive documentation of findings with risk prioritization, remediation guidance, and executive summaries.
Ready for a Security Assessment?
Every engagement is tailored to your specific requirements. Contact me to discuss your security needs.
Schedule a Consultation



