Introducing

Hello

I'm Malaya Khuntia

I am a Google Professional Cloud Architect and Red Teamer dedicated to securing the technologies of tomorrow by dismantling them today. My background in Cloud Architecture and IoT gives me an unfair advantage: I know exactly how systems are built, which allows me to see exactly where they will break.

Currently, I specialize in Red Teaming and Web Exploitation, proactively hunting for P1 vulnerabilities like IDOR and SQLi before malicious actors can exploit them. From hardening enterprise cloud infrastructure to stress-testing AI agents against Hidden Payloads, I am committed to preventing the ‘financial drain’ that misconfigured systems invite. I don’t just secure the cloud; I defend it by mastering the attack.

SKILLS

Offensive Security

SQL Injection XSS IDOR SSRF Command Injection Privilege Escalation OWASP Top 10 Black-box Testing LFI/RFI Exploit Development

Security Tools

Burp Suite Pro Metasploit Nmap SQLMap Wireshark Hydra OWASP ZAP Netcat

Cloud Security

GCP Security Security Command Center IAM Auditing Zero Trust VPC Controls CIS Benchmarks

AI Security

Prompt Injection LLM Jailbreaking RAG Security Adversarial Testing Model Assessment API Hijacking React-to-Shell

Networking & Infrastructure

TCP/IP DNS Security HTTP/HTTPS IDS/IPS Firewall Management VPC Peering SSL/TLS IoT Security

OS & Programming

Kali Linux Ubuntu/Debian Windows Internals PowerShell Kernel Exploits SUID Abuse Python (Exploit Dev) Bash Automation SQL JavaScript

SECURITY OPERATIONS CENTER // EXPLOIT LEDGER

Proven Impact & Critical Disclosures

CRITICAL P1

Enterprise IDOR

Identified a Broken Object Level Authorization flaw allowing unauthorized access to 10k+ sensitive user records on a production environment.

CRITICAL

Live Auth Bypass

Executed SQL Injection on a live production site by intercepting HTTP POST requests, successfully extracting database schema details.

HIGH

AI Agent Exploitation

Bypassed LLM safety filters via advanced Jailbreaking. Demonstrated how malicious actors can manipulate AI Agents to leak internal system prompts.

HIGH

React-to-Shell

Discovered Command Injection vulnerabilities in modern React-based frontends, establishing a successful reverse shell in a controlled environment.

FINANCIAL RISK

API Credit Exhaustion

Disclosed exposed AI API keys that allowed attackers to drain company credits in hours, causing massive financial burn-rate escalations.

RECON

Asset Discovery

Automated the discovery of misconfigured S3 buckets and exposed GCP endpoints across multiple subdomains using custom Python scripts.

POSITIONS

2024

Cyber Security Lead

GDG On Campus-NIST

2024

IEEE STB Chair

Robotics & Automation Society

2022

Technical Head

Renewable Energy Club-NIST

2023

Faciliator

Google Cloud Community

Project 1

Eden is a programmable robot that detects objects, responds to sounds and touches, expresses emotions, and displays text messages on a scrolling interface. It also features LED games, balance feet, orientation sensing, and acceleration reactions, and can be controlled through a Bluetooth app.

Project 2

Move beyond the “slot machine” era of generative video. GensKAI is a production-ready narrative studio that bridges the gap between rough sketches and cinematic high-fidelity. Powered by Google Gemini and Vertex AI Veo, it offers creators total control through Spatial Blueprinting, absolute character consistency, and seamless long-form video generation—turning your visual intent into professional reality.

Project 3

Dietary Planner leverages the ADK’s modular framework and Agent2Agent Protocol to create a hierarchical agent system, seamlessly coordinating tasks such as parsing user requirements, fetching recipes via the Spoonacular API, and ensuring nutritional compliance. 🤖

– 🔍 Personalized recipe searches (e.g., Indian-style, high-protein meals)  

– 📅 Daily or weekly meal plans with nutritional analysis  

– 🚫 Allergen avoidance and adjustments for health conditions

Let's Work Together

The technological revolution is changing aspect of our lives, and the fabric of society itself. it’s also changing the way we learn and what we learn

© 2025 Malaya. All Rights Reserved