Abed Rahman Shurrab

Security researcher · bug bounty hunter

I focus on web application security — finding and reporting vulnerabilities in web apps and APIs, and reconnaissance at scale. Before security I spent a decade in production IT and banking-systems engineering, which shapes how I find and explain flaws in real financial systems.

About

I’m Abed Rahman Shurrab, a security researcher and bug bounty hunter. My work centers on web application security — finding and reporting vulnerabilities across web apps and APIs, together with wide-scope reconnaissance to map where those weaknesses live. A decade in production IT and banking-systems engineering gives me real-world context for finding and clearly explaining flaws in financial platforms.

Focus areas

  • Web application and API security testing
  • Authentication and authorization logic
  • Reconnaissance and attack-surface mapping at scale
  • Financial-services and fintech platforms

Experience

Digital Zone Smartnet Co. LtdIT & Banking Solutions Engineer · 2016–present Monitor banking-system performance, coordinate with banks and vendors on service delivery, and handle urgent issues and outages under pressure. Track project milestones and prepare technical reports on system performance and risk.

EMCC / GRCNetwork / System Administrator · 2014–2016

Future Information TechnologyProgrammer · 2011–2013

International Computer CenterTechnical / Maintenance · 2006–2009

Education & certifications

  • BSc, Computer Science — Al-Azhar University (2006)
  • Microsoft Certified Application Developer (MCAD)
  • Implementing Microsoft Azure Infrastructure Solutions — GIZ / PITA (2016)
  • ITIL v3 Foundation in IT Service Management — AXELOS (2018)

Writeups

  • How AI agents actually read your website
  • Welcome — what this site is

View all posts →

Contact

The best way to reach me is by email.

Email: [email protected]