0%
PORTFOLIO v2.0 // SECURITY ENGINEER

HAMID
ALI

Cybersecurity · CSE Graduate · Ethical Hacking

Computer Systems Engineering graduate focused on penetration testing, web & API security, responsible disclosure, bug bounty research, and network security. I turn hands-on security testing into clear, evidence-based findings and practical remediation guidance.

0° 90° 180° 270°
0
Labs
0
Reports
0
Projects
terminal — hamid@kali
$ whoami
hamid-ali // Pentesting + Security Research
01

About

I'm a Computer Systems Engineering graduate with a strong focus on cybersecurity, ethical hacking, and network defense. My approach bridges low-level systems knowledge with real-world offensive security techniques.

I actively perform authorized security testing, build hands-on labs, and document responsible-disclosure cases. My workflow emphasizes reproducible evidence, impact analysis, and practical remediation rather than unsupported claims.

Currently expanding my expertise in CCNA networking, cloud security, web/API security, and IIoT threat modeling. Open to cybersecurity, penetration testing, and security engineering opportunities.

Web Pentesting82%
Bug Bounty75%
Networking / CCNA70%
Linux & Scripting68%
Frontend Dev80%
Cloud Security55%
02

Core Skills

⚔
Cybersecurity & Pentesting
OWASP Top 10Recon & Enum Web App TestingAuth Flaws Info DisclosureAPI Security Misconfigurations
🐛
Bug Bounty & Vuln Analysis
SQLiXSSIDOR CSRFLFI/RFICmd Injection Auth BypassBusiness Logic Subdomain TakeoverFile Upload ClickjackingOpen Redirect
🌐
Networking & CCNA
TCP/IP & OSIRouting & Switching VLANsSubnetting FirewallsCisco Packet Tracer
🖥
Linux & Cloud
Linux FS & PermsUser Management Bash ScriptingCloud Security Server DeploymentIIoT Security
03

Arsenal

01 // Reconnaissance
OSINT & Recon
Amass
Subfinder
Assetfinder
Google Dorking
Shodan
02 // Scanning
Scan & Fuzz
Nmap
Nuclei
FFUF
Dirsearch
Nikto
03 // Exploitation
Offensive Tools
Burp Suite
SQLmap
Custom Payloads
Metasploit (basics)
04 // Reporting
Documentation
PoC Write-ups
Impact Analysis
HackerOne Format
CVSS Scoring
04

Projects

Security Research
AI-Driven IIoT Security Survey
Research project analyzing AI-driven security frameworks, threat detection approaches, and defense architectures for Industrial Internet of Things environments.
IIoTAI/MLThreat DetectionResearch
View on GitHub
Final Year Project
SafeSurf AI
Cybersecurity monitoring platform for preliminary website, email, and WiFi security analysis, supported by a Flask backend, SQLite history, dashboard, and Chrome extension.
PythonFlaskSQLiteChrome Extension
View GitHub Profile
Startup MVP
CampusKonnect — Student Marketplace
University buy/sell platform developed as a campus startup MVP, using Google Sites, Forms, and Sheets to validate the concept and collect pilot listings.
Google SitesFormsSheetsMVP
View GitHub Profile
Embedded Systems
Automatic Light Control System
Arduino-based automation project using PIR motion sensing and LDR light detection for energy-efficient smart-environment control.
ArduinoPIRLDREmbedded C
View GitHub Profile
Hands-on Labs
TryHackMe — 120+ Labs
Hands-on practice across web exploitation, privilege escalation, network attacks, Linux, defensive security, and CTF-style challenges.
CTFLinuxWeb SecurityPrivEsc
View TryHackMe Profile
05

Experience

MAY 2026 — JUN 2026 · REMOTE
Penetration Tester | Web Security Researcher | Bug Bounty Practitioner
micro1 · Part-time
Passed an AI-based technical evaluation for penetration testing and web application security. Practical work covered vulnerability assessment, reconnaissance, OWASP Top 10 testing, endpoint analysis, API security, and structured vulnerability reporting.
View LinkedIn Evidence
JUL 2025 — DEC 2025 · REMOTE
Bug Bounty & Web Application Security Trainee
Defronix Cyber Security · Freelance
Completed practical training covering OWASP Top 10, advanced reconnaissance, vulnerability discovery, web exploitation, API testing, authorization testing, and structured reporting using tools such as Burp Suite, Nmap, FFUF, Amass, Subfinder, Wayback, and ParamSpider.
View LinkedIn
JUL 2025 — OCT 2025 · MIRPUR, AJK
Cyber Security Student
Moboroid · Internship
Gained practical exposure to cybersecurity concepts, security risk, and hands-on security activities in an internship environment.
View LinkedIn
MAY 2025 — AUG 2025 · MIRPUR, AJK
Cisco Network Engineer
Special Communications Organization (SCO) · Apprenticeship
Completed a three-month CCNA-focused training program covering routing, switching, IP addressing, subnetting, network troubleshooting, and practical Cisco device configuration.
View LinkedIn
FEB 2024 — DEC 2025 · MIRPUR, AJK
Operations and Logistics Lead
AWS Cloud Club MUST · Seasonal
Contributed to student community activities, event operations, project coordination, and cloud-focused community initiatives at MUST.
View LinkedIn
06

Responsible Disclosure

HOST HEADER / BLIND SSRF
Password Reset Flow — Host Header Injection
global.khaadi.com
Reported a user-controlled X-Forwarded-Host issue in a password-reset flow. Out-of-band DNS/HTTP interaction was observed during controlled testing. Testing was stopped after sufficient evidence was collected.
AUTH FLOW OOB INTERACTION RESPONSIBLE DISCLOSURE
REPORTED · TECHNICAL REPORT PROVIDED
SQL INJECTION
Administrator Authentication Bypass
indoreujjaintaxi.in
Reported an SQL injection condition in the administrator login flow that resulted in authentication bypass during a limited test. Administrative functionality and customer contact records were visible; no records were intentionally modified or deleted.
SQLi AUTH BYPASS IMPACT ANALYSIS
REPORTED · EVIDENCE PROVIDED
ACCOUNT ENUMERATION
Timing-Based LDAP Username Enumeration
auburn.instructure.com / login/ldap
Disclosed a timing-based username enumeration issue affecting the LDAP login flow. Instructure's security team acknowledged the report and directed the finding to its Bugcrowd submission process.
TIMING ANALYSIS LDAP BUGCROWD
ACKNOWLEDGED · BUGCROWD ROUTING
WEB / API SECURITY
Newsletter API Security Observations
digitalpremiersolutions.com
Reported multiple observations around newsletter subscription handling, including stored-input/XSS risk, missing rate limiting, CSRF protection gaps, validation-error information disclosure, and newline input handling.
STORED XSS RATE LIMITING CSRF INFO DISCLOSURE
REPORTED · FOLLOW-UP SENT
PASSIVE RECONNAISSANCE
Public Web Security Observations
nadra.gov.pk
Submitted a passive-reconnaissance report covering publicly observable security posture, CSP observations, server-timing information disclosure, and historical technology references. No intrusive exploitation was performed.
PASSIVE RECON CSP INFO DISCLOSURE RESPONSIBLE RESEARCH
DISCLOSED · PASSIVE TESTING ONLY
PKI / TLS RESEARCH
SSL Certificate Configuration Review
Salesforce B2C Commerce staging environment
Reported a publicly observable certificate configuration involving a staging environment. Salesforce reviewed the case and classified it as a false positive, explaining the configuration as a functional private-CA requirement protected by access controls.
TLS / PKI SECURITY REVIEW LEARNING OUTCOME
CLOSED · CLASSIFIED FALSE POSITIVE BY VENDOR
Public portfolio summaries intentionally omit sensitive targets, credentials, tokens, private evidence, and exploit payloads. Detailed technical reports can be shared privately where appropriate.
07

Research

📄 SURVEY PAPER
AI-Driven Security Frameworks for Industrial IoT Networks
A semester-long research project investigating how artificial intelligence can be leveraged to detect, prevent, and respond to cyber threats in Industrial IoT environments. Includes comprehensive literature review and framework comparison.
Industrial Internet of Things threat landscape
AI/ML-based anomaly detection models
Comparative analysis of security frameworks
Responsible disclosure methodology
PDF available on GitHub repository
TYPE Survey / Research
DOMAIN IIoT Security
STATUS Repository Available
View Paper
08

Certifications

🛡
Cisco Ethical Hacker
Cisco Networking Academy
EARNED · VIEW POST ↗
🛡
Penetration Tester
micro1
CERTIFIED · VIEW LINKEDIN ↗
🌐
CCNA
Cisco · In Progress
IN PROGRESS ↗
💻
TryHackMe Top Labs
TryHackMe Platform
120+ LABS · VIEW PROFILE ↗
🔬
Bug Bounty Research
Self-directed Security Research
20+ VULNS · VIEW LINKEDIN ↗
09

Contact

// LinkedIn
// GitHub
// TryHackMe
Open to internships, research collaborations, and bug bounty discussions.