Espiar Ltd · Manchester, UK

Bug Bounty Research.
Security Testing.

Finding what others miss — real attacker mindset, real-world impact.

espiar@kali:~/bounty — active hunt
LIVE
$134,000 Largest Single Bounty
All Major Platforms H1 · Bugcrowd · Intigriti · More
OSCP · CISSP · CEH · CREST Certified

Track Record

Google VRP

Accepted researcher on the Google Vulnerability Reward Programme.

Vulnerability Chaining

Specialist in chaining low-severity issues into critical-impact exploits — finding what automated tools miss.

Multi-Platform Hunter

Active across HackerOne, Bugcrowd, Intigriti, YesWeHack, Synack, and private programmes.

Security Testing

The same attacker mindset behind six-figure bounties, available as a contracted assessment. Two areas of focus.

Web Application Testing

Manual, attacker-driven assessment — not an automated scan report. Full coverage of authentication, APIs, session management, and business logic.

  • Authentication & session flaws
  • Business logic testing
  • REST & GraphQL API security
  • OWASP Top 10 & beyond
  • Exploit chain analysis

All engagements are scoped individually. Get in touch to discuss requirements, timeline, and pricing.

Active On All Major Platforms

H1
HackerOne
BC
Bugcrowd
IN
Intigriti
YW
YesWeHack
SY
Synack
Private Programmes

Standards & References

Get in Touch

Whether you need a security assessment or want to discuss a potential engagement — reach out.

security@espiar.co.uk
Manchester, United Kingdom

Certifications

OSCP CISSP CEH CREST