AVAILABLE FOR LEARNING & OPPORTUNITIES

I BUILD MY EDGEIN CYBERSECURITY.

I'm Kushal Khatri — a recently +2 completed student, trained in Cybersecurity & Ethical Hacking at Saarathi Academy and continuously building practical skills through self-learning, labs, websites, documentation and videos.

Nepal +2 Completed Cybersecurity Training
RECON
VAPT
SECURITY
Kushal Khatri
IDENTITY VERIFIEDKUSHAL KHATRICYBERSECURITY / VAPT
ONLINE
01 / PROFILE

Curious by nature.
Security-minded by choice.

01

Who I am

I am a recently +2 completed student focused on starting my journey in cybersecurity. I completed Cybersecurity & Ethical Hacking training from Saarathi Academy and have continued developing my skills independently through online resources, technical websites, documentation, labs and video-based learning.

02

How I learn

I like to learn by doing: understand the concept, build or use a controlled lab, test the behavior, troubleshoot what breaks, document the result and then repeat it. Remote/self-directed learning has strengthened my research and problem-solving ability.

03

My direction

My main interests are Web/API VAPT, security testing, network reconnaissance, Linux security and security automation. I want to keep building real evidence-based projects and grow toward professional cybersecurity roles.

Kushal Khatri outdoors
PROFILE_01NEPAL // CYBER
02 / IDENTITY

Human behind
the terminal.

Cybersecurity is more than tools and commands. I'm building a practical identity around curiosity, disciplined testing and a habit of turning what I learn into visible work.

01LEARN
02BUILD
03TEST
04DOCUMENT
02 / CAPABILITIES

Skills built through
training + self-learning.

A practical stack built around vulnerability assessment, penetration testing, network analysis, Linux security and automation.

Web Application Security

VAPT-focused testing of modern web applications, HTTP flows, authentication, authorization and common OWASP vulnerability classes.

Burp SuiteOWASPSQLiXSSIDORCSRF

API Security

REST API assessment, endpoint enumeration, authorization testing, JWT analysis and business-logic security.

RESTBOLABFLAJWTOpenAPISSRF

Network Recon

Disciplined reconnaissance, service enumeration, attack-surface mapping and packet-level validation.

NmapWiresharkTCP/IPDNSTLS

Linux & Host Security

Linux logs, audit evidence, persistence review, SSH exposure, file-integrity concepts and security hardening.

KaliauditdjournalctlSSHBash

Security Testing

Manual validation first, evidence capture, false-positive triage, severity assessment and responsible reporting.

CVSSEvidenceOWASPVAPT

Security Automation

Small Python and Bash utilities for reconnaissance, API probing, log triage and repetitive security workflows.

PythonBashRequestsgrepawk
TOOLKIT

Tools I've worked with

Kali LinuxBurp SuiteNmapWiresharkMetasploitSQLMapHashcatNucleihttpxSubfinderPythonBashOpenVAS / Greenbone
03 / SELECTED WORK

Turn skills into
visible evidence.

These are the project directions designed for my portfolio. Each one can grow into a full write-up with scope, methodology, evidence, impact and remediation.

01
WEB SECURITY

Web Application VAPT Lab

A portfolio-ready assessment covering reconnaissance, Burp Suite testing, authentication, access control, injection classes, security headers, evidence and remediation.

Burp SuiteOWASPCVSS
02
API SECURITY

API Security Assessment

Structured API testing covering endpoint discovery, OpenAPI review, authorization, BOLA/BFLA, JWT behavior, rate limiting and Python-assisted testing.

RESTJWTPython
03
NETWORK

Network Recon & Service Review

A controlled lab project using Nmap and Wireshark to enumerate services, validate traffic, inspect TLS/SSH exposure and document findings.

NmapWiresharkTCP/IP
04
HOST SECURITY

Linux Host Security Review

Host-review workflow using logs, audit evidence, persistence checks, integrity baselines and security-hardening recommendations.

LinuxauditdBash
04 / LEARNING PATH

Formal foundation.
Self-directed growth.

ACADEMIC FOUNDATION

+2 Completed

Recently completed +2 and now focusing on building a technical career in cybersecurity.

FORMAL CYBERSECURITY TRAINING

Cybersecurity & Ethical Hacking — Saarathi Academy

Training focused on networking, reconnaissance, Linux and host foundations, web/API VAPT, security tooling, reporting and career readiness.

ONGOING

Remote & Self-Learning

Continuing to learn through cybersecurity websites, documentation, videos, labs, technical articles and hands-on practice. This is where I expand beyond the structured classroom path and keep improving independently.

05 / APPROACH

Think first.
Test with purpose.

01

Scope

Understand the target, authorization and rules before testing.

02

Recon

Map the attack surface and identify useful entry points.

03

Validate

Reproduce findings and separate real issues from noise.

04

Report

Explain evidence, impact, severity and practical remediation.

Responsible security practice

All security testing presented here is intended for authorized labs, owned systems or explicitly approved scopes.

06 / CONTACT

Let's build something
secure.

I'm open to cybersecurity learning opportunities, internships, junior roles, collaborations and technical projects.