AVAILABLE FOR CUSTOM CTF CHALLENGE COMMISSIONS
Parvez Mosharaf Siam
_
Security researcher & bug bounty hunter turning real-world vulnerabilities into signed reports — and turning forensic artifacts into hand-crafted CTF challenges played by hundreds of teams across national & university competitions.
About Me
I'm Parvez Mosharaf Siam, an independent security researcher and bug bounty hunter. I spend my time hunting for real vulnerabilities on public bug bounty programs, and building original digital forensics challenges for Capture the Flag competitions.
On the offensive side, I report findings through HackerOne, Bugcrowd, Intigriti and YesWeHack. On the puzzle-building side, I design forensic investigation scenarios — disk images, memory dumps, network captures, steganography chains, log analysis cases — that challenge players to think like real incident responders.
I've contributed digital forensics challenges to national and university-level CTFs, including BDSecCTF, KnightCTF, UAPCTF, and BUPCTF, among others. If you're organizing a CTF and need a forensics track that's original, well-documented, and properly play-tested — that's exactly what I do.
# cat profile.json
{
"handle": "pmsiam",
"name": "Parvez Mosharaf Siam",
"role": ["Bug Bounty Hunter", "Forensics CTF Author"],
"platforms": ["HackerOne", "Bugcrowd", "Intigriti", "YesWeHack"],
"ctf_challenges_authored_for": [
"BDSecCTF", "KnightCTF",
"UAPCTF", "BUPCTF",
"..."
],
"status": "open_for_work"
}
Find Me on Bounty Platforms
Verified researcher profiles — click through to see my activity and reputation.
Digital Forensics Challenge Authoring
Original forensics tracks designed, built and play-tested for national & university CTFs.
Disk & File System
Deleted file recovery, partition/MBR anomalies, hidden volumes, file carving.
Memory Forensics
RAM dump analysis, process/injection artifacts, Volatility-based investigations.
Network Forensics
PCAP analysis, exfiltration tracing, protocol abuse, C2 traffic reconstruction.
Steganography
Multi-layer stego chains across images, audio, and metadata.
Log & Timeline Analysis
Event log correlation, timeline reconstruction, incident storytelling.
Mobile Forensics
Android/iOS backup and artifact analysis for mobile-based scenarios.
Challenges authored / contributed for:
Commission a Digital Forensics Challenge
For CTF organizers, universities, and companies who need original, professionally built forensics challenges. Every challenge ships with writeup, flag, and scoring checker — play-tested before delivery. Pricing below is a standard market-rate starting point; final quote depends on scenario depth, artifact size and turnaround.
Single-artifact challenge focused on one core forensic technique.
- 1 forensic artifact
- Flag + writeup
- Basic play-testing
- 3–5 day delivery
Multi-stage investigation combining 2–3 forensic domains with a custom narrative.
- 2–3 chained artifacts
- Custom scenario & story
- Flag + full writeup
- Play-tested by peers
- 5–10 day delivery
Deep multi-artifact case requiring pivoting across several forensic techniques.
- 3+ chained artifacts
- Custom tooling / checker script
- Flag + full writeup
- Extended play-testing
- 10–15 day delivery
Flagship / final-round challenge — competition-grade and highly original.
- Fully custom scenario design
- Multiple forensic domains chained
- Dedicated support during the event
- Priority delivery timeline
Bulk pricing available for organizers commissioning an entire forensics track (multiple challenges across difficulty levels). Reach out with your event name, dates and challenge count for a custom package rate.
What Players & Organizers Say
Shoutouts from CTFtime and event write-ups. Click a card to read it in full.
Add your CTFtime shoutout here — click this card's link to edit the href to the real post.
Add a second review here. This whole card links out to the source when clicked.
Add a third review here, or duplicate this block for as many as you like.
Let's Work Together
Have a CTF that needs a forensics track, or a program that needs testing? Send a message.