👋 Hey, I'm
Abdelrahman Waer
Penetration Tester | Red Team Specialist | Bug Hunter
Let's Connect
Mansoura, Egypt
Work Experience
Penetration Tester
Slovesta | Jan 2025 - Present
- Conducted end-to-end web and network penetration tests.
- Identified critical IDOR and Stored XSS vulnerabilities.
Red Team Intern
Penforce | July 2025 - Sept 2025
- Executed gray-box testing using source code review.
- Exploited SSRF, Auth Bypass, and Race Conditions.
Freelance Pentester
Remote | June 2024 - Present
- Bug bounty on HackerOne/Bugcrowd platforms.
- Developed automation tools for recon.
Cybersecurity Instructor
CyberJack / Digital Mind | Jan 2025
- Designed "Hack It All" course, mentoring 60+ students.
- Led Red Team attack simulations.
Cybersecurity Intern
Egyptian Agricultural Bank | Aug 2024
- Secured IT infrastructure using SIEM and IDS/IPS.
Projects
WaerBughunter Framework
Python, Bash, AI
- AI-Powered OffSec Framework for automated recon.
- Intelligent vulnerability scanning & prioritization.
IoT Attendance Security
C++, IoT | 2024
- Secured IoT infrastructure from CSRF & sessions flaws.
- Implemented rate limiting and secure tokens.
Hospital Management System
.NET, SQL | DEPI Project
- Full-stack system with Role-Based Access Control.
- Secure auth and input validation for records.
Skills & Expertise
Offensive Operations
- Red Teaming & Web/Network Pentesting
- Active Directory Exploitation
- Privilege Escalation & Post-Exploitation
Security Arsenal
- Burp Suite Pro, Metasploit, Nmap
- Cobalt Strike (Concepts), Wireshark
- SQLMap, Amass, Shodan
Vulnerability Analysis
- Dynamic Application Security Testing (DAST)
- Exploit Development
- Threat Modeling & Business Logic
Programming & Automation
- Python (Security Tooling), Bash
- C# .NET, PHP, JavaScript
- AI Integration for Security
Education & Certifications
🎓 Bachelor of AI
Cyber Security Track
- Delta University
- Expected 2027
🏆 Certifications
- CPTE - Certified Pentester
- ISC2 CC & Candidate
- CompTIA Network+
📚 Training
- TCM Ethical Hacking
- TCM Bug Bounty
- Red Team - Hossam Shady
💼 Practical Skills
- Web Pentesting
- Recon & Enumeration
- Bug Bounty Workflow
Competitions & Rankings
🚩 CTF Competitions
- GlacierCTF 2025: Ranked 60th
- CyCTF 2025: Ranked 74th
- HeroCTF v7: Ranked 168th
- EG-CERT: 911 points
🤖 VEX Robotics
National Competition | 2019
- 🥇 1st Place National Winner
- Problem-solving & leadership
Focus & Motivation
🎯 Current Focus
- OSCP Labs: AD & Buffer Overflow
- Cloud Security: IAM, SSRF, S3
- Red Team: Cobalt Strike, Sliver
💡 Philosophy
"I thrive on breaking into systems ethically and helping organizations fix the cracks before real threats exploit them."