Continuously Simulating Cyber Attacks to Strengthen Your Defenses
Stingrai specializes in Penetration Testing and is a certified vendor of the Ontario Centre of Innovation for Offensive Cybersecurity. We have performed penetration testing for businesses of all sizes. Stingrai team members have been recognized by numerous Fortune 500 companies for identifying and reporting vulnerabilities in their products.

Stingrai is dedicated to helping organizations secure their digital assets against cyber threats. Our team of vetted white-hat hackers are highly skilled at identifying vulnerabilities in your systems, ensuring your business is protected from cybercriminals.
As part of our service, we provide complimentary access to our proprietary PTaaS platform, empowering your developers to efficiently address and remediate all identified vulnerabilities.
We continuously innovate to stay ahead of emerging threats.
We uphold the highest ethical standards in everything we do.
Our clients’ security is at the heart of our operations.

Arafat Afzalzada
Founder
Bachelor’s degree in Computer Science with over 10 years of experience in Penetration Testing
Certificates: CISSP, PCNSE, CCNA, ITIL

Gustavo Roberto
Team Lead Penetration Tester
Bachelor’s degree in Computer Science with over 15 years of experience in Penetration Testing and Red Teaming.
Certificates: CRTO, CRTP, CRTA
Bugbounty Hall of Fame: PicPay, Arlo, C6 Bank, Sophos, Telekom

Ivan Spiridonov
Team Lead Penetration Tester
Bachelor’s degree in Information Technology with over 15 years of experience in Penetration Testing, Exploit Development and Red Teaming.
Certificates: OSCE³, OSED, OSWE, OSCP, CRTL, CRTE, CRTO
Published Vulnerabilities (9 CVEs): CVE-2024-32136, CVE-2023-0830, CVE-2024-0365, CVE-2024-0399, CVE-2024-0405, CVE-2024-0566, CVE-2024-30240, CVE-2024-31370, CVE-2024-33911

Ugur Koc
Senior Penetration Tester
Master’s degree in Cybersecurity with over 13 years of experience in web, mobile, network penetration testing, and red-team operations.
Certificates: OSWE, OSCE, OSCP, OSWP, GMOB, AWS-CCP, C-AI/MLPen, CREST-CPSA
Published Vulnerabilities (10 CVEs): CVE-2015-2347, CVE-2015-2346, CVE-2015-6929, CVE-2015-4912, CVE-2015-8687, CVE-2016-4392, CVE-2017-1279, CVE-2017-1204
Bugbounty Hall of Fame (500+ vulnerabilities reported): Oracle, IBM, HP, Kaspersky, Nokia, Alcatel-Lucent, Huawei, ZTE, Bosch, Adobe and more.

Armaan Pathan
Senior Penetration Tester
Master’s degree in Information Technology with over 10 years of experience in penetration testing, red teaming, and exploit development.
Certificates: OSCP, CMSE
Accomplishments: Presented talks at BSides Ahmedabad (Exploiting BurpSuite Upstream Proxy) and at null Dubai (Attacking postMessage).
Bugbounty Hall of Fame (400+ vulnerabilities reported): Apple, Facebook, Google, Yahoo, US Department of Defense, Quora, Imgur, Ubiquiti, Glassdoor, and more.

Omar Hamdy
Senior Penetration Tester
Master’s degree in Computer Science with over 5 years of experience in Penetration Testing and Red Teaming.
Certificates: OSCP, eWPTx, Crest CRT, CRTE, eWPTX
Bugbounty Hall of Fame: USA-federal-reserve, PaySafe, Zynga

Utku Yildirim
Senior Penetration Tester
Master’s degree in Cybersecurity over 6 years of experience in Web, Mobile, Network Penetration Testing, and Red-Team operations.
Certificates: OSCE, OSWE, OSWP, CRTO
Accomplishments: Delivered talks at global cybersecurity conferences such as DEF CON and BSides Oslo, covering topics like UAV/GPS spoofing, 5G jamming, LTE redirecting, and SS7 exploitation. His research and contributions have been featured at NATO Locked Shields.