STATUS: SEC_RESEARCH // ACTIVE
I
Senior Security Researcher at Zscaler. Specializing in offensive operations, red teaming, and architecting resilient cloud infrastructure. Converting vulnerabilities into strategic defense assets.
$ whois viralvaghela.com
[SEARCHING DATABASE...]
> Senior Security Researcher @ Zscaler
> Focus: Cloud Sec | Red Teaming | AI Threats
> Exp: 3+ Years Offensive Operations
$ ./get_accomplishments.sh
> Cambridge University [ACKNOWLEDGED]
> Google Gemini [ACKNOWLEDGED]
> Groww [SECURED]
> IncomeTax [SECURED]
$ _
Featured & Recognized In
I’m a Senior Security Researcher at Zscaler based in Bangalore, but my roots are in the terminal. I don't just scan for vulnerabilities; I think like an attacker to build defenses that actually hold up. Most of my day is spent leading AI/LLM Red Teaming engagements—simulating everything from prompt injections to model poisoning.
Beyond the security research, I’m a technical content creator helping a community of 100K+ learners at @Viral_Codes navigate programming, Open Source, and cybersecurity. My goal is to bridge the gap between complex offensive security and the developers building the next generation of tech.
Years Industry Exp
Global Acknowledge
Senior Security Researcher
Exploring RF security and hardware-based attack vectors as an active research focus.
2020 — 2023
Gujarat Technological University // CGPA: 8.06
2016 — 2019
Government Polytechnic Bhuj // CGPA: 9.42
A curated ledger of published CVEs, critical infrastructure disclosures, and independent security research. Each entry represents a verified threat identified through deep offensive analysis and responsible disclosure protocols.
| Advisory ID | Target / Product | Attack Vector | Severity | Action |
|---|---|---|---|---|
|
GOV-IN-TAX-IDOR
Exclusive
Discovery
|
Income Tax e-Filing Portal |
#IDOR
#DATA_LEAK
|
9.8 CRITICAL | |
|
MED-IN-APOLLO-PII
Vulnerability
Disclosure
|
Apollo Hospitals (Group) |
#PII_LEAK
#HEALTHCARE
|
9.0 CRITICAL | |
|
CVE-2026-21892
Released: Jan
2026
|
Parsl Framework |
#SQL_INJECTION
|
CRITICAL | |
|
CVE-2025-66401
Released: Dec
2025
|
MCP-Watch Monitor |
#RCE
#CMDI
|
CRITICAL | |
|
GSA-INTERNAL-04
In Progress
|
Enterprise SSO Gateway |
#AUTH_BYPASS
|
HIGH RISK |
|
SEPT 2024 — PRESENT
AI/LLM RED TEAMING / GENAI DEFENSE
JAN 2024 — SEPT 2024
VAPT / OFFENSIVE OPS
2022 — PRESENT
VULNERABILITY DISCOVERY & DISCLOSURE
Recognized by 50+ organizations for responsible disclosure of critical flaws. Special focus on large-scale data breaches and AI vulnerabilities.
Exposed critical data breach in the IT Dept exposing 135M+ citizen records. Covered by TechCrunch & India Today.
Identified major breach exposing medical records/PII; featured in BoomLive for cybersecurity impact.
Official Hall of Fame Acknowledgements
2022 SEPT — DEC
PENETRATION TESTING
Conducting security audits on fintech applications. Identified core logic flaws in payment gateways using manual exploitation and proxy interception.