Asma Neji

Insights on cybersecurity, threat intelligence, AI in networks, telecom security, and more.

Security Reports & Writeups

(Click a card to read the full report or write-up)

Bug Bounty Report – crAPI

Severity: Critical • Date: 2025

Discovered multiple vulnerabilities in crAPI with different impact. Full report includes PoC, remediation steps, and bounty details.

Read Full Report →

Penetration Test Report – 2Million machine on HTB

Date: 2026

Comprehensive external/internal pentest with OSINT, scanning, exploitation, and post-exploitation phases. Key vulnerabilities and remediation recommendations included.

Read Full Pentest Report →

Penetration Test Report – Card machine on HTB

Date: 2026

Comprehensive external/internal pentest with scanning, exploitation, and post-exploitation phases. Key vulnerabilities and remediation recommendations included.

Read Full Pentest Report →

Latest Articles

Automated Artifact Correlation in Incident Response

May 2026 • DFIR • CTI

Reducing MTTR through automated correlation of forensic artifacts with global threat intelligence.

Read Full Article →

Malware Lineage: Using ML to Map "Code DNA"

Apr 2026 • Threat Intelligence

How Function Call Graphs and Graph Neural Networks help attribute malware to APT groups.

Read Full Article →

CTI-Driven Memory Forensics: Detecting Fileless Malware

Mar 2026 • Forensics

Using Cyber Threat Intelligence with Volatility 3 to detect fileless malware and Living-off-the-Land techniques.

Read Full Article →

How to Conduct a Full LLM Security Audit

Feb 2026 • LLM Security

A practical 5-phase Red Team methodology for auditing enterprise LLM deployments.

Read Full Article →

The New Frontier of OWASP Top 10 for LLMs

Jan 2026 • LLM Security

Agentic risks, Excessive Agency, RAG poisoning, and the 2026 evolution of LLM security threats.

Read Full Article →

The GRC of Sovereign AI Clouds

Dec 2026 • AI Governance

Governance, Risk, and Compliance strategies for using Generative AI while maintaining strict data sovereignty.

Read Full Article →

Adversarial Machine Learning in SecOps

Dec 2026 • AI Security

How attackers poison and evade AI models (XGBoost, Isolation Forest) used in modern SOCs and how to build Robust AI.

Read Full Article →

Quantum-Enabled Malware and AI

Nov 2026 • Quantum • AI

The 10x acceleration of vulnerability discovery and adaptive malware through Quantum Machine Learning (QML).

Read Full Article →

Quantum Attacks on 5G Protocols

Oct 2026 • Quantum Security

Technical deep dive into how Shor’s and Grover’s algorithms threaten 5G Core signaling, 5G-AKA, and key exchange mechanisms.

Read Full Article →

Harvest Now, Decrypt Later (HNDL)

Oct 2026 • Quantum Security

The temporal risk to long-term data confidentiality in telecommunications. How adversaries are harvesting encrypted traffic today for future quantum decryption.

Read Full Article →
View All Articles →