Skip to main content
YM
Looking for a job

Yosef Mostef

@yosefmostef

I uncover web, API, Android, network, and Active Directory vulnerabilities through hands-on penetration testing and bug bounty research.

Egypt
Message

What I'm looking for

I'm looking to deepen my work in penetration testing, bug bounty research, and red team operations, where I can identify real-world vulnerabilities, automate reconnaissance, and deliver clear remediation guidance.

At Inspectiv, I discover and responsibly disclose real-world web application vulnerabilities, including logic errors, race conditions, and broken access control flaws. I assess authentication, session management, and access controls through structured black-box and grey-box testing guided by the OWASP Top 10.

I build Python and Bash reconnaissance scripts for subdomain enumeration and endpoint discovery, and write reproducible vulnerability reports with proof-of-concept steps and CVSS-aligned severity ratings. I'm ranked in the top 1% globally on TryHackMe and hold Pro Hacker status on Hack The Box.

Experience

Work history, roles, and key accomplishments

IN
Current

Bug Bounty Researcher

Inspectiv

Feb 2026 - Present (7 months)

Discovered and responsibly disclosed multiple real-world vulnerabilities including logic errors, race conditions, and broken access control flaws across in-scope web applications. Conducted structured black-box and grey-box assessments targeting authentication flows, session management, and access-control enforcement using OWASP Top 10 methodology.

Education

Degrees, certifications, and relevant coursework

Zagazig University logoZU

Zagazig University

Bachelor of Spanish Literature, Spanish Literature

2024 -

Pursuing a Bachelor of Spanish Literature at Zagazig University, expected to graduate in May 2028.

TryHackMe logoTR

TryHackMe

Red Team Learning Path, Red Team

Completed the Red Team Learning Path from TryHackMe.

TryHackMe logoTR

TryHackMe

CompTIA PenTest+ Learning Path, Penetration Testing

Completed the CompTIA PenTest+ Learning Path from TryHackMe.

Cybrary logoCY

Cybrary

OSINT Basics, OSINT

Completed the OSINT Basics course from Cybrary.

TR

TryHackMe

Jr Penetration Tester Learning Path, Penetration Testing

Completed the Jr Penetration Tester Learning Path from TryHackMe.

AL

Almentor

CRTA (Certified Red Team Analyst), Red Team

Completed the CRTA (Certified Red Team Analyst) certification.

TryHackMe logoTR

TryHackMe

Web Fundamentals, Web Security

Completed the Web Fundamentals learning path from TryHackMe.

TryHackMe logoTR

TryHackMe

Pre-Security Learning Path, Security Fundamentals

Completed the Pre-Security Learning Path from TryHackMe.

Cybrary logoCY

Cybrary

Offensive Security Operations, Offensive Security

Completed the Offensive Security Operations course from Cybrary.

Cybrary logoCY

Cybrary

Reconnaissance & Enumeration Basics, Reconnaissance

Completed the Reconnaissance & Enumeration Basics course from Cybrary.

Cybrary logoCY

Cybrary

The Cyber Kill Chain, Cyber Kill Chain

Completed The Cyber Kill Chain course from Cybrary.

Mobile Hacking Lab logoML

Mobile Hacking Lab

CAPT prep course, Mobile Security

Completed the CAPT prep course from Mobile Hacking Lab.

Tech stack

Software and tools used professionally

Get matched with your dream remote job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan