Skip to main content

About

loading · loading ·
Table of Contents

Introduction
#

Taha Marouani, a persistent, serious and ambitious Telecommunications Engineering student.
A self-learner who’s dedicating his time to focus on what really matters: Touching grass, making a change, and developing a solid career.
Armed with passion for Cybersecurity, Philosophy and Books, I’m finding my purpose through this non-sense by learning.

Academic Journey
#

  1. Engineering Degree in Telecommunications

    2024-2027

    With a strong focus on Signal Processing, Telecommunications, and Physics, I study the engineering principles behind how information is transmitted, processed, and received, contributing to the advancement of modern communication infrastructures.
    Operating Systems
    Linux
    Cisco Packet Tracer
    Huawei eNSP
    Bash
    radio_signal [#1026]Created with Sketch.Networking
    C
    C++
    C#
    .NET
    Node.js
    Next.js
    React
  2. National Entrance Exams for Engineering School

    2024-2027

    As a PTSI student within the CPGE program, I underwent an intensive and rigorous scientific training focused on mathematics, physics, and engineering sciences. This was a very rewarding journey as it enhanced my analytical thinking, problem-solving abilities, and capacity to work under pressure (lots of pressure), all while building a solid foundation for advanced studies in engineering having the most important skills as an engineer.
    Physics
    Maths
    Chemistry
    Machanics
    Electronics
    Python
    Problem Solving
    Critical Thinking
    Engineering
    Work under pressure
  3. Baccalaureat Degree with Honors

    2020

Professional Experience
#

  • Cybersecurity Internship - Biat IT

    Summer 2025

    • Created an on-premise Open Source SOC Lab: Wazuh, TheHive, MISP, Cortex.
    • Automated the deployment of different components using Docker containers.
    • Reviewed and enhanced Threat Intelligence reports of previously filtered incidents.
    • Studied and analyzed XDR/NDR logs to trace lateral movement attempts.
    • Analyzed recent severe alerts and enhanced the final provided report.
    • Performed a Threat Hunt based on traces from a critical recent incident.
    SOC
    Firewall
    Wazuh
    IDS
    179IPS
    The Hive
    MISP
    Cortex
    SIEM
    SOAR
    Icon_24px_MicrosoftAd_ColorActive Directory
    Windows
    Threat Hunting
    Threat Intelligence
    Security Operations
    logsLog Analysis
  • CTF Author & Infrastructure Maintainer

    March 2025 - Now

    • Co-founded Securinets ENIT, the local branch of the Tunisian national cybersecurity organization.
    • Maintained and orchestrated 2 national CTFs and 2 local CTFs serving over 200 teams with 0 downtime.
    • Authored 15+ DFIR, Reverse Engineering and Pwn tasks.
    • Optimized CI/CD and GitHub workflows for the repositories of the CTFs to manage collaboration between the authors.
    flagCTF
    Orchestration
    Infrastructure
    Cloud (GCP/AWS)
    High Availability
    Reverse Engineering
    Binary Exploitation
    DFIR
    Pwn
    GitHub
    cicdCI/CD
    Automation
    DevOps Workflows
    Team Collaboration
    Scalability
  • Technical Experience
    #

    1. Advanced C2 Infrastructure for Red Team Operations

      current project

      • Engineered a resilient, fault-friendly and reliable C2 architecture for long and short red team engagements.
      • Used and managed resources from multiple cloud providers (AWS, GCP, Digital Ocean and Cloudflare) to craft a multi-cloud infrastruccture.
      • Used domain fronting for new network-level blending in and evasion.
      • Designed well hardened redirectors to not leak informations about our stack in-use.
      • Setup Mythic C2 with HTTP, HTTPx and DNS malleable profiles for interacting with the implant.
      • Designed fail-over domains going through multiple cloud providers' instances to avoid single points of failure.
      • Designed an advanced phishing infrastructure made for fully undetected Initial Access.
      • And much more
      IAM
      Multi-Cloud
      Infrastructure as Code
      Ansible
      Terraform
      ionicons-v5-iDomain Fronting
      Traffic Blending
      OpSec & Hardening
      Mythic C2 Framework
      Malleable C2 Profiles
      Reverse Proxy (Apache)
      Icon_24px_PhishingProtection_ColorInitial Access
      Post-Exploitation
      Long-Haul
      Short-Haul
      Persistence
      Evasion
      Automated Failover
    2. Malware Analysis Project

      November - April 2025

      • Created an on-premise and cloud Malware Analysis Lab.
      • Analyzed Zeus Trojan - Banking Version and WannaCry Ransomware.
      • Performed Static and Dynamic analysis on different samples.
      • Reverse Engineered multiple samples and classified differences in tradecraft.
      • Replicated malware behavior and re-created their base source codes.
      • Researched coverd evasion techniques and tactics and mapped them to MITRE IDs.
      Malware Analysis
      Reverse Engineering
      Binary Analysis
      Static Analysis
      Dynamic Analysis
      Assembly (x86)
      Windows PE
      ionicons-v5-iAnti-Debugging & Evasion
      radio_signal [#1026]Created with Sketch.C2 Communication
      Wireshark Logo IconThis is shape (source) for Clarity vector icon theme for gtkWireshark
      ProcMon
      IDA / Ghidra
      MITRE ATT&CK Mapping
      Trojan
      Ransomware
    3. Shortcodes

      AWESOME

      With other shortcodes

    CTFs and Ranking
    #

    HackTheBox Profile
    #

    Since Summer 2025, I started seriously and methodologically attacking HackTheBox Labs and sherlocks.
    You can find my profile stats down below.

    avatar

    EvilSamirLoussif

    Hacker · Tunisia
    mini avatar
    EvilSamirLoussif
    EU Machines 3
    Profile ↗
    32 Roots
    34 Users
    1004 Global
    14 Points
    0 Bloods
    Hacker 0% Pro Hacker

    CTFTime Profile
    #

    I’m a part of Curiosity, a Tunisian CTF Team formed in July 2025.
    So far, we achieved high rankings in major international and national CTFs, I currently focus on:

    • DFIR
    • Reverse Engineering
    • and some Binary Exploitation tasks.

    You can view my CTFTime Profile Here .

    There are no articles to list here yet.