Haitam Lazaar
Vulnerability Discovery · Linux Kernel & Systems · Security Architecture · Rabat, Morocco
01 // Background & Profile
OVERVIEWHi, I'm Haitam! I love security research and I actively do bug bounty. I focus on auditing complex software, finding zero-days and logic bugs, digging into memory corruption and Linux kernel systems, and responsibly disclosing security issues to vendors.
My work spans proactive vulnerability research, low-level Linux systems programming, and high-assurance security engineering:
Conducting source-code reviews, capability verification audits, and business logic analysis. Disclosed 15 CVE advisories across enterprise web platforms and systems libraries (including GNU libextractor).
Developing high-performance C Linux kernel modules using Netfilter hooks for stateful deep packet inspection, dynamic stealth port-knocking, and designing zero-trust database architectures.
02 // Academic Education & Credentials
QUALIFICATIONSIndustry Certifications:
03 // Responsible Vulnerability Disclosure Policy
ETHICS & STANDARDSI follow ethical and coordinated vulnerability disclosure standards (aligned with ISO/IEC 29147 guidelines). When auditing software and third-party vendors:
Disclosures are sent confidentially to security teams with detailed reproduction steps.
Vendors are provided an industry-standard window to develop and distribute patches.
Patches are independently validated against reproduction cases to confirm complete fixes.
Advisories and CVE IDs are coordinated with CNAs before public release.
04 // Contact & Professional Profiles
CONNECTWhether you are reaching out regarding recruitment opportunities, research collaboration, or security inquiries, feel free to connect through any of the channels below: