>_ HOSO.PUNK

— Press any key or click to skip —

Hoor Ul Ein Soomro

// Hello, World. I am

Hoor Ul Ein
Soomro

|

Offensive Security Specialist · SIEM & Threat Intelligence · DLP Expert · Open-Source Security Tool Developer

15+Projects
5Internships
10+Certifications
8+CTF Events
Scroll

About Me

I'm a BS Cybersecurity student at Air University, Pakistan (2023-2027), specializing in offensive security, SIEM solutions, and digital forensics. My passion is securing systems, detecting threats, and building open-source security tools that make a difference.

I've completed multiple cybersecurity internships across Red Team operations, SIEM engineering, DLP solutions, digital forensics AI research, and security fundamentals training. I've built 15+ open-source cybersecurity tools including payload generators, forensic acquisition systems, reconnaissance toolkits, and threat intelligence platforms.

My internship experience spans penetration testing, SIEM dashboard development, DLP policy management, threat intelligence analysis, and AI-driven forensic research. I've worked with technologies including Wazuh, Forcepoint DLP, AlienVault OTX, Python exploitation frameworks, and various security automation tools.

Outside internships, I actively compete in CTFs (FAST CyberFest, ByteBotSec, SOFTEC), contribute to open-source security projects on GitHub, and stay current with emerging threats and attack vectors through continuous research and hands-on practice.

Penetration Testing SIEM DLP Digital Forensics Threat Intelligence Incident Response CTF Player

Experience

Security Intern
DEVLOGIX
Aug 2026 – Oct 2026 (3 months) Remote
  • Learning Experience: A structured, hands-on program focused on security fundamentals, threat analysis, vulnerability assessment, and secure system design
  • Real Projects: Work on real security challenges including vulnerability assessments, security audits, and implementing protective measures for live systems
  • Mentorship: Dedicated mentors to guide you through security frameworks, incident response procedures, and industry compliance standards
Security Fundamentals Threat Analysis Vulnerability Assessment Security Audits
Summer Intern
NCSA (National Centre for Cyber Security)
Jul 2026 – Aug 2026 (1 month) Onsite
  • Currently working on Digital Forensics and Artificial Intelligence (AI) applications in security research
  • Contributing to AI-driven forensic analysis methodologies and dataset development
  • Collaborating with security researchers on machine learning models for forensic artifact detection
Digital Forensics AI/ML Security Research
Red Team Intern
ITSOLERA PVT LTD
Jun 2025 – Aug 2025 (3 months) Remote
  • Conducted penetration testing on web applications, identifying critical vulnerabilities (SQLi, XSS); developed custom exploitation scripts in Python and Bash
  • Contributed to PayloadGen (payload generator with WAF evasion) and FizzUp (reconnaissance toolkit with passive/active scanning, Docker automation)
  • Researched and developed CVE proof-of-concept exploit in controlled lab; gained practical experience in vulnerability research and exploit development
  • Delivered technical security reports with remediation steps; enhanced leadership and collaboration through project coordination
Penetration Testing Red Team Exploit Development Python CVE Research
Information Security Intern (DLP & Solution Team)
Trillium Information Security Systems (TISS)
May 2025 – Jul 2025 (3 months) Hybrid
  • Completed CompTIA Security+ training certification track
  • Learned Forcepoint DLP operations: data classification, policy enforcement, endpoint monitoring, and discovery tasks
  • Gained exposure to AlienVault OTX threat intelligence and networking essentials (OSI, TCP/IP, routing, switching)
DLP (Forcepoint) CompTIA Security+ Network Security Threat Intelligence AlienVault OTX
SIEM Intern
NCCS (National Centre for Cyber Security)
Jun 2024 – Sep 2024 (4 months) Remote
  • Developed a working SIEM dashboard using Wazuh for real-time security event visualization, log correlation, and incident monitoring
  • Correlated firewall, endpoint, and network logs to identify malicious activity patterns and configured custom alerting rules
  • Designed interactive dashboards to present security metrics and operational trends for analysis
  • Gained practical experience in log collection, data parsing, event correlation, and security monitoring workflows
  • Collaborated with team on understanding SIEM platforms (ELK Stack, Wazuh, Kibana, Splunk) for threat detection and incident response
  • Developed teamwork, communication, and collaboration skills in a multidisciplinary cybersecurity environment
SIEM (Wazuh) Log Analysis Threat Detection Kibana Splunk ELK Stack

Projects

FEAS (Forensic Evidence Acquisition System)

Digital Forensic Acquisition Platform

Digital forensic acquisition platform with SHA-256 hashing, chain-of-custody reporting, and evidence integrity verification for forensic investigations.

Python SHA-256 Chain-of-Custody

Fizzup-recon-toolkit

Advanced Reconnaissance Toolkit

Advanced reconnaissance toolkit automating passive & active information gathering, technology fingerprinting, subdomain enumeration, and report generation using Python and Docker.

Python Docker OSINT Recon

Zentryx

PostgreSQL Security Middleware & SOC Dashboard

Inspects SQL queries pre-execution, blocks dangerous commands, fingerprints approved query templates, and visualizes query risk context for analysts.

PostgreSQL Python SOC SQL Security

CortexCLI

Cybersecurity Command-Line Toolkit

Comprehensive CLI toolkit for security automation and security-focused operations including reconnaissance, exploitation, and post-exploitation modules.

Python CLI Automation

ThreadSleuth

High-Performance Forensic Tool

C++ multithreading-based forensic tool to analyze disk images in parallel, dramatically reducing analysis time for large forensic datasets.

C++ Multithreading Forensics

ReconX & RedHawkx

Custom Reconnaissance CLI

Advanced CLI tools for passive/active information gathering, banner grabbing, subdomain enumeration, and target profiling for penetration testing engagements.

Python Bash OSINT

Distributed DNS System

Scalable DNS Architecture Research

Implementation-focused project exploring scalable DNS architectures, load balancing, and distributed systems for understanding network infrastructure at scale.

Python DNS Distributed Systems

Voice Assistant Project

Python Voice Assistant

Python-based voice assistant using speech recognition and text-to-speech (TTS) automation for hands-free task execution and command control.

Python Speech Recognition TTS

Skills

Penetration Testing

Burp Suite Metasploit Nmap SQLMap Hydra Cobalt Strike Web App Testing Network Testing Social Engineering

Security Operations

SIEM (Wazuh, Splunk) Log Analysis Incident Response Threat Hunting Forcepoint DLP AlienVault OTX SOC Workflows

Digital Forensics

Volatility Sleuth Kit FTK Imager Memory Forensics Disk Analysis Network Forensics Artifact Extraction

Programming & Scripting

Python Bash PowerShell JavaScript SQL C/C++ Go

Databases & Datasets

SQL PostgreSQL MySQL Neo4j MongoDB Dataset Analysis Data Modeling Query Optimization

Networking

TCP/IP OSI Model Wireshark VPNs Firewalls IDS/IPS DNS Routing & Switching

Systems & Infrastructure

Linux (Kali, Ubuntu) Windows Server Active Directory Docker Kubernetes AWS Azure

Application Security

OWASP Top 10 XSS SQLi CSRF XXE SSTI Secure Code Review SAST/DAST

Security Tools

Nessus OpenVAS OWASP ZAP John the Ripper Hashcat Aircrack-ng Nikto Maltego

Certifications

Certified Threat Intelligence Analyst

arcX (Foundation Level)

May 2026

CompTIA Security+ (Training Completed)

TISS Internship Program

2024

Ethical Hacking MasterClass

Hacker Utd

Jul 2025

TISS DLP & SOC Security Training

Trillium Information Security Systems

2024

OSINT'10 Workshop & CTF

Blistorm

Aug 2024

GitHub & Version Control Workshop

Dr. Coders

Aug 2024

Tryna Bootcamp

48-Hour AI Security Hackathon

2024

SOFTEC Cybersecurity Competition

Participant

Feb 2024

Digital Pakistan Cybersecurity Hackathon

Participant

Oct-Nov 2023

ByteBotSec CTF

Participant

Sep 2025

Achievements

FAST CyberFest Hackathon

Participant — IoT & Cybersecurity Track (2024)

3rd Place — Scavenger Hunt

Air University Cyber Skills Club (Team TrillBuzz)

Blog

I write about penetration testing techniques, security research, CTF writeups, and emerging threats on Medium. Here are my latest articles:

Loading articles...

Contact

Interested in collaborating on security research, hiring for an internship or full-time role, or discussing penetration testing projects? Let's connect. I'm always open to new opportunities and challenges in cybersecurity.