~/about
home blog projects about

$ whoami

I'm Aswin M Guptha — I break things, fix them, and help others learn how to do both.

I work in application security with a focus on web, API, and mobile apps. My role sits at the intersection of security and engineering — making sure the things we build are not only functional but resilient. Whether it’s reviewing code, shaping threat models, or embedding checks into CI/CD pipelines, I believe security should enhance, not interrupt, how teams work.

Over the years, I've led security initiatives at Traboda CyberLabs, guided developers through remediation, and helped shape how security fits into the broader engineering lifecycle. I also speak at conferences, train dev teams, and occasionally dig into open-source projects to report vulnerabilities — a few of which have earned CVEs.

I've been part of Team bi0s for years — mentoring researchers, contributing to CTF wins, and helping organize some of India’s most recognized cybersecurity competitions like InCTF and InCTF Junior. I’ve seen firsthand how community can change careers, and I try to give back every chance I get.

My work isn’t about just finding bugs — it’s about solving the right problems, enabling teams to move securely, and building things that actually scale. I believe the best security work disappears into the product — not because it’s invisible, but because it’s designed right.

Outside of work, I stay curious — reading writeups, writing tools, experimenting with edge cases, or building challenges for others to learn from.

If you're into AppSec, CTFs, or building systems that are hard to break — let’s talk.

currently online
made with ♥ by claude.ai