Mohammed Abdel Rashid - Penetration Tester & Cybersecurity Specialist
Open to New Opportunities · 2026

Mohammed
Abdel Rashid

Penetration Tester & Cybersecurity Specialist | Web Security Trainer | Full-Stack Developer (Laravel/PHP) | Building & Securing Scalable Web Applications

4+

Years Experience

20+

Projects Shipped

30+

Technologies

Scroll to explore

Selected Work

Projects that
secure the web

Real-world security tools, secure web applications, and training platforms built to protect and educate.

Dark terminal screen showing penetration testing tool output with vulnerability scan results and security alerts
Featured

Web Application Penetration Testing Framework

A comprehensive automated web app pentest toolkit covering OWASP Top 10 vulnerabilities — SQLi, XSS, CSRF, IDOR, and more. Generates detailed PDF reports with severity ratings and remediation steps.

PythonBurp Suite APIOWASPSQLMapDocker
Modern web application dashboard with security indicators, user management panel, and activity logs on dark background

Secure Laravel SaaS Platform

Full-stack multi-tenant SaaS application built with Laravel and PHP, featuring role-based access control, encrypted data storage, CSP headers, rate limiting, and full audit logging.

LaravelPHPMySQLRedisDocker
Network topology map visualization with color-coded vulnerability severity indicators on a dark cybersecurity dashboard

Network Vulnerability Scanner

Custom network scanner that performs host discovery, port scanning, service fingerprinting, and CVE matching. Integrates with NVD database to flag known vulnerabilities in real time.

PythonNmapScapyCVE APIPostgreSQL
Cybersecurity CTF platform interface showing challenge categories, leaderboard, and flag submission form on dark theme

CTF Challenge Platform

A Capture The Flag platform for cybersecurity training with 50+ challenges across web exploitation, reverse engineering, forensics, and cryptography. Used by 300+ students in security courses.

LaravelPHPDockerLinuxCTFd
API security testing dashboard showing endpoint vulnerability scan results with severity levels and request/response details

API Security Testing Suite

Automated REST API security scanner that tests for broken authentication, excessive data exposure, mass assignment, and injection flaws. Supports OpenAPI/Swagger spec imports.

PythonFastAPIOWASP API Top 10JWTPostman
Online security training portal with course modules, lab environment, and student progress dashboard on dark interface

Web Security Training Portal

Interactive e-learning platform for web security training with hands-on labs, vulnerable-by-design environments, and progress tracking. Covers XSS, SQLi, SSRF, and secure coding practices.

LaravelPHPVue.jsDockerMySQL

Technical Depth

Attack, defend,
and build secure

From penetration testing and vulnerability research to building and securing scalable web applications.

Penetration Testing

Burp SuiteMetasploitNmapSQLMapNiktoHydraAircrack-ngWireshark

Web Security

OWASP Top 10XSSSQL InjectionCSRFSSRFIDORXXEJWT Attacks

Full-Stack (Laravel/PHP)

LaravelPHPMySQLREST APIsVue.jsBlade TemplatesEloquent ORMLivewire

Secure Development

Secure CodingInput ValidationCSP HeadersRBACEncryptionOAuth2Rate LimitingAudit Logging

Security Tools & OS

Kali LinuxParrot OSNessusOpenVASShodanJohn the RipperHashcatNetcat

Infrastructure & DevOps

DockerLinux AdministrationNginxGitCI/CDFirewall ConfigVPNSSH Hardening

Certified in cybersecurity practices — fluent in Arabic and English, experienced in training and mentoring security professionals.

Background

The engineer
behind the work

Developer working at a dual-monitor setup in a modern office, dark ambient lighting with blue and amber screen glow, focused atmosphere

I'm Mohammed Abdel Rashid, a penetration tester and cybersecurity specialist based in the MENA region. I identify and exploit vulnerabilities across networks, web applications, and systems — delivering detailed reports and actionable remediation strategies.

Fluent in Arabic and English. Comfortable working with distributed international teams across time zones.

Connect on LinkedIn

Experience

Penetration Tester & Security Researcher

Freelance & Bug Bounty Programs

2022 – Present

Conducting black-box and grey-box penetration tests on web applications, APIs, and network infrastructure. Discovered and reported 30+ critical vulnerabilities across HackerOne and Bugcrowd programs, earning CVE acknowledgements and monetary rewards.

01

Web Application Security Analyst

Regional Cybersecurity Firm

2021 – 2022

Performed OWASP Top 10 assessments and source-code reviews for fintech and e-commerce clients. Delivered detailed pentest reports with CVSS scoring, PoC exploits, and step-by-step remediation guidance that reduced client attack surface by over 60%.

02

Full-Stack Web Developer (Laravel / PHP)

Digital Agency

2020 – 2021

Built and secured multi-tenant SaaS platforms using Laravel and PHP. Implemented RBAC, encrypted data storage, CSP headers, rate limiting, and audit logging — bridging secure development practices with real-world web application delivery.

03

Education

B.Sc. in Computer Science

Strong foundation in networking, operating systems, and cryptography. Supplemented with certifications and hands-on training in ethical hacking, web security, and secure software development.

Get in Touch

Let's build
something great

Open to senior engineering roles, freelance projects, and interesting collaborations. Response time: typically within 24 hours.

Available for full-time & freelance work

Send a message