M. Amokrane ABDELMALEK

M. Amokrane ABDELMALEK

Computer Science Engineer

Biography

I am a Computer Science Engineering Graduate from Ecole Supérieure nationale d’Informatique, ESI in Algiers, Algeria. I’m highly motivated individual with great organizational skills and always excited to learn. I am also a cybersecurity enthusiast and I am always looking for new challenges and opportunities to learn and grow in the field of cybersecurity. I’m also a CTF player at noreply team.

Interests
  • Cybersecurity
  • Web security
  • DevOps
  • Web development
Education
  • Computer Science Engineering Degree, 2024

    Ecole Supérieure nationale d'Informatique, ESI in Algiers, Algeria

  • Master Degree in Computer Science, 2024

    Ecole Supérieure nationale d'Informatique, ESI in Algiers, Algeria

Skills

Technical
Python
Bash scripting
JavaScript
C/C++
SQL
Docker
Kubernetes
Google Cloud Platform
Soft
Crtical thinking
Time management
Problem solving
Team work & collaboration

Accomplish­ments

CVE-2024-1025: Arbitrary Code Execution in paddlepaddle/paddle
See report
MLflow
CVE-2023-6568: Reflected POST XSS in mlflow/mlflow
See report
Found a Critical Vulnerability in Visa (CVSS 10)
See report

Projects

*
Dynamic IP Getter

Dynamic IP Getter

Bash script to get the dynamic public IP address pushed on a private Github repo each time it changes.

esiCDN

esiCDN

esiCDN - a CDN architecture for Algerian universities

Java arithmetic interpreter

Java arithmetic interpreter

Mini interpreter of arethmetic operations written in JAVA

FastAPI Project Template

FastAPI Project Template

RESTful Back-end project template with FastAPI + PostgreSQL + JWT + Docker + Nginx

Mark Checker

Mark Checker

Automation script using Python and Selenium, in order to login on talents.esi.dz and check for last released marks.

QR generator

QR generator

A simple QR code generator application developed with Flask.

Car Tracking App

Car Tracking App

A ReactJS app using MapBox and Firebase to show position in maps

SQL Injection

SQL Injection

a time based PostGreSQL injection using Dichotomic search, in order to dump the database.

Workshops

Client-side Web Security Workshop
Oussama and I, held a workshop in Bsides Algiers Finals 2021, about client-side web security, we talked about the most common vulnerabilities in the client-side, and how to exploit them, and how to prevent them.
Introduction to CTFs
Akram Boutouchent and I, held a workshop in Sahra with GDG Algiers, about the basics of CTFs, we talked about the most common categories, and how to start solving challenges.

Experience

 
 
 
 
 
Hackerone - YesWeHack - Huntr
Bug bounty hunter
June 2023 – Present
  • Discovered and reported numerous vulnerabilities, including critical ones, to known companies such as Visa and VFS Global.
  • Got rewarded for my findings and have been assigned many CVEs, which let me gain a lot of experience with real world products.
 
 
 
 
 
Datawaves
DevOps Engineer
January 2023 – May 2023 London, UK

Responsibilities include:

  • Analysing
  • Modelling
  • Deploying
  • Automating
  • Maintaining
 
 
 
 
 
Upwork
Freelancer
March 2022 – Present
  • Carried out many technical tasks related to Security, Web Development, and IT automation.
  • Had contact with real clients and solved real-world issues.
 
 
 
 
 
GDG Algiers
Development Department Manager
August 2021 – July 2022 Algiers, Algeria
  • Managed a team of a lot of developers, and created a lot of dev projects and events websites.
  • Organized a lot of events and workshops.
 
 
 
 
 
CodeLabs Academy
Content Creator
August 2021 – January 2022 London, UK
  • Prepared content for the cyber security bootcamp and learned how to redact technical content.
 
 
 
 
 
Red Fox Labs
Junior Penteration Tester
October 2021 – February 2022 Dublin, Ireland
  • Performed penetration testing on commercial websites, whether it was a black, gray, or white box.
  • Interacted with actual products, experiment with their features, and apply the security principles learned.
 
 
 
 
 
Shellmates Club
Active Member
October 2019 – Present Algiers, Algeria
  • Organized many CaptureTheFlag competetions and workshops.
  • Creating Web exploitation and Cryptography challenges for the CTFs.

Contact

Feel free to get in touch if you have any questions or suggestions.