Hamed Kohi

Hamed Kohi

Biography

My name is Hamed Kohi, an Afghan-Canadian cybersecurity professional specializing in vulnerability research, programming and penetration testing.
I’m driven by a passion for uncovering and responsibly disclosing vulnerabilities in open-source systems, bolstering global cybersecurity efforts.

Since starting my journey in Kabul, Afghanistan in 2020, I’ve honed my skills after moving to Canada in 2022. Here, I’ve dived deep into vulnerability analysis, exploit development, and red team operations, mentoring aspiring researchers and delivering innovative security solutions.

My work reflects a commitment to collaboration, continuous learning, and pushing the boundaries of cybersecurity excellence.

Certifications

  1. Certified Penetration Testing Specialist (CPTS, pending)
  2. Certified Red Team Operator (CRTO, pending)
  3. Virtual Hacking Labs Certified (VHL+)
  4. Virtual Hacking Labs Advanced+ Certified

Common Vulnerabilities & Exposures (CVEs)

  1. CVE-2024-57601 (Stored XSS & PE, EasyAppointments)
  2. CVE-2024-57602 (CWE-307, EasyAppointments)
  3. CVE-2024-57603 (Login Bruteforce, ezBookkeeping)
  4. CVE-2024-57604 (OTP Bruteforce, ezBookkeeping)
  5. CVE-2024-57605 (Stored XSS, FuelCMS)
  6. CVE-2025-24854 (Stored XSS, Apache JSPWiki)
  7. CVE-2025-29868 (Privacy Leak, Apache Answer)

Cyber Missions

  1. Mission Cyber Sentinel (ongoing)
    A joint global mission dedicated to securing 250K sites by identifying vulnerability in widely used open-source software.
  2. Cyber Mounties Canada (ongoing)
    A mission to build Canada's industry approved e-learning platform with a focus on practical & hands on cybersecurity training.

Open-Source Projects

  1. Zerodayf (Zeroday Factory)

Core Skills

  1. Vulnerability Research & Development
  2. Desktop Application Development
  3. Full-Stack Web Development
  4. Malware Development
  5. Penetration Testing

Programming Languages

  1. C 11
  2. C# 10.0 and 7.3
  3. PowerShell
  4. Python 3
  5. JavaScript

Get in Touch

Feel free to reach out: