,----, ,--,
.' .`| ,--.'| ,---,. ,----..
.' .' ; ,--, | : ,' .' \ / / \
,---, ' .',---.'| : ',---.' .' | / . :
| : ./ ; : | | ;| | |: | . / ;. \
; | .' / | | : _' |: : : /. ; / ` ;
`---' / ; : : |.' |: | ; ; | ; \ ; |
/ ; / | ' ' ; :| : \| : | ; | '
; / /--, \ \ .'. || | . |. | ' ' ' :
/ / / .`| `---`: | '' : '; |' ; \; / |
./__; : ' ; || | | ; \ \ ', /
| : .' | : ;| : / ; : /
; | .' ' ,/ | | ,' \ \ .'
`---' '--' `----' `---`
Welcome to my GitHub space.
Iβm a Web Security Specialist and Backend Developer, and an active member of the FuzzRaiders cybersecurity team, focused on real-world web application security and offensive testing.
-
π‘οΈ Web Security Specialist β FuzzRaiders Team
I work on identifying, exploiting, and understanding web application vulnerabilities as part of a structured offensive security team. -
π οΈ Backend Developer
I build clean, efficient, and secure backend systems using Node.js, APIs, authentication flows, and databases. -
π΅οΈββοΈ Pentester / CTF Player
Actively practicing web exploitation through CTFs, labs, and hands-on testing to strengthen real-world methodology. -
π Continuous Learner
Focused on mastering both secure development and offensive web security.
-
Web Application Security
XSS, IDOR, SQLi, SSTI, authentication flaws, access control issues, and business logic bugs. -
Backend Systems
Auth systems, REST APIs, file handling, database design, and secure app architecture. -
CTF Writeups & Methodology
Documented challenges, notes, and repeatable testing approaches. -
Security Automation
Scripts and tools to speed up recon, enumeration, and testing workflows.
Check my pinned repositories for:
- π§© CTF Writeups
- π Web Security & Bug Bounty Tools
- βοΈ Backend & Full-Stack Projects
- π οΈ Security Scripts and Experiments
- Advanced Node.js & Express
- Web Application Security (Offensive)
- Authentication & Authorization Systems
- Linux Privilege Escalation & OSCP-style Labs
- π¦ Twitter: Mo__liiga
- π§ LinkedIn: Mahamud Abdirahman
- π» GitHub: @Z4BO
- I approach vulnerabilities like puzzles β logic first, exploit second.
- I care about methodology, not just flags.
- If itβs a web app, I want to break it and understand why it broke.
Build securely. Break responsibly. Learn constantly.
β Z4B0