
Tsegazeab Fikre
Addis Ababa, Ethiopia
Tsegazeab Fikre
ethical hacker and web app pen tester
Category : Cybersecurity
I am a pentester and Software Engineering student specializing in web application security, vulnerability assessment, and penetration testing.
I help individuals, startups, and organizations identify security weaknesses in their systems and improve their security posture through ethical security testing.
My experience includes:
• Web application security testing (OWASP Top 10)
• Vulnerability assessment and security analysis
• Manual penetration testing techniques
• Reconnaissance and enumeration using industry-standard tools
• Linux and Windows privilege escalation in controlled environments
• API and authentication security testing
• Security research and technical documentation
Tools and technologies I work with:
• Burp Suite
• Nmap
• Metasploit Framework
• Wireshark
• Hashcat
• John the Ripper
• Python scripting
• Linux environments
I have completed hands-on cybersecurity training through TryHackMe and PortSwigger Web Security Academy, where I practiced real-world security scenarios including SQL injection, XSS, authentication flaws, access control vulnerabilities, and exploitation techniques.
I also build custom security tools using Python, including vulnerability scanners and network discovery tools, helping automate security testing workflows.
My goal is to deliver clear security findings, practical recommendations, and well-documented reports that help clients understand and fix vulnerabilities.
I am always focused on ethical security practices, continuous learning, and providing reliable cybersecurity support.
I help individuals, startups, and organizations identify security weaknesses in their systems and improve their security posture through ethical security testing.
My experience includes:
• Web application security testing (OWASP Top 10)
• Vulnerability assessment and security analysis
• Manual penetration testing techniques
• Reconnaissance and enumeration using industry-standard tools
• Linux and Windows privilege escalation in controlled environments
• API and authentication security testing
• Security research and technical documentation
Tools and technologies I work with:
• Burp Suite
• Nmap
• Metasploit Framework
• Wireshark
• Hashcat
• John the Ripper
• Python scripting
• Linux environments
I have completed hands-on cybersecurity training through TryHackMe and PortSwigger Web Security Academy, where I practiced real-world security scenarios including SQL injection, XSS, authentication flaws, access control vulnerabilities, and exploitation techniques.
I also build custom security tools using Python, including vulnerability scanners and network discovery tools, helping automate security testing workflows.
My goal is to deliver clear security findings, practical recommendations, and well-documented reports that help clients understand and fix vulnerabilities.
I am always focused on ethical security practices, continuous learning, and providing reliable cybersecurity support.
Portfolio
Working hours
- Monday:08h00 To 18h00
- Tuesday:08h00 To 18h00
- Wednesday:08h00 To 18h00
- Thursday:08h00 To 18h00
- Friday:08h00 To 18h00
- Saturday:Not available
- Sunday:Not available
Please sign in as a customer to give your feedback




