Skip to content
View Anas-Nady's full-sized avatar

Block or report Anas-Nady

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Anas-Nady/README.md

Hi, I'm Anas πŸ‘‹

About Me

I am an Offensive Security Engineer and Penetration Tester with a strong foundation in Full Stack Web & Mobile Development. I specialize in identifying critical security flaws in complex systems, while also possessing the expertise to build secure, scalable applications from the ground up.

My expertise includes:

  • πŸ›‘οΈ Offensive Security: Web & Mobile Application Penetration Testing, Vulnerability Assessment, and Bug Bounty Hunting (OWASP Top 10, XSS, IDOR, SQLi, etc.).
  • πŸ’» Full-stack Development: Building robust applications with MERN (MongoDB, Express.js, React, Node.js), Next.js, and React Native.
  • 🐦 Backend Engineering: Creating scalable, secure architectures with NestJS, Prisma, and PostgreSQL.

πŸš€ Career Beginnings & Key Projects

I started my career as a Web and Mobile Developer, where I built foundational products and honed my software engineering skills. During this time, I:

  • Developed Way2Quran.com and the Way2Quran Mobile App, one of the largest Quran platforms, using the MERN stack and React Native.
  • Built CVSender Afaq, a full-stack platform utilizing Prisma and modern web technologies to streamline professional processes.
  • Strengthened my algorithmic thinking and problem-solving fundamentals by solving 400+ problems on LeetCode.

πŸ† Security Achievements

As a dedicated White Hat Hacker and Security Researcher, I actively participate in bug bounty programs and have a proven track record of finding and responsibly disclosing critical vulnerabilities:

  • 🍎 Apple Hall of Fame (HOF): Recognized 4 times (February, May, July, and August 2026).
  • πŸ’₯ HackerOne & Self-Hosted Programs: Numerous accepted reports and validated vulnerabilities across major tech giants and enterprise organizations.
  • 🌐 Other Notable Mentions: Amazon and various other enterprise organizations.

Skills

  • Security: Web & Mobile Penetration Testing, Vulnerability Assessment, Bug Bounty Hunting, Secure Code Review.
  • Frontend: React, Next.js, React Native, Tailwind CSS.
  • Backend: Node.js, NestJS, Express.js.
  • Database & ORM: MongoDB, PostgreSQL, Prisma.
  • Languages: JavaScript, TypeScript.
  • Problem Solving: 400+ problems solved on LeetCode.

Get in Touch

Popular repositories Loading

  1. way2quran.com way2quran.com Public

    A diverse Quran website featuring recitations by various Qaris. Offers downloadable audio clips for offline listening

    TypeScript 2

  2. greenline greenline Public

    It's created and developed using Next.js for both frontend and backend, with MongoDB integration, styled with Tailwind CSS, and built with TypeScript.

    TypeScript 1

  3. way2quran.com-nestjs way2quran.com-nestjs Public

    A diverse Quran website featuring recitations by various Qaris. Offers downloadable audio clips for offline listening

    TypeScript 1

  4. schedules-generator schedules-generator Public

    Generate all possible schedules for your subjects with ease.

    TypeScript 1

  5. way2quran-app way2quran-app Public

    A diverse Quran App featuring recitations by various Qaris. Offers downloadable audio clips for offline listening

    TypeScript 1

  6. Path_Learning Path_Learning Public

    A site that contains all the paths to learn programming

    HTML