Skip to content
View 0xsabry's full-sized avatar
🔎
investigate
🔎
investigate

Highlights

  • Pro

Block or report 0xsabry

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
0xsabry/README.md

Mohamed Sabry Hamdan

SOC Analyst · DFIR Specialist · Security Tool Developer · CTF Player

LinkedIn GitHub TryHackMe


About

SOC Analyst specializing in security monitoring, threat detection, and digital forensics. I build open-source security tools and contribute to the blue team community. Currently pursuing B.Sc. Information Technology at EELU while working in DFIR at DEPI and running Zero2Aura — a tech academy empowering the next generation of cybersecurity professionals.


🏢 Experience

Role Organization Period
🔍 Digital Forensics Investigator Digital Egypt Pioneers Initiative (DEPI) Jan 2025 – Present
🏗️ Founder & Trainer Zero2Aura — Next-gen tech academy (Cybersecurity, DFIR, Pentesting, Web Dev, Networking) · 11-50 employees · Remote Oct 2025 – Present
🛡️ Cyber Security IR Analyst Digital Egypt Pioneers Initiative (DEPI) Oct 2024 – May 2025
🔐 Cyber Security Intern The British University in Egypt (BUE) · ISO 21001 · On-site, Cairo Jul 2024
🌐 Translation & SEO Trainee Lingua Stochos (Scholarship) Aug – Nov 2025
🎯 Professional Development Be Ready Program Aug 2025

🎓 Education

B.Sc. Information Technology — Egyptian E-Learning University (EELU) · 2022 – 2026


🏆 Certifications

Certification Issuer
Threat Intelligence 101 with Cisco Talos Cisco Networking Academy
Certified Cybersecurity Educator Professional (CCEP) Red Team Leaders
Google Cybersecurity Professional Certificate Google
Security Operations Center (SOC) Cisco
Ethical Hacker Cisco Networking Academy
Introduction to Cybersecurity Cisco Networking Academy
Incident Handling & Response MaharaTech – ITIMooca
Pre Security TryHackMe
ISO 31000 Risk Management Udemy
Critical Thinking & Problem Solving Alfaisal University

🛠️ Skills

Security & DFIR

SOC DFIR Threat Hunting Malware Analysis Incident Response Threat Intelligence Pentesting Vuln Assessment ISO 31000

Tools & Platforms

Splunk ELK Wazuh Wireshark Kali Autopsy FTK Hashcat Volatility TryHackMe

Forensics

Disk Imaging Memory Forensics Mobile Forensics Network Forensics

Programming

Python SQL Java Bash Linux Windows


🚀 Projects

🛡️ ThreatScope v3.0.0

Advanced log analysis and threat detection engine.

115+ detection rules · 97 MITRE ATT&CK techniques · STIX 2.1 export · Sigma rule support · CLI + GUI · File integrity hashing

Python GitHub Actions

📋 IR Report Generator

Browser-based incident response report platform.

40+ security tools · MITRE ATT&CK mapping · IOC auto-extraction · Timeline builder · PDF/JSON export · Zero dependencies

HTML5 JavaScript


📜 Phishing IR Framework

Developed a 22-page Phishing Incident Response Framework covering the full 6-phase response cycle, email header analysis (SPF/DKIM), malware sandboxing, Splunk SIEM integration, and MITRE ATT&CK / NIST 800-61 alignment.


📊 Stats


LinkedIn

Popular repositories Loading

  1. ThreatScope ThreatScope Public

    Advanced Log Intelligence & Threat Detection Engine - 115+ rules, 97 MITRE ATT&CK techniques, STIX 2.1 export, Sigma support, CLI + GUI

    Python

  2. IR-Report-Generator IR-Report-Generator Public

    Incident Response Report Platform - Aggregate 40+ security tool findings (SIEM, EDR, IDS, WAF) into professional IR reports with MITRE ATT&CK mapping

    HTML

  3. 0xsabry 0xsabry Public

    My GitHub Profile - SOC Analyst, DFIR, 10 Certifications, 14K+ LinkedIn Followers, Security Tool Developer

  4. 0xsabry.github.io 0xsabry.github.io Public

    Mohamed Sabry Hamdan — SOC Analyst & DFIR Specialist Portfolio

    HTML