Portfolio of Ethical Hacker

French Ethical Hacker currently seeking an apprenticeship in Cybersecurity. Specializing in secure development (Rust, Python, Assembly), penetration testing, and infrastructure security. Passionate about CTF competitions, with expertise in both offensive and defensive security techniques.

Learn More

Whoami

French Ethical Hacker, cybersecurity student, System & Network Administrator based in Paris, France. My expertise spans from user support to offensive security with a strong background in both Linux and Windows environments.

Currently pursuing a Master's degree in Cybersecurity, I balance academic knowledge with hands-on experience in SOC analysis, incident response, and penetration testing.

My core competencies include:

  • System and Network Administration (Linux & Windows)
  • SOC and Incident Analysis
  • Offensive Security and Penetration Testing
  • Security Intelligence Monitoring
  • Programming (Python, C, Rust)
  • Natural Language Processing (NLP)

I regularly participate in CTF competitions to sharpen my skills and share my knowledge through write-ups and blog posts. My approach to cybersecurity combines technical expertise with continuous learning and proactive threat intelligence.

Contact Me

Projects

In Development

RUST
Advanced Ransomware Development

Sophisticated ransomware with EDR and AntiVirus bypass capabilities developed for research and educational purposes.

RUST Malware Research
Assembly
AES Encryption in Assembly

Development of an Assembly program for encryption/decryption with IV and secret key generation for AES CBC mode (128, 192, and 256 bits).

Assembly Cryptography Low-level

Completed

RUST
Advanced AES Cryptographic System with Worm Capabilities

Encryption/decryption program that incorporates a computer worm, supporting AES CBC mode with 128, 192, and 256-bit keys, including key and IV generation.

RUST Cryptography AES-CBC
Hardware
Rubber Ducky Payload Development

Advanced DuckyScript coding and sophisticated payloads for security research and penetration testing scenarios.

DuckyScript Hardware Penetration Testing
Debian
GLPI Server Migration & Deployment

Deployment of Debian 12 server with GLPI web application, including data migration from old server and GLPI updates.

Debian GLPI System Administration Server Administration Network Administration
Disk LVM encrypt
Debian encyrpted partition LVM

Deployment of Debian (Arch Linux etc...) with LVM and encrypted partition

Debian Encrypt_LVM System Administration
IDS/IPS
Suricata

IDS/IPS deployment with Suricata on Debian server to check network trafic. Build with specific rules

Suricata BlueTeam SOC IDS/IPS Network Administration System Administration
SIEM
Wazuh

Network analyse. Deployement of Wazuh Server, Wazuh agent (Dashboeard, Manager, Master... Wazuh server cluster

WAZUH SIEM BlueTeam SOC
Assembly
Shellcode Development

Design and implementation of various shellcode techniques for systems research and security analysis.

Assembly Shellcode From-Low-to-High-level
C
Polymorphic Code Analysis

Development of polymorphic code techniques and analysis methodologies for security research.

C Low-level Security Research
Python
Hash Scraper

Focusing on finding hash (ciphertext) and his plaintext format.

Python Cryptography Digital Investigation

To see my public projects and contributions, check out my profiles:

GitHub Profile pwn.college Profile

Curriculum Vitae

Education

ESGI - Master's Degree in Information Security

Expert in System-Network Architectures and Computer Security - 2024-2026

ESGI - Bachelor in Information Security

Software and Network Project Manager - 2023-2024

INALCO - Dual Degree

Computer Science specializing in NLP and Turkish Language - 2020-2023

Professional Experience

Still-Link

January 2025 - April 2025

  • Cybersecurity Engineer
  • Rust Developer
  • Python Developer
  • Assembly Developer
  • Network Technician
  • Telecom Technician

System and Network Administrator - Paris

2023 - December 2024

  • User and Network Support Technician
  • Windows System and Network Administrator
  • Linux System and Network Administrator
  • SOC Analyst
  • Incident Analyst
  • Offensive Security Specialist
  • Security Intelligence Monitoring

1DWEB - Cybersecurity and Web Developer Intern

Paris, since 2023

Leisure Center Activity Leader

Paris, since 2020

Phone and Computer Repair, Sales

Since 2019

BELLE CREATION - Team Manager

2017-2018

Certifications & Technical Skills

Certifications

  • CCNA
  • Cisco Network Defense
  • Cisco Endpoint Security

CTF Platforms

  • TryHackMe
  • HackTheBox CTF
  • RootMe
  • Pwn.college
  • Participation in 404CTF 2023/4

Technical Skills

  • System-Network Administration (Linux & Windows)
  • Programming: Python3, C, Rust, x86 Assembly
  • Risk and vulnerability analysis
  • Penetration testing
  • Network routing and switching
  • Active Directory
  • WiFi security
  • NLP: SpaCy, NLTK, Unitex, Tropes
  • Data analysis: Pandas, scikit-learn

Languages

  • Turkish: Bilingual
  • English: Professional working proficiency
  • French: Native

Interests

  • Kung-Fu Wing-Chun (4 years, Black belt level)
  • Self-defense (6 years)
  • Sanda (kick-boxing & wrestling, 4-5 years)
  • Kung-Fu Wushu (11 years)

Blog & CTF WriteUps

I regularly share my discoveries, analyses, and CTF challenge solutions. As a cybersecurity enthusiast and participant in platforms like TryHackMe, HackTheBox, RootMe, and 404CTF, I document my learning journey and technical findings:

CTF
March 2024
PWN.COLLEGE Program Security (yellow belt)
Read More
BLOG
February 2024
Polymorphic Malware: Detection and Analysis

Technical deep dive into the mechanics of polymorphic malware, detection strategies, and modern analysis techniques based on my research and development experiences.

Read More
CTF
January 2024
HackTheBox CTF & Labs

Comprehensive guide to tackling challenges on HackTheBox, including Kerberoasting, BloodHound analysis, and lateral movement techniques.

Read More
TUTORIAL
December 2024
Setting Up a Secure Debian 12 Web Server

Step-by-step guide for deploying and hardening a Debian 12 server for web applications, with NGINX, TLS configuration, and security best practices.

Read More
View All Articles

Contact

Have a question or interested in collaborating on a project? Feel free to reach out. I'm always open to discussing cybersecurity challenges, CTF competitions, or potential opportunities.

Contact Information

Email: mustapha.hilaloglu@gmail.com

Location: Paris, Île-De-France

LinkedIn: linkedin.com/in/Mustapha-hilaloglu

GitHub: github.com/Gordibus

Site Under Construction
More content and features coming soon!