
Yosef Mostef
@yosefmostef
I uncover web, API, Android, network, and Active Directory vulnerabilities through hands-on penetration testing and bug bounty research.
What I'm looking for
At Inspectiv, I discover and responsibly disclose real-world web application vulnerabilities, including logic errors, race conditions, and broken access control flaws. I assess authentication, session management, and access controls through structured black-box and grey-box testing guided by the OWASP Top 10.
I build Python and Bash reconnaissance scripts for subdomain enumeration and endpoint discovery, and write reproducible vulnerability reports with proof-of-concept steps and CVSS-aligned severity ratings. I'm ranked in the top 1% globally on TryHackMe and hold Pro Hacker status on Hack The Box.
Experience
Work history, roles, and key accomplishments
Bug Bounty Researcher
Inspectiv
Feb 2026 - Present (7 months)
Discovered and responsibly disclosed multiple real-world vulnerabilities including logic errors, race conditions, and broken access control flaws across in-scope web applications. Conducted structured black-box and grey-box assessments targeting authentication flows, session management, and access-control enforcement using OWASP Top 10 methodology.
Education
Degrees, certifications, and relevant coursework
Zagazig University
Bachelor of Spanish Literature, Spanish Literature
2024 -
Pursuing a Bachelor of Spanish Literature at Zagazig University, expected to graduate in May 2028.
TryHackMe
Red Team Learning Path, Red Team
Completed the Red Team Learning Path from TryHackMe.
TryHackMe
CompTIA PenTest+ Learning Path, Penetration Testing
Completed the CompTIA PenTest+ Learning Path from TryHackMe.
Cybrary
OSINT Basics, OSINT
Completed the OSINT Basics course from Cybrary.
TryHackMe
Jr Penetration Tester Learning Path, Penetration Testing
Completed the Jr Penetration Tester Learning Path from TryHackMe.
Almentor
CRTA (Certified Red Team Analyst), Red Team
Completed the CRTA (Certified Red Team Analyst) certification.
TryHackMe
Web Fundamentals, Web Security
Completed the Web Fundamentals learning path from TryHackMe.
TryHackMe
Pre-Security Learning Path, Security Fundamentals
Completed the Pre-Security Learning Path from TryHackMe.
Cybrary
Offensive Security Operations, Offensive Security
Completed the Offensive Security Operations course from Cybrary.
Cybrary
Reconnaissance & Enumeration Basics, Reconnaissance
Completed the Reconnaissance & Enumeration Basics course from Cybrary.
Cybrary
The Cyber Kill Chain, Cyber Kill Chain
Completed The Cyber Kill Chain course from Cybrary.
Mobile Hacking Lab
CAPT prep course, Mobile Security
Completed the CAPT prep course from Mobile Hacking Lab.
Availability
Location
Authorized to work in
Salary expectations
Skills
Interested in hiring Yosef?
You can contact Yosef and 90k+ other talented remote workers on Himalayas.
Message YosefGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
