حاتم عبدالفتاح — المهندس حاتم عبدالفتاح

المهندس حاتم عبدالفتاح

المهندس حاتم عبدالفتاح — مختبر اختراق ومهندس أمن هجومي ومطور ويب متكامل من الإسكندرية، مصر. متخصص في اختبار الاختراق وأمن تطبيقات الويب والشبكات. طالب هندسة إلكترونيات واتصالات في جامعة الإسكندرية.

يمكنك التواصل مع المهندس حاتم عبدالفتاح للاستفسار عن خدمات اختبار الاختراق أو تطوير تطبيقات الويب.

// Electronics & Communications Engineer
Available for opportunities

Hatem
Abdelfatah — حاتم عبدالفتاح

Offensive Security & Fullstack
Penetration Testing Web App Security Network Security Fullstack Dev FastAPI · Python Alexandria, EG
scroll
Hatem Abdelfatah
Hatem Abdelfatah
// 01

About Me

I'm Hatem Abdelfatah (حاتم عبدالفتاح), an Electronics & Communications Engineering student at Alexandria University, deeply specialized in offensive security — the art of thinking like an attacker to build stronger defenses.

My philosophy: "to break it, you must first know how to build it." This drives me to constantly sharpen both my hacking skills and fullstack development knowledge, giving me a rare dual perspective on system security.

I've trained with DEPI in penetration testing, built real-world systems using FastAPI, Python, PHP, and SQL, and earned Udacity's Ethical Hacking Nanodegree in July 2025 after extensive hands-on lab work.

Whether it's exploiting an IDOR, designing a real-time WebSocket backend, or implementing OS-level synchronization in C — I bring technical depth and curiosity to everything I touch.

أنا المهندس حاتم عبدالفتاح، طالب هندسة إلكترونيات واتصالات في جامعة الإسكندرية. يعمل المهندس حاتم عبدالفتاح في مجال اختبار الاختراق والأمن الهجومي وتطوير الويب. حاصل على نانودرجة الاختراق الأخلاقي من Udacity وأتدرب مع مبادرة مصر الرقمية DEPI في مجال اختبار الاختراق.

3.42
GPA / 4.0
9+
Courses & Preps
8+
GitHub Repos
2026
Expected Grad
hatem@kali:~$
$ whoami
hatem_abdelfatah

$ cat profile.json
# Cybersecurity Engineer
Role: PenTester + Fullstack Dev
Location: Alexandria, Egypt
Focus: Offensive Security
Status: Available ✓

$ nmap -sV skills
80/tcp http PHP / HTML / JS
443/tcp https FastAPI / Python
3306/tcp mysql SQL / SQLAlchemy
4444/tcp shell Metasploit / Burp

$ _
// 02

Skills & Tools

Core Proficient Familiar
Offensive Security
Web Application Penetration Testing
SQLiXSSIDORCSRFOWASP Top 10Burp Suite Pro
Network Penetration Testing
ReconScanningEnumerationExploitationPost-ExploitationPivoting
Tools & OS
NmapMetasploitKali LinuxWiresharkNessusBloodHoundVMware
Security Concepts
Vulnerability AssessmentPrivilege EscalationCredential HarvestingSecurity ReportingSocial Engineering

Development
Programming & Scripting
PythonCBashPHPSQLHTML / CSS / JS
Backend & Database
FastAPISQLAlchemyMySQLWebSocketJWT AuthREST APIs
Security Tools
Burp Suite Pro
Metasploit
Nmap
Nessus
Wireshark
BloodHound

Technologies
Kali Linux
FastAPI
SQLAlchemy
WebSocket
Python
PHP
MySQL
HTML/CSS/JS
C
Bash
VMware
Git

Methodologies
Recon
Scanning
Exploitation
Post-Exploit
Pivoting
Reporting
// 03

Work Experience

APR 2024 — OCT 2024
Penetration Testing Intern
Digital Egypt Pioneers Initiative (DEPI) · Cairo, Egypt (Remote)
Participated in a structured penetration testing training program covering web application and network security. Practiced vulnerability identification and exploitation in guided lab environments, conducted simulated attack assessments, and assisted in writing professional security reports.
Web App TestingNetwork Security Vulnerability AssessmentSecurity Reporting Burp SuiteMetasploit
// 04

Education

OCT 2021 — JUL 2026 (Expected)
B.Sc. Electronics & Communications Engineering
Faculty of Engineering, Alexandria University · GPA 3.42 / 4.0
A comprehensive engineering degree covering the core disciplines of electronics and communications — including circuit analysis, electronic devices, signals & systems, electromagnetic theory, digital communications, wireless networks, signal processing, control systems, and microelectronics. The strong mathematical and systems-thinking foundation developed through this program directly supports rigorous work in security research, hardware-level understanding, and low-level systems engineering.
Signals & SystemsDigital Communications ElectromagneticsElectronic Circuits Wireless NetworksMicroelectronics
// 05

Projects

[ PENTEST_LAB ]
Home Lab — Penetration Testing Environment
Private cybersecurity lab using VMware to simulate real-world attack scenarios. Conducted network security assessments, privilege escalation exercises, web vulnerability testing, and full post-exploitation workflows on isolated targets.
Kali LinuxVMwareMetasploitNmapBurp Suite
[ SMART_SYSTEM ]
SmartCart & Smart Market — Full-Stack Commerce System
End-to-end intelligent shopping system combining a real-time backend API (FastAPI + WebSocket) with a complete market management layer. Features JWT authentication, live cart tracking with position awareness, product search with popularity scoring, admin broadcast via WebSockets, inventory management, customer catalogues, automated offer handling, and a security-first architecture following OWASP practices throughout.
FastAPIWebSocketSQLAlchemyJWT AuthPythonMySQLOWASP
[ PINTOS_OS ]
Pintos — Operating System Implementation
Extended the Pintos educational OS in C implementing thread scheduling, user programs, virtual memory, and a file system. Deep systems-level work that sharpens kernel exploitation understanding, privilege escalation techniques, and memory vulnerability research.
COS InternalsThreadsVirtual MemoryFile System
[ OS_SHELL ]
Simple Shell with Multi-Processing
Unix-like shell in C supporting multi-processing with fork/exec, pipelines, and signal handling. Core OS knowledge that directly informs privilege escalation and process injection research.
CUnixfork/execSignals
[ SYNC_MUTEX ]
CalTrain — Synchronization & Mutual Exclusion
Solved a classic OS synchronization problem using semaphores and mutexes in C. Core knowledge for understanding race conditions and lock vulnerabilities — primitives at the heart of real-world exploit development.
CSemaphoresMutexesRace Conditions
</>
More Projects on GitHub
Additional repositories including coursework, experiments, and ongoing work. Visit the full profile to explore everything.
View All Repos ↗
// 06

Courses & Training

Certification Prep Courses
GPEN
GIAC Penetration Tester (GPEN)
Digital Egypt Pioneers Initiative (DEPI)
Prep Course
GWAP
GIAC Web App Penetration Tester (GWAPT)
Digital Egypt Pioneers Initiative (DEPI)
Prep Course
SEC+
CompTIA Security+
LinkedIn Learning
Prep Course
LNX+
CompTIA Linux+
LinkedIn Learning
Prep Course
NET+
CompTIA Network+
Cybrary
Prep Course
Completed Courses
EHND
Ethical Hacking Nanodegree
Udacity
Completed July 2025
Completed
PHP
Building Database Applications in PHP
University of Michigan
Completed
WPHP
Building Web Applications in PHP
University of Michigan
Completed
SQL
Introduction to Structured Query Language
University of Michigan
Completed
WEB
Intro to Web Dev — HTML, CSS, JavaScript
IBM
Completed
// 07

Get In Touch

I'm actively looking for internships, part-time roles, and freelance opportunities in penetration testing and fullstack development. If you have a system to audit, a project to build, or just want to connect — reach out.

Available for new opportunities — Alexandria, Egypt