About

mak3bread

Penetration Tester | Bug Bounty Hunter | CTF Player · Republic of Korea

Profile

  • Bug bounty outcomes including 100+ validated reports
  • Active member of Friendly Maltese Citizens, DeadSec, and RubiyaLab
  • Public vulnerability disclosures including 6 CVEs
  • Offensive security certifications: OSCP/OSCP+, CRTO, CRTL
  • NATO CCDCOE Locked Shields South Korea national team, Web Part, 2026 and 2024

Experience

Jan 2026 - Present

Penetration Tester, Red IRIS

Financial Security Institute (FSI)

Conducting penetration testing and red team engagements for financial institutions and related service environments.

Jan 2023 - Dec 2025

Security Consultant, Security Assessment

Financial Security Institute (FSI)

Conducted web, mobile, infrastructure, cryptocurrency exchange, and remediation validation assessments for financial services.

Feb 2022 - Jan 2023

App Security Engineer, Service Security

Kakao Enterprise

Performed security reviews for web and mobile services, IaaS/SaaS service assessments, remediation checks, and internal workflow automation.

Bug Bounty

International

  • X / xAI Bug Bounty, 2025
  • Starbucks Bug Bounty, 2023
  • AWS - Amazon Vulnerability Research Program, 2021

Domestic

CTF Results

Proof

CVE

Certifications

Training

2026, 2024

NATO CCDCOE Locked Shields

South Korea Web Team participant for live-fire cyber defense exercises involving code audits, vulnerability assessments, patching, incident response, and technical reporting.

Jul 2020 - Mar 2021

Best of the Best (BoB), Vulnerability Analysis Track

Completed vulnerability analysis training and built an Android APK analysis workflow using CodeQL.

Search