terminal
$|

> Summary

A motivated and detail-oriented Computer Science student specializing in Cybersecurity, passionate about securing digital assets and identifying system vulnerabilities. Hands-on experience in web application security, with growing practical exposure and strong interest in mobile application security and reverse engineering. Seeking opportunities in offensive security and penetration testing.

> Experience

Freelance Bug Bounty Hunter

Self-Employed
Ongoing
  • Discovered and reported security flaws in web applications through responsible disclosure programs.
  • Achieved validated payouts and bounties while continuously improving skills via vulnerability research.

Offensive Security Intern

CYBERTEQ
July, 2025 - August, 2025
  • Conducted penetration testing on client infrastructures covering web, network, and mobile applications.
  • Performed mobile application security assessments, including APK reverse engineering, traffic interception, and dynamic analysis (Frida, MobSF, and Burp Suite).
  • Documented findings and prepared detailed security assessment reports with remediation recommendations.

Penetration Testing Training

DEPI
April, 2024 - October, 2024
  • Trained on practical web application penetration testing and network vulnerability assessment.
  • Developed strong understanding of Linux, network fundamentals, and ethical hacking methodologies.

Network Security Training

ITI
August, 2023
  • Completed courses in CCNA, Cybersecurity Essentials, Ethical Hacking, and Firewall Configuration (Fortigate & Palo Alto).

> Projects

AndroPen — Docker-Based Android Penetration Testing Platform (Graduation Project)

Go, React, TypeScript, Python, Docker, MongoDB, Redis
  • A multi-container, Docker-orchestrated platform providing a comprehensive, browser-accessible environment for Android application security testing.
  • Delivers end-to-end capabilities including static analysis (manifest audits, secret scanning, Semgrep, FlowDroid taint analysis, and MASVS compliance scoring), APK patching with an integrated smali debugger built on a custom JDWP client and VS Code extension, and dynamic analysis through Frida instrumentation and Burp Suite proxy integration with automated CA installation.
  • Features an AI-powered analysis module supporting six LLM providers for automated vulnerability detection and Frida hook generation, alongside workflow automation, team project collaboration, and full reporting in SARIF, HTML, and PDF formats.

> Education

Egypt-Japan University of Science and Technology (E-JUST)

New Borg El Arab City, Alexandria

Bachelor's Degree in Computer Science

Major: Computer Networks and Cybersecurity

Dakahlia STEM School

Gamasa City, Dakahlia

Math Section

> Skills

Programming

PythonHTMLCSSJavaScriptPHPSQL

Operating Systems

Linux (Kali, Ubuntu)

Networking

Network Scanning & Monitoring (Nmap, Wireshark)Network Protocols (TCP/IP, HTTP/S)

Web Security

Vulnerability AssessmentManual PentestingAutomated Tools (Burp Suite)

Mobile Security

APK AnalysisFridaMobSFADBDynamic Instrumentation

Reverse Engineering

Static/Dynamic Analysis of Applications

Other Tools

GitXAMPPMS SQL ServerBash ScriptingDocker

> Certifications & Trainings

The SecOps Group - Certified AppSec Practitioner (CAP)

> Competitions

  • ZINAD-IT CTF
  • Cybertalents Cohort 7 Online CTF
  • ICMTC-2024 CTF