Available for Internships

Irfan AliLashari

> _

Cybersecurity student at QUEST with hands-on experience in penetration testing, CTF competitions, and ethical hacking. Active on HackTheBox with 15+ machines rooted.

15+
HTB Machines
6+
Certifications
3.29
CGPA
4th
Semester
Scroll
01 / About

Building security, one exploit at a time.

I'm a dedicated Cybersecurity student at Quaid-e-Awam University of Engineering, Sciences & Technology (QUEST), Nawabshah — currently in my 4th semester with a CGPA of 3.29.

My passion lies at the intersection of offensive security and real-world defense. I actively compete in CTF challenges on HackTheBox, where I've rooted 10+ machines ranging from medium to insane difficulty — including complex Windows Active Directory environments with techniques like RBCD abuse, ADCS exploitation, and cross-domain attacks.

Beyond HTB, I'm involved with the Quest Cybersecurity Students Society organizing CTF events, and I collaborate on AI research through the IEEE IES Generative AI Challenge 2026.

Education
B.S. Cyber Security
QUEST, Nawabshah · CGPA 3.29
Location
Nawabshah / Karachi
Sindh, Pakistan
Status
4th Semester
Expected Graduation: Sept 2028
Focus Area
Offensive Security
Pentesting · AD Attacks · CTF

Academic Background

BS Cyber Security

Quaid-e-Awam University of Engineering, Science & Technology
Nawabshah, Sindh, PakistanCGPA: 3.29
2024 - 2028
Current
Expected Graduation

Pursuing comprehensive studies in cybersecurity including network security, ethical hacking, digital forensics, and secure software development.

Higher Secondary Certificate (HSC) & Secondary School Certificate (SSC)

Model School Cadet College
Larkana, Sindh, PakistanGrade: A
Completed
Graduated
Secondary Education

Completed secondary and higher secondary education with distinction, building a strong foundation in mathematics, science, and computer studies.

02 / Skills

Technical Arsenal

Offensive Security

Penetration Testing82%
CTF Competitions88%
Red Teaming72%
Vulnerability Assessment80%

Network & Infrastructure

Network Security78%
Active Directory Attacks85%
Incident Response70%
Risk Assessment75%

Tools & Development

Linux / Kali Linux88%
SQL & Databases76%
Web Development80%
Impacket / Bloodhound82%

Tools & Technologies

HackTheBoxBurp SuiteMetasploitNmapWiresharkimpacketbloodyADcertipy-adevil-winrmligolo-ngPythonSQLHTML/CSS/JSNext.jsGitLinux
03 / Projects

What I've Built

Projects that combine security principles with clean engineering.

01
University ExhibitionFeatured

Dept. of Cyber Security Website

Web Development · Security

Built a responsive and secure department website for QUEST's Cybersecurity department, presented at University Exhibition. Applied security best practices including CSP headers, input sanitization, and performance optimization with interactive UI elements.

HTMLCSSJavaScriptSecurity Best PracticesPerformance
02
Personal ProjectFeatured

Personal Portfolio Website

Web Development · UI/UX

Live

Developed a modern, fully responsive portfolio with dark/light mode support and cross-browser compatibility. Showcased cybersecurity projects while following secure coding standards and modern design principles.

Next.jsTailwind CSSFramer MotionVercelDark Mode
03
DBS Course Project

Stock Exchange Management System

Database Design · Backend

Designed a relational database system for stock trading operations using SQL. Implemented features for stock listings, real-time transactions, and portfolio management while ensuring data integrity, security constraints, and full ACID compliance.

SQLRelational DatabaseACID ComplianceData IntegritySecurity
04 / Certifications

Credentials & Achievements

Verified certifications from Google, Cisco, and hands-on achievements on HackTheBox.

7+
Total Certifications
4
Google / Coursera
2
Cisco Certified
15+
HTB Machines Rooted
G
Core Security
Foundations of Cybersecurity
Google / Coursera

Comprehensive introduction to cybersecurity concepts, the importance of security, and career pathways.

Verified
G
Risk Management
Play It Safe: Manage Security Risks
Google / Coursera

Security frameworks, controls, and risk management strategies for enterprise environments.

Verified
G
Network Security
Networks and Network Security
Google / Coursera

Deep dive into TCP/IP, network protocols, firewalls, and network-based attack vectors.

Verified
G
Technical Tools
Tools of the Trade: Linux & SQL
Google / Coursera

Practical Linux command-line skills and SQL fundamentals for security investigations.

Verified
C
Networking
Networking Basics
Cisco / LinkedIn Learning

Foundational networking concepts including OSI model, routing, and network infrastructure.

Verified
C
Core Security
Introduction to Cybersecurity
Cisco Certified

Foundational understanding of cybersecurity principles, common threats, and mitigation techniques.

Verified
Special Achievement
H
Practical Hacking
HackTheBox — Active HTB Pro
Hack The Box

15+ machines completed across Easy to Insane difficulty including AD environments, ADCS abuse, RBCD, and multi-domain attacks.

Verified
05 / Contact

Let's work together

I'm actively seeking internship opportunities in cybersecurity. Whether you're looking for a pentesting intern, security researcher, or just want to talk security — I'm open to it all.

Open to Internships

Internship Inquiry

Looking for a motivated cybersecurity intern with real-world pentesting experience? I'm available for internships in Karachi and remote roles.

Send Email