About · Work

Jeongwon Jo

Security Researcher · Web / Android · 0day & Vulnerability Research

Focus
Web2.0 / Android
Availability
On-site / Hybrid / Remote
Hobbies
snowboard · game (league of legends)

Experience

Content Researcher · Dreamhack (Theori)

Reserved
Feb, 2026 -

Contents & Challenges Create · ETC

Security Researcher · RedAlert (NSHC)

Current
Apr, 2022 — Present

Web2 & Mobile Research · Real-world services · Responsible disclosure

Pentester · ██ ████████

Former
Nov, 2021 - Dec, 2021 (1 month)

Penetration testing for the bank

Activity

Web3.0 Auditor

Pause
Feb, 2025 - Jul, 2025

Mainly audit EVM and CVM as a hobby

CTF Player, No team

Apr, 2020 - Present

Participate alone often, these days, only participate in Web3.0

URLParserCon

NPM Researching
  • There are various flaws in many URL parsers. This flaw can lead to SSRF, XSS, and Open Redirect
  • Have listed the various URL Parser modules of NPM. Found 0-Day in the parser and reported it.
  • Earned $4,170 through this project

Bug Bounty/Audit Contests

Web3 Audit Contests, Code4rena, Sherlock, ETC

Pause
Feb, 2025 - Jul, 2025

https://chainless.live/audits/

Web2 Bug Bounty, In the world ($18,613)

Sep, 2021 - Present