Security Research

Onurcan Genç

Offensive security researcher and AI red-teamer with experience in penetration testing across web, mobile, and API surfaces. I focus on vulnerability research in production frameworks and AI security evaluation, including LLM guardrail testing and adversarial attack methodology. Currently building an LLM Guardrails Evaluation Toolkit at HUX AI Research.

01

Published Vulnerabilities

02

Selected GitHub Work

View all repositories on GitHub ↗

03

Work History

Nov 2025 · Feb 2026
Ankara · Remote
Deloitte
Cybersecurity Intern, CyberOps

Technical review and QA of penetration-test reports. Validated vulnerability findings, impact analysis, and remediation guidance. Alignment with MITRE ATT&CK and CVSS.

May 2025 · Sep 2025
Ankara · Hybrid
Bilishim Cybersecurity & Artificial Intelligence
Penetration Tester

Web, mobile, wireless, and LAN penetration tests against real-world targets. AI/ML red team engagements. Cyber threat intelligence including dark-web credential leak validation. Mentored junior interns.

Feb 2024 · May 2024
Istanbul · Remote
VulnerDay
Envoy Team Member

Tested and validated CTF machine vulnerabilities. Published writeups ensuring correct exploit trigger paths per machine design.

04

Licenses & Credentials

INE / INESECURITY
eWPTXv3 · Web App Pentest eXtreme
Dec 2025 · Exp Dec 2028
INE / INESECURITY
eWPT · Web Application Penetration Tester
Jun 2025
COMPTIA
Security+ ce (SY0-701)
Aug 2024
THESECOPSGROUP
Certified AppSec Practitioner (CAP)
Mar 2025
AMAZON WEB SERVICES
Cloud Quest: Cloud Practitioner
Jul 2025
COMPETITION
Deloitte CyberOps CTF · 1st Place
2024 · TryHackMe Top 2%
05

Latest from the Blog

View all →