Skip to main content
System Boot // Trace Protocol0%
[Click / Press any key to skip]Online
Zero_TRUST
Trace ID: #9821-SECURE

Hello, I'mMostafa Mahmoud

SOC Analyst • DFIR • Threat Hunter • CTF Player

Cybersecurity analyst focused on Digital Forensics, Incident Response, and Threat Hunting. Passionate about investigating security incidents, analyzing attacker behavior, and solving real-world security challenges through continuous learning and hands-on research.

Mostafa Mahmoud
StatusONLINE
FocusDFIR
LocationEgypt

// About System

MODULE_INFO // LOG_STATUS

Cybersecurity enthusiast with a strong interest in Security Operations, Digital Forensics, and Incident Response (DFIR). Passionate about incident analysis, understanding attacker behavior, and continuously improving practical security skills through hands-on learning.

Active CTF Player driven by curiosity and problem-solving, using challenges and real-world scenarios to strengthen analytical thinking and technical knowledge. Based on the principles of knowledge sharing and responsible research, I document my learning journey, experiments, and writeups for the security community.

// Research & Labs & Tools

SECURE_FILES // PORTFOLIO

View all projects

DedupInspector

Offline Windows Data Deduplication explorer and recovery tool for digital forensics. Reconstructs deduplicated files from an exported $MFT, Stream, and Chunk metadata.

C++Win32DFIRNTFSReverse Engineering

// Forensic Writeups

LOGS // BLOG_WRITEUPS

Browse all writeups