HANA FEYZ
|

Hana Feyz

Ethical Hacker · Bug Hunter · Full Stack Developer

Hana Feyz
Scroll
✦ Python ✦ ✦ Burp Suite ✦ ✦ OWASP Top 10 ✦ ✦ Kali Linux ✦ ✦ Django ✦ ✦ Docker ✦ ✦ React ✦ ✦ Metasploit ✦ ✦ API Security ✦ ✦ Red Teaming ✦ ✦ Python ✦ ✦ Burp Suite ✦ ✦ OWASP Top 10 ✦ ✦ Kali Linux ✦ ✦ Django ✦ ✦ Docker ✦ ✦ React ✦ ✦ Metasploit ✦ ✦ API Security ✦ ✦ Red Teaming ✦
✦ Security is not a product, it's a process ✦ ✦ The only secure system is one that is powered off ✦ ✦ Hackers see what others don't ✦ ✦ Trust but verify — Zero Trust mindset ✦ ✦ Encryption is not magic, it's math ✦ ✦ Your data is only as safe as your weakest link ✦ ✦ Security is not a product, it's a process ✦ ✦ The only secure system is one that is powered off ✦ ✦ Hackers see what others don't ✦ ✦ Trust but verify — Zero Trust mindset ✦ ✦ Encryption is not magic, it's math ✦ ✦ Your data is only as safe as your weakest link ✦

Knowing the threat is the first step to security

Hana Feyz

Hi 👋 I'm Hana Feyz

A cybersecurity researcher and full stack developer passionate about bug hunting, web security, and resilient system architecture. I believe real security happens when development and security are intertwined — not as an afterthought, but as a foundation.

With years of hands-on experience in penetration testing, vulnerability research, and building secure applications, I help organizations find their blind spots before attackers do.

0+ Vulnerabilities Found
0+ Years Experience
0+ Courses Launched
0+ Articles Published

Where my skills live

🛡️

Web Security

Expert
OWASPXSSSQLiCSRFSSRF
🔓

Penetration Testing

Advanced
Burp SuiteMetasploitNmapKali
💻

Development

Advanced
PythonDjangoReactJSDocker
☁️

Cloud & Infrastructure

Advanced
AWSDockerLinuxCI/CD

Every project is a security challenge

PythonDjangoDocker

VulnScan Platform

Automated security vulnerability scanner for web applications with intelligent reporting.

ReactNode.jsJWT

SecureAuth System

Multi-layer authentication with 2FA, OAuth 2.0, and advanced encryption at rest.

PythonMLAPI

ThreatIntel Analyzer

Cyber threat intelligence platform using ML to identify attack patterns and zero-days.

Sharing security knowledge with the world

OWASP Top 10Web Security

OWASP Top 10 2024 — Full Deep Dive

An exhaustive breakdown of the 10 most critical web application security risks and how to defend against each one.

Jun 15, 20268 min read
SQL InjectionWeb Security

Modern SQL Injection: Techniques & Defense

From classic injection to advanced time-based and out-of-band techniques.

May 28, 202612 min read
Burp SuitePentest

Burp Suite Professional: Zero to Hero

Complete guide to Burp Suite for professional penetration testing.

May 10, 202615 min read
API SecurityDevelopment

REST & GraphQL API Security Best Practices

Designing resilient APIs with proper authentication, rate limiting, and input validation.

Apr 20, 202610 min read

Learning security is an investment in the future

Advanced Web Security
Premium
Intermediate12 hours24 lessons

Advanced Web Security

From OWASP fundamentals to advanced exploitation with hands-on labs.

Bug Bounty
Free
Beginner6 hours12 lessons

Bug Bounty Essentials

Step into bug hunting — recon, vulnerability ID, and professional reporting.

Network Security
Premium
Advanced18 hours36 lessons

Network Security & Pen Testing

Master network security — scanning, exploitation, and post-exploitation.

What others say

Ready for collaboration

Please enter your name
Please enter a valid email
Please write your message