fawzy Moawad

About

Fawzy Moawad

Ethical Hacker | Penetration Tester | Full-Stack Developer | WordPress Developer

I’m a cybersecurity professional and full-stack developer based in Vancouver, Canada. I specialize in offensive security, vulnerability assessment, and crafting secure, scalable web applications.

My cybersecurity journey evolved through CTF challenges and rigorous hands-on training, leading to my current focus as a Junior Penetration Tester. I’ve developed deep expertise in network exploitation, web application security, and protecting cloud environments using the OWASP Top 10 framework.

I utilize a specialized offensive toolkit for security auditing and vulnerability research, including:

  • 🛠️ Exploitation: Metasploit, SQLMap, & Burp Suite

  • 🔍 Reconnaissance: Nmap & Wireshark

  • 🔑 Credential Attacks: John the Ripper & Hydra

On the development side, I build full-stack applications using Node.js, React, and MySQL, alongside professional WordPress development for businesses. My passion is integrating secure coding practices with high-performance user experiences[cite: 4, 7, 13].

Outside of technology, I’m a lifelong learner, constantly expanding my skills through platforms like TryHackMe and University of Waterloo’s Secure Coding program.

Fawzy Moawad AKA

JackalNull

Pentesting & Cybersecurity Skills

Recon & Enumeration

Subdomain hunting and asset discovery using Amass, Shodan, and Nmap.

Network Scanning

Service fingerprinting and vulnerability scanning with Metasploit, Nmap, and Masscan.

Web App Penetration Testing

Advanced testing using Burp Suite, OWASP ZAP, and SQLMap following OWASP Top 10 standards.

Exploitation Techniques

Manual and automated exploitation of SQLi, XSS, and RCE vulnerabilities.

Vulnerability Research

Active participation in Bug Bounty programs through platforms like HackerOne and Bugcrowd.

Scripting & Automation

Exploit development, Bash scripting for automation, and crafting Python-based PoCs.

Development & Programming Skills

Python

JavaScript

Bash

Wireshark

Wireshark

Nmap

Burp Suite

John The Ripper

Metasploit

Metaspliot

Hydra

.st0{fill-rule:evenodd;clip-rule:evenodd;}

SQLMap

.st3{fill:#ccc}.st4{fill:#e6e6e6}

CyberChef

OWASP

OWASP

React

React

Node js

Git

MySQL

MySQL

Docker

Docker

WordPress

Linux

Windows

Mac OS

Education

🔐 Secure Coding

Certificate – University of Waterloo, Canada

Received a professional certificate in Secure Coding, specializing in vulnerability assessment and offensive security.
Focused on implementing OWASP Top 10 principles and conducting penetration tests using tools like CodeQL and Burp Suite to mitigate injection attacks and data exposure.
Mastered the Secure Development Lifecycle (SDLC), applying threat mitigation strategies to build resilient applications across Python, C, and JavaScript environments.

Diploma – Academy of Learning, Canada

Completed a comprehensive diploma in Full-Stack Development, acquiring advanced skills in frontend and backend architecture [cite: 52, 53, 56].
Developed expertise in building secure, responsive applications and custom WordPress solutions using React, Node.js, and MySQL.
Applied modern UI/UX design principles with Tailwind CSS and Bootstrap 5, while ensuring all deployments follow secure coding standards and agile methodologies[cite: 11, 24, 58].

Bachelor’s Degree – Helwan University, Egypt

Graduated with a Bachelor’s degree in Mixing & Mastering Music from Helwan University, Cairo, Egypt.
Mastered the art of audio engineering, music production, signal processing, and studio management.
Trained in both analog and digital sound systems, music arrangement, and mixing workflows used in professional production environments.

Bachelor’s Degree – Cairo University, Egypt

Earned a Bachelor’s degree in Egyptian Law from Cairo University, Giza, Egypt.
Studied comprehensive legal subjects including jurisprudence, civil and criminal law, constitutional systems, and Egyptian legal frameworks.
Developed strong critical thinking and legal analysis skills, applicable in understanding regulatory compliance and ethical standards in tech and business environments.

Professional Experience

🐞 Bug Bounty & Penetration Testing

2024 – Present
Remote | Junior Penetration Tester Path

  • Actively performing network security auditing and web application exploitation through the Junior Penetration Tester path on TryHackMe.

  • Identifying and reporting vulnerabilities such as SQLi, XSS, and RCE by applying OWASP Top 10 principles.

  • Utilizing an offensive security toolkit including Metasploit, Burp Suite, SQLMap, and Nmap for comprehensive vulnerability research.

  • Automating reconnaissance and enumeration workflows using Bash and Python scripts.

  • Conducting asset discovery and subdomain hunting using Amass and Shodan.

I develop custom hardware for wireless network auditing, focusing on Wi-Fi penetration testing and Bluetooth exploitation using SDRs and custom firmware. This hardware expertise complements my software vulnerability research, providing a 360-degree view of the attack surface.

2021 – Present
Vancouver, BC, Canada

I build secure, high-performance web applications and professional WordPress websites, integrating offensive security knowledge into the development lifecycle.

I develop dynamic frontends using React, Node.js, and Tailwind CSS, while specializing in custom WordPress solutions that are secure by design.

Security & Best Practices

Security is at the heart of my code. I leverage my University of Waterloo Secure Coding training to build applications resilient against common attack vectors[cite: 48, 50, 51]. Every project undergoes a mini-penetration test to ensure it meets OWASP safety standards before deployment[cite: 58].

  • Worked on mixing and mastering music tracks for independent artists, studios, and media productions.

  • Proficient in digital audio workstations (DAWs) including Pro Tools, Logic Pro, Ableton Live, and FL Studio.

  • Engineered vocals, instrumentals, and full compositions to achieve commercial-quality sound using advanced plugins and sound design tools.

  • Delivered projects across a range of genres including hip-hop, electronic, cinematic, and orchestral music.

  • Collaborated on film and television productions, assisting with on-set and post-production audio recording, dialogue editing, and sound design.

  • Ensured high-quality audio capture and synchronization for movies, TV shows, and commercial media projects.

  • Managed recording sessions, client feedback, and final exports for distribution across streaming platforms.

  • Built and maintained an online portfolio, developing long-term client relationships through social media and freelance platforms.

My Cybersecurity Profiles