Skip to content
View Asbawy's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report Asbawy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Asbawy/README.md

Typing SVG


Mohamed Al-Qasaby

Offensive Security Engineer | Red Teaming


πŸ‘‹ About Me

I am an Offensive Security Engineer and Bug Bounty Hunter dedicated to identifying and exploiting complex vulnerabilities before adversaries do. My focus lies in breaking down enterprise systems, web applications, and emerging AI infrastructures to build stronger security postures.

SkillIcons

Asbawy


Core Capabilities & Stack

Offensive Security & Domains

  • Network & Infrastructure: Active Directory exploitation, Privilege Escalation, Protocol Data Exfiltration.
  • Application Security: Source code review, API probing, identifying systemic flaws (e.g., LFI, DLL Hijacking).
  • Emerging Threats: AI Infrastructure Red Teaming, LLM prompt injection, and enterprise AI risk assessment.

Recent Research & Projects

  • Custom Reconnaissance Frameworks: Developed localized utilities and API scanners for automated target data gathering.
  • Vulnerability Advisories: Researched and documented technical deep-dives on vulnerabilities, such as local file inclusions and DLL hijacking mechanics in enterprise software.
  • Security Tooling: Building tools and environment sandboxes to streamline penetration testing workflows.

GitHub Statistics & Activity

GitHub Stats GitHub Streak

Top Languages


Let's Connect

LinkedIn Blog

Popular repositories Loading

  1. Automation-for-Juniper-cve-2023-36845 Automation-for-Juniper-cve-2023-36845 Public

    Simple Automation script for juniper cve-2023-36845

    Shell 19 7

  2. amassbeautifier amassbeautifier Public

    make the output file from Amass more readable by removing ANSI escape codes from the text.

    Python 1

  3. dedjwt dedjwt Public

    dedjwt is a Python script designed for JWT token fast brute-forcing

    Python 1

  4. python-scripts python-scripts Public

    This is a collection of useful Python scripts, modules, and projects that I've developed for various purposes

    Python

  5. Domain-Detective Domain-Detective Public

    Domain Detective is a command-line tool that allows you to check the HTTP status code of a single domain or multiple domains

    Python

  6. Asbawy Asbawy Public