File Nº 0x6D / Subject: m0rgxn
Local --:--:--
Personnel file / Offensive securityClassification: Public

Subject

m0rgxn

Top 5 · HTB Tunisia

Photo of m0rgxn
Fig. 1 — subject, photo on file

Junior penetration tester breaking Active Directory, web apps, and Azure for a living

↑ Hover the bars to declassify↑ Tap the bars to declassify

I'm Marouan, an engineering student @ ENIT specializing in offensive security. Currently ranked Top 5 nationally on HackTheBox, I enjoy tearing apart complex systems and turning what I find into practical offensive tooling.

Role
Junior Penetration Tester
Base
Tunis
Languages
English / French / Arabic
Status
Active
Open the full file
§ 02 — Field notes12 files · View all →

Exhibits


Exhibit L · 04 Sept 2026

SQL Injection

PortSwigger Web Security Academy notes on detecting and exploiting SQL injection, from UNION attacks to blind and out-of-band techniques

Filed
Exhibit K · 18 Aug 2026 · Azure Security

Modeling Managed-Identity Privilege Escalation as an Attack Graph

A framework for treating Azure managed-identity abuse in hybrid Entra ID environments as a graph-reachability problem. I define the node and edge types, ground each edge in Azure RBAC semantics, show how my tool Fenrir uses the model to answer one question conservatively, and work through a case study in my own lab. Framework and systematization, not an empirical study.

Filed
§ 03 — End of summary

The rest is in the personnel file.

Continued