Ahmad Muntaser Mohd Alamoudi Verified Security Researcher
Staff Systems Architect β’ Cybersecurity Researcher β’ Digital Forensics & Incident Response (DFIR)
Amman, Jordan β’ UTC+3
[Systems Engineering] βββ [Applied Cryptography] βββ [Digital Forensics (DFIR)] βββ [Zero-Trust Infrastructure]
Portfolio Discussions Email Contact Status
---\n
β οΈ Official Migration Notice: My previous primary GitHub profile was restricted/limited. This is my new official verified handle and engineering archive. All active repositories, security disclosures, and open-source tooling are maintained here. \n
I engineer resilient systems, audit low-level attack surfaces, and investigate complex forensic artifacts. My engineering discipline is built on defense-in-depth, deterministic execution, and zero-trust primitives.
Over a decade-long trajectory in software engineering, systems administration, and offensive/defensive security:
- Responsible Vulnerability Disclosure: Identified and responsibly coordinated disclosures across enterprise software ecosystems, notably discovering security weaknesses in Apple internal/consumer attack surfaces (2024).
- Engineering Leadership: Founded Softelv Technology, directing 15+ engineers delivering security auditing, applied AI automation, and high-availability infrastructure.
- Enterprise Defense & Forensics: Directed infrastructure hardening and incident response at Al Shreet News Agency; conducted evidentiary forensic extractions and chain-of-custody audits at BRG Real Estate complying with ISO/IEC 27037 and NIST SP 800-86 standards.
- High-Throughput Systems: Architected and scaled systems serving 12,000+ real-time concurrent active users within week one of deployment without operational downtime.
Core Languages :: Python (Low-level/C-API), Go, Modern TypeScript, Modern C++, POSIX Shell
Forensics & DFIR :: Volatility 3, Autopsy, EVTX Log Parsers, Prefetch Carvers, YARA, Ghidra, FTK
Security Engineering :: Wireshark, Burp Suite Pro, Nmap, OWASP ASVS Baselines, Sysmon/SIEM, MITRE ATT&CK
Infrastructure/Cloud :: Docker, Kubernetes, Linux Internals (eBPF, nftables), GitHub Actions CI/CD
Applied Cryptography :: AES-GCM-256, ChaCha20-Poly1305, Ed25519, PBKDF2/Argon2id, Envelope Encryption
π Flagship Platform: amoudiapp
Enterprise Web-to-Native Mobile Application Compiler (iOS & Android APK/IPA).
- Capabilities: Transforms any responsive web application (e.g.
www.softelv.com) into production-ready iOS (Swift / WKWebView) and Android (Kotlin / Jetpack) projects ready for the App Store & Google Play. Features native pull-to-refresh, smart external URL routing, hardware acceleration, safe-area adaptation, and automated asset generation. - Stack: Kotlin, Swift, TypeScript (CLI Engine), Python (FastAPI Build Server), Docker.
- β‘ ast-recon-go (Go / Golang): High-throughput concurrent HTTP probing & asset discovery engine using asynchronous goroutine worker pools.
- βοΈ cloud-iam-sentinel (TypeScript / Node.js): Multi-Cloud IAM policy security auditor & privilege escalation detector (evaluating AWS/GCP/Azure against CIS benchmarks).
- π‘οΈ ebpf-kernel-tracer (C / Linux Kernel): Real-time Linux runtime security observability using eBPF probes to detect container breakouts and root execution.
- π¬ packet-dissector-cpp (Modern C++20): Zero-copy wire-speed network packet dissector and deep packet inspection (DPI) protocol analyzer.
- π zero-trust-vault (Python / FastAPI / Docker): Enterprise Secret Enclave implementing NIST-compliant Envelope Encryption (DEK/KEK) with Merkle-chained tamper-evident audit logs.
- π orensic-evidence-toolkit (Python / DFIR): Forensic triage suite with Windows Security & Sysmon log correlation (brute-force, persistence), magic byte file carving, and ISO/IEC 27037 chain-of-custody.
- π‘οΈ sentinel-threat-hunter (Python / Sockets): Zero-dependency Attack Surface Management (ASM) engine with multi-threaded port scanning, OWASP security headers grading, and CORS misconfiguration detection.
- π― οΏ½pi-fuzz-hunter (Python): Automated REST & GraphQL vulnerability fuzzing framework targeting the OWASP API Security Top 10 (BOLA/IDOR, SQLi, JWT alg:none). \n## π Security Disclosures & Vulnerability Research
All security research is conducted strictly under Coordinated Vulnerability Disclosure (CVD) frameworks:
| Year | Target / Ecosystem | Impact Area | Status |
|---|---|---|---|
| 2024 | Apple Systems | Authentication / Service Boundary Logic | Disclosed & Mitigated |
| 2024 | Media Infrastructure | High-volume DDoS & Injection Vectors | Hardened & Remediated |
| 2023 | EdTech Platform Architecture | Broken Object Level Authorization (BOLA) | Patched in Production |
I host an open engineering community right here on GitHub for developers, researchers, and students to discuss technical challenges, share tools, and ask questions:
- π’ Announcements & Releases : Latest open-source releases, research disclosures, and tool updates.
- π‘ Ask Me Anything (AMA) & Technical Q&A : Get direct answers on cybersecurity architectures, digital forensics (DFIR), and mobile compiler engineering (
AmoudiApp). - π Ideas & Feedback : Request new features or suggest tools for me to build and publish.
π Click here to Enter the Community Forum & Discussions
- Direct / Encrypted Channel:
+962 782 944 681(WhatsApp / Signal) - Secondary Phone:
+962 782 932 611 - Email:
ahmad.muntaser.tech@gmail.com - Location: Amman, Jordan π―π΄