π― Hands-on experience in penetration testing, vulnerability assessment, and incident response.
π Authored a real-world ransomware attack case study for a healthcare facility, resulting in permanent data loss due to RSA encryption and backup failure.
π‘ Skilled in translating technical findings into executive-level remediation plans (offline backup, EDR, SIEM, network segmentation).
π Public case study: Healthcare Ransomware IR Report
π Public case study: cPanel Security Audit Framework/ Scanner
π Offensive Security
Burp Suite, Metasploit, Nmap, OWASP ZAP, OpenVAS, Nessus
π‘οΈ Incident Response & Forensics
Ransomware Analysis (RSA encryption), Forensic Evidence Collection (Event Logs, memory artifacts), Malware Binary Handling, Backup Policy Review (3-2-1-1 rule)
π Security Operations
SIEM (Splunk, Wazuh concepts), EDR (Endpoint Detection & Response), Network Segmentation, MITRE ATT&CK (T1486 β Data Encrypted for Impact)
π» Programming & Scripting
Python, Bash, PowerShell, SQL
π Frameworks & Standards
OWASP, NIST SP 800-61 (Incident Response), ISO 27001
Repo: github.com/aminulislamfahim/ransomware-ir-case-study-healthcare
- Authored a complete IR report for a 200+ endpoint hospital facing a bear26.exe ransomware attack that caused permanent data loss across 7 core clinical systems.
- Identified architectural failures: Windows Server 2012 (EOL), no antivirus, no network segmentation, Windows trusted authentication alone, and overwrite-only backup that destroyed the last clean copy.
- Provided 3-tier remediation roadmap (Immediate / 3β6 months / Long-term) including offline immutable backups (3-2-1-1), EDR deployment, SIEM (Splunk/Wazuh), and vendor-side software changes (separate app login, versioned backups).
- Demonstrated forensic evidence collection from compromised host (Event Logs, Task Manager snapshots, malware binary preservation).
Repo: https://github.com/aminulislamfahim/cpanel-malware-scanner.git
-Developed a Bash-based security toolkit to assist administrators in auditing WordPress hosting environments and identifying suspicious filesystem artifacts cross WHM/cPanel servers.
-
Automated large-scale WordPress inventory and audit workflows across WHM/cPanel servers, reducing manual audit time by 40β50% and improving consistency of security reviews.
-
Designed a configurable architecture with signature and whitelist support, enabling scalable security assessments and streamlined incident response workflows
- Solved over 100 challenges on PicoCTF, Hack The Box, and TryHackMe.
- Specialized in reverse engineering, cryptography, and web exploitation.
- Improved team rankings and contributed to community-based CTF learning initiatives.
Bachelor of Science in Computer Science and Engineering
Bangladesh University of Business and Technology (BUBT)
Feb 2018 to Dec 2024
- Penetration Testing: Advanced Penetration Testing, Offensive Penetration Testing, Mobile App Security (Cybrary)
- Systems Security: SSCP, Cisco IT Security Makeover, End User VPN Security (Cybrary)
- Other Technical Skills: Computer Hacking and Forensics, Intermediate SQL (Cybrary)
-
President, BUBT IT Club (Nov 2022βAug 2023):
Managed a team of 80+ members, organized 20+ technical events, and grew membership by 50%. -
Volunteer Mentor:
Guided 20+ students in penetration testing and career development, increasing community CTF rankings by 20%.
- LinkedIn: linkedin.com/in/aifaminul
- GitHub: github.com/aminulislamfahim
- Email: aminulislamfahim1@gmail.com