عن Mamdouh Mahmoud:
I am a junior penetration tester , currently working as an IT Technical support
I am looking for a junior penetration testing job.
studied Sans SEC401 , Sans SEC504 , Sans SEC560 for network penetration testing, and currently studying Sans SEC542 for web penetration testing
Topics i learned about from these course:
( Network attacks - recon - scanning - exploitation - post exploitation ( Pivoting ) - social engineering - encryption - basic incident response - owasp top 10 - etc …… )
Projects:
1- My Graduation project was an idea for an Antivirus project that was intended to decrease the risk of a ransomware by monitoring the FILESYSTEM bulk calls and terminating their parent process.
2- ( an interview project to an indian company )
A python console application that I was asked to create , providing to the user logging in to the gmail account , sending and receiving mails.
3- Python dns server used for counting receiving the dns queries from the injected commands during penetration testing ( self study )
( Can be used also to count the social engineering clicks instead of sending malwares)
4- Bug Bounty Hunting ( Junior )
Still studying and trying to find bugs , solving machines on Portswigger , tryhackme and hackthebox , trying to find bugs on hackerone and bugcrowd but no real bug until now , most of them are informational until now ( rate limiting , http request smuggling symptoms , account harvesting using side channel attacks )
5- Building A network infrastructure inside my work using ( routers , switches , cams and servers ) ( IT Project )
6-Building a wordpress site by creating php template ( under development till now ) for nutrition and fitness
الخبرة
I am a junior penetration tester , currently working as an IT Technical support
I am looking for a junior penetration testing job.
studied Sans SEC401 , Sans SEC504 , Sans SEC560 for network penetration testing, and currently studying Sans SEC542 for web penetration testing
Topics i learned about from these course:
( Network attacks - recon - scanning - exploitation - post exploitation ( Pivoting ) - social engineering - encryption - basic incident response - owasp top 10 - etc …… )
Projects:
1- My Graduation project was an idea for an Antivirus project that was intended to decrease the risk of a ransomware by monitoring the FILESYSTEM bulk calls and terminating their parent process.
2- ( an interview project to an indian company )
A python console application that I was asked to create , providing to the user logging in to the gmail account , sending and receiving mails.
3- Python dns server used for counting receiving the dns queries from the injected commands during penetration testing ( self study )
( Can be used also to count the social engineering clicks instead of sending malwares)
4- Bug Bounty Hunting ( Junior )
Still studying and trying to find bugs , solving machines on Portswigger , tryhackme and hackthebox , trying to find bugs on hackerone and bugcrowd but no real bug until now , most of them are informational until now ( rate limiting , http request smuggling symptoms , account harvesting using side channel attacks )
5- Building A network infrastructure inside my work using ( routers , switches , cams and servers ) ( IT Project )
6-Building a wordpress site by creating php template ( under development till now ) for nutrition and fitness
التعليم
Bachelor degree of information technology from Faculty of computers and information .
