Welcome to my GitHub profile! I am a Certified Web Application Penetration Tester (eWPTXv2) with a strong foundation in offensive security and vulnerability assessment. This repository showcases my projects, skills, and contributions to the field of cybersecurity.
- Education: Pursuing a degree in Artificial Intelligence - Cyber Security Department at Menofia University (GPA: 3.4, Expected Graduation: 2025).
- Certifications:
- eWPTXv2 (Certified Web Application Penetration Tester)
- CompTIA Security+
- Practical Ethical Hacking
- Experience: Cybersecurity Consultant Intern at Liquid C2 MENA (2024)
- Governance, Risk, and Compliance (GRC)
- Penetration Testing (Web, Mobile, Network, AI systems)
- Security Operations Center (SOC) workflows
- Part-Time Bug Bounty Hunter: Actively finding vulnerabilities on various platforms.
- Proficient in OWASP Top 10 vulnerabilities: SQL Injection, SSRF, XSS, SSTI, and more.
- Tools: Burp Suite, Metasploit, Nikto.
- Expertise in static and dynamic analysis using tools like jadx, Frida, and Burp Suite.
- Skills in port scanning, banner grabbing, and OS fingerprinting.
- Python, JavaScript, Bash, C++, PHP, PowerShell.
- Practical experience with Splunk for log analysis, threat hunting, and incident reporting.
- Proficient in Linux and Windows.
- PortSwigger Web Security Academy: Solved labs focusing on SSRF, XSS, SQLi, and other vulnerabilities.
- PentesterLab: Tackled diverse security challenges to enhance skills.
- Risk Management: Developed asset inventories, conducted vulnerability and risk assessments, and delivered final reports during my internship at Liquid C2.
- Boss of the SOC v1: Investigated incidents using Splunk and created detailed reports.
- Bugcrowd: https://bugcrowd.com/0xamino
- Hack The Box: https://app.hackthebox.com/profile/1968865
- LinkedIn: alaminalaa8
- Certification Verification: eWPTXv2 Certificate