Hello, I'm

Hussain Alsharman

Security researcher in my free time

Riyadh, Saudi Arabia

Software engineer who loves building clean, scalable systems across frontends, backends, and lower-level work. In my free time I enjoy testing the limits of systems — bug bounties and small security tools.

0stars across public repos

Areas of Expertise

Full-Stack Development

Modern web apps end to end, from UI to data layer

Backend & Systems Engineering

APIs, services, performance, and lower-level work

Mobile Development

Cross-platform mobile applications

Security Research

Bug bounty, custom tooling, and breaking things for fun

Professional Experience

Building expertise through real-world challenges and continuous growth

Information Systems Analyst (L1)

EJADA

Nov 2024 - PresentRiyadh, Saudi Arabia

Provided technical support and troubleshooting for IT systems, resolved user issues efficiently, maintained hardware, software, and network systems, and contributed to improving IT support procedures.

Penetration tester

HackerOne.com & BugBounty.sa

Nov 2024 - PresentONLINE

Identified and exploited web vulnerabilities such as XSS, SQL Injection, and LFI. Participated in bug bounty programs (HackerOne, BugBounty.sa), developed custom security tools, and assessed modern web applications, including WAF bypass techniques.

Full-stack developer

Freelance.com & Upwork.com

May 2023 - Apr 2024ONLINE

Designed and developed responsive websites and dynamic web applications with SQL databases. Delivered end-to-end front-end and back-end solutions for clients on Freelancer, Upwork, and Fiverr, including projects such as Easy Bus, LAMATNA, LMS, and BlogWebsite.

Education

Academic foundation in technology and security

Information Systems

Najran University

2019 - 2023

University major: Information Systems GPA:4.21 Graduation Project: Developed a website aimed at reducing traffic congestion through enhanced public transport utilization. I led a team of five students on this project. We used ASP.NET.

Certifications & Credentials

Professional certifications validating expertise

COBIT 2019 Foundation

ISACA

202493%

Enterprise IT governance and management framework covering principles and practices for achieving business objectives

Cyber Defense Program SOC L2

Tuwaiq Academy

2024

Advanced program in threat analysis, security incident response, and Security Operations Center management

eWPT - Web Application Penetration Tester

eLearnSecurity / INE

2024

Practical certification in web application penetration testing and discovering OWASP Top 10 vulnerabilities

Google Cybersecurity Certificate

Google

2023

Comprehensive program covering cybersecurity fundamentals, risk management, network security, and operating systems

IBM Cybersecurity Analyst Certificate

IBM

2023

Cybersecurity analyst certificate covering threat analysis, SIEM tools, and incident response

CCNA - Introduction to Networks

CISCO

2022

Networking fundamentals, OSI model, TCP/IP protocols, and network device configuration

Projects

Real-world applications demonstrating technical expertise

Personal Portfolio

Personal knowledge platform to showcase projects, experience, and certifications professionally with admin dashboard

Next.jsReactTypeScriptTailwind CSS+3

Lamatna

Local services marketplace connecting service providers with customers including rating and booking system

FlutterDartFirebaseNode.js+1

Library Management System

Comprehensive system for managing libraries, books, and borrowers with lending and notification system

ASP.NETC#SQL ServerEntity Framework+1
db158cb·Add files via upload2y ago
Python

Easy Bus

Transportation and bus management system for educational institutions with real-time vehicle tracking

FlutterDartFirebaseGoogle Maps API+1
a201858·Update README.md1y ago
1CSS
Trending

Penhunter

o A custom-built penetration testing tool designed to identify vulnerabilities such as XSS, SQL Injection, LFI, and more. o Features advanced payload encoding, multi-vulnerability checks, and a command-line interface for efficient scanning workflows. o Designed to simplify vulnerability detection with a focus on automation and precision.

GoRegexCLISecurity+1
1a3847e·docs(readme): add Screenshots section with LFI and XSS21d ago
28+36Go
Trending v0.7.5

JShunter

Command-line tool for analyzing JavaScript files and extracting endpoints. Identifies sensitive data and API endpoints, essential for bug bounty hunters and security researchers

GoRegexCLISecurity+1
1fc959c·Update README.md9d ago
517+760Go