Ali Moharramzadeh

Ali Moharramzadeh

security researcher & backend developer — maragheh, ir.

I'm a 20-year-old cybersecurity researcher and backend developer, self-taught since 14. I specialize in Windows internals, kernel-mode development, and red team tooling — building anti-cheat and EDR-evasion engines, exploit tooling, and security research infrastructure across C++, Rust, and Python.

Comfortable moving between low-level systems work and full-stack tooling, I'm currently expanding into AI engineering — bringing the same low-level curiosity to how models are built and deployed. Studying B.Eng. Computer Engineering at Azad University of Maragheh.

me

I started coding at 14, six years of taking systems apart to understand how they really work. That curiosity pulled me toward offensive security: reverse engineering, low-level Windows internals, and the parts of a system most people never see.

Today I move between kernel-mode C++, red team operations, and the backend platforms that support them — and I'm channeling that same drive into learning AI engineering. Self-motivated, relentlessly curious, and happiest solving hard, low-level problems.

skills

Languages

C++ · Rust · Python · JavaScript / TypeScript

Cybersecurity & Red Team

Windows internals · kernel-mode development · EDR evasion · malware development · Mythic · AdaptixC2 · Metasploit · Mimikatz · BloodHound · Wireshark · GoPhish

Systems & Frameworks

Windows SDK / WDK · Arch Linux · ImGui · NestJS · Express.js · Next.js · Tauri

AI & Agentic Tooling

Claude Code · Codex · Cursor · Model Context Protocol (MCP) · LangGraph · Ollama

Tooling & Currently Learning

Git · Docker · CI/CD · n8n · Neovim — currently learning AI engineering.

work

Perca — kernel-mode anti-cheat engine (C++ · Lua · Windows SDK/WDK). Detects DLL injection, unauthorized memory access, and signature-based tampering in online games, with a Lua scripting layer for custom detection plugins.

license-api — license management & HWID validation platform (TypeScript · NestJS · PostgreSQL). Auth and hardware-locking flows for distributed security tooling.

img2ascii — image-to-ASCII rendering engine (C · C++ · CMake). Configurable pipeline converting raster images into colorized ASCII art.

background

Education

B.Eng. Computer Engineering — Azad University of Maragheh2024 – present

Certifications & Training

  • Red Team OperationsRavin Academy
  • Malware DevelopmentMaldev Academy
  • Advanced C++Anisa Group
  • Python — Beginner to AdvancedMaktabkhooneh

writing

I write about security research, low-level systems, and the tools I build along the way.

reach

Open to security research and backend engineering opportunities. Let's talk.

find me on GitHub·Telegram·Résumé (PDF)— or email me at ali@neox1de.com