packguard
Supply-chain malware scanner
Scans npm & PyPI packages for malicious code using local AI (Ollama), static analysis, and typosquatting detection — fully offline, no cloud.
- Python
- Ollama
- Static Analysis
- Security
Web security specialist and cybersecurity student from Morocco, currently studying at Dalian Polytechnic University. I focus on offensive security — penetration testing, web application security, vulnerability research, and CTF. I play with the Moroccan team Akasec and build security tooling and full-stack web apps on the side.
Supply-chain malware scanner
Scans npm & PyPI packages for malicious code using local AI (Ollama), static analysis, and typosquatting detection — fully offline, no cloud.
Self-hostable CTF platform
Flask web app for browsing archived CTF challenges, tracking events, writing writeups, and managing progress — with search, social messaging, bookmarks, and solves.
regreSSHion scanner
Concurrent scanner that checks hosts for the OpenSSH regreSSHion vulnerability (CVE-2024-6387). Supports IPs, domains, and CIDR ranges with version exclusion.
HSK Mandarin-learning PWA
Full-stack PWA with spaced-repetition (FSRS), grammar notes, mock exams, an AI tutor, and a leaderboard. React + FastAPI, containerized.
AI Discord bot
Gemini-powered Discord bot that manages servers, channels, and members through natural-language commands.
Security & CTF writeups
My blog of security research and CTF writeups — HackTheBox, TryHackMe, Root-Me, and competition challenges.