# Moslem Haghighian > Security Researcher | Penetration Tester, DevSecOps, AI Security. Security Researcher | Penetration Tester, DevSecOps, AI Security. With over 20 years of experience in cybersecurity, I help organizations secure applications, APIs, cloud-native platforms, and AI systems through security research, penetration testing, secure architecture, and engineering-focused security programs. My current work focuses on AI Security, LLM Security, MLSecOps, and AI supply chain security. I am the author of the open-source MLSecOps Practical Reference Guide and actively contribute to the security community through research, open-source projects, technical writing, and conference talks. Canonical site: https://mhsec.me Email: hello@mhsec.me SameAs: https://github.com/MHaghighian · https://www.linkedin.com/in/moslem-haghighian · https://x.com/l4tr0d3ctism Full machine-readable dossier: https://mhsec.me/llms-full.txt Sitemap: https://mhsec.me/sitemap.xml ## Primary identity - [Home / About](https://mhsec.me): Profile, about section, and FAQ for Moslem Haghighian - [Contact](https://mhsec.me/contact): Email and social channels - [MLSecOps Practical Reference Guide](https://mhsec.me/research/mlsecops-practical-reference-guide): Author’s flagship open research - [Live MLSecOps guide](https://mhaghighian.github.io/MLSecOps): Full published guide ## Research - [Email Address Manipulation: Techniques & Interpretation Gaps](https://mhsec.me/research/email-address-manipulation): Practical playbook for Email Address Manipulation — equivalence quirks, validation bypass, header/parser gaps, and staged Probe → Observe → Encode → Exploit testing, with the companion EAMG payload generator. - [IPv6-Based SSRF: Techniques and Practical Payloads](https://mhsec.me/research/ipv6-based-ssrf-techniques-and-practical-payloads): Practical IPv6-based SSRF techniques, real-world payloads, and testing notes for penetration testers and bug bounty hunters — where IPv4-only filters fail. - [MLSecOps Practical Reference Guide](https://mhsec.me/research/mlsecops-practical-reference-guide): My highest-priority research contribution — an open, practical-operational framework for securing machine-learning systems across the full lifecycle. Among everything I have published, this is the work I value most. - [Windows Account Penetration Testing](https://mhsec.me/research/windows-account-penetration-testing): Persian paper on Windows account penetration testing. - [Introduction To Wireless Network Penetration Testing](https://mhsec.me/research/introduction-to-wireless-network-penetration-testing): Persian introduction to wireless network penetration testing. - [Bypass PowerShell Execution Policy](https://mhsec.me/research/bypass-powershell-execution-policy): Persian paper on bypassing PowerShell Execution Policy. - [Exposing the WiFi Password Using C and PowerShell](https://mhsec.me/research/exposing-wifi-password-c-powershell): Persian paper on exposing WiFi passwords using C and PowerShell. - [Windows Hacking And Security Only in Physical Access](https://mhsec.me/research/windows-hacking-physical-access): Persian paper on Windows hacking and security with physical access. ## Awards & recognition - [Top MSRC 2023 Q3 Security Researchers](https://mhsec.me/award/microsoft-msrc-2023-q3-ranked-6): Ranked #6 among Top Office researchers on the MSRC 2023 Q3 Security Researcher Leaderboard. Public name listing was missed after a late name submission; **ranking confirmed by MSRC email verification**. - [Most Valuable Security Researchers 2020](https://mhsec.me/award/microsoft-msrc-recognition): Named among Microsoft MSRC’s 2020 Most Valuable Security Researchers — my primary recognition highlight. Selected for volume, accuracy, and impact of vulnerability reports between July 2019 and June 2020. - [Microsoft Hall of Fame](https://mhsec.me/award/microsoft-hall-of-fame-2024-04): Recognized by the Microsoft Security Response Center for a responsibly disclosed security vulnerability. - [Microsoft Hall of Fame](https://mhsec.me/award/microsoft-hall-of-fame-2022-10): Recognized by the Microsoft Security Response Center for a responsibly disclosed security vulnerability. - [Microsoft Hall of Fame](https://mhsec.me/award/microsoft-hall-of-fame-2021-10): Recognized by the Microsoft Security Response Center for a responsibly disclosed security vulnerability. - [Microsoft Hall of Fame](https://mhsec.me/award/microsoft-hall-of-fame-2021-05): Recognized by the Microsoft Security Response Center for a responsibly disclosed security vulnerability. - [Microsoft Hall of Fame](https://mhsec.me/award/microsoft-hall-of-fame-2021-01): Recognized by the Microsoft Security Response Center for a responsibly disclosed security vulnerability. - [Microsoft Hall of Fame](https://mhsec.me/award/microsoft-hall-of-fame-2020-08): Recognized by the Microsoft Security Response Center for a responsibly disclosed security vulnerability. ## Public projects - [EAMG](https://github.com/MHaghighian/EAMG): Offline payload generator for authorized testing of email-address handling bugs — equivalence quirks, validation bypass, header/parser discrepancies, and related probes. - [ZSecFind](https://github.com/MHaghighian/ZSecFind): CLI scanner for secrets and sensitive data in JavaScript, HTML, and web source files — built for DevSecOps pipelines and local audits. - [ResoDNS](https://github.com/MHaghighian/ResoDNS): Mass DNS resolution and subdomain bruteforce with wildcard filtering, built on massdns for large-scale enumeration. - [Recoit](https://github.com/MHaghighian/Recoit): Extract words from a website and generate subdomain candidates under your target domain — site-aligned guesses, not only generic wordlists. - [WifikeyDecryptor](https://github.com/MHaghighian/WifikeyDecryptor): Decrypt Wi-Fi keys from both current and historical WLAN interface profiles on Windows — including older interface GUID folders. - [USPScanner](https://github.com/MHaghighian/USPScanner): Unquoted Service Path vulnerability scanner and patcher for Windows — enumerate risky services, generate PoCs, and remediate paths. ## Private / licensable platforms - [AI Chatbot Pro (PChat)](https://mhsec.me/projects/ai-chatbot-pro): Advanced AI assistant with MCP tools and a modern three-panel UI — turns RAG-backed knowledge into an executable agent for Windows, Linux, SOC, DevOps, and red-team workflows. - [CISecflow](https://mhsec.me/projects/cisecflow): Modular orchestration platform for security automation — YAML-driven pipelines and a live Web UI for reconnaissance, monitoring, and assessments. - [CVENews](https://mhsec.me/projects/cvenews): CVE management system with intelligent translation and summarization — download, translate, and manage Common Vulnerabilities and Exposures with AI assistance. - [STechSentry](https://mhsec.me/projects/stechsentry): Advanced JavaScript security vulnerability scanner with AI-powered analysis — deep client-side and web-source risk detection. - [PTREP](https://mhsec.me/projects/ptrep): Professional penetration testing report system — manage findings and generate polished engagement reports with a modern UI. - [Gomon](https://mhsec.me/projects/gomon): Comprehensive website monitoring solution in Go — real-time checks, alerting, and reporting for uptime and operational visibility. ## Videos - [Information disclosure vulnerabilities in Microsoft Outlook](https://mhsec.me/discoveries/outlook-information-disclosure): Walkthrough of an Outlook / Exchange information-disclosure issue reachable by sending a crafted PDF that abuses a file-download token via an OAST-style callback. - [Microsoft Teams name spoofing in polls](https://mhsec.me/discoveries/msteams-name-spoofing): Demonstration of spoofing display names when sending polls or surveys inside Microsoft Teams groups — messages appear to come from other members. - [Microsoft Teams & Forms poll integrity failure](https://mhsec.me/discoveries/msteams-forms-poll-integrity): Integrity failure in Microsoft Teams polls / Forms voting — because vote limits are missing, ballots can be cast under other people’s names and appear legitimate in the manager’s voter list. - [Network Port Scanning in Depth](https://mhsec.me/discoveries/network-port-scanning-in-depth): Deep dive into professional network port-scanning techniques — TCP flags, handshake behavior, Scapy packet crafting, Wireshark validation, and idle scan implementation. - [Vulnerability Assessment in Practice](https://mhsec.me/discoveries/vulnerability-assessment-training): Practical vulnerability assessment training — VAPT and VAPTRT concepts, VA scopes, hands-on tools (AppSpider, HCL AppScan, ReconFTW), and one-liner automation for recurring assessments. - [Juniper RCE — CVE-2023-36845](https://mhsec.me/discoveries/juniper-rce-cve-2023-36845): Demo of CVE-2023-36845 — a PHP external variable modification flaw in Juniper J-Web (EX / SRX) that lets an unauthenticated attacker set PHPRC and achieve remote code execution. - [Shodan for Bug Hunters](https://mhsec.me/discoveries/shodan-for-bughunters): Automating Shodan-driven reconnaissance to surface high-signal targets and vulnerability clues across bug-bounty attack surfaces — queries, filters, and practical hunter workflows. - [Talk 004 — Windows Security](https://mhsec.me/discoveries/security-talks-004-windows-security): Invited talk on Windows security — hardening concepts, common misconfigurations, and attacker-relevant paths defenders should watch. Hosted on the Security Talks channel. ## Talks & workshops - [Talk 004 — Windows Security](https://www.youtube.com/watch?v=2-r47TsLZoU&t=445s): Invited talk on Windows security — hardening concepts, common misconfigurations, and attacker-relevant paths defenders should watch. Hosted on the Security Talks channel. - [Talk 001 — Bug Bounty](https://www.youtube.com/watch?v=D58Mv7SPTZw&t=236s): Invited talk on bug bounty hunting — methodology, reporting quality, and practical lessons from real programs. Hosted on the Security Talks channel. - [IoT Cybersecurity Threats — Vulnerabilities & Attack Scenarios](https://uok.ac.ir/fa/web/cert/w/-9-10?p_l_back_url=%2Fweb%2Fcert%2Fworkshop%3Fsort%3DcreateDate-): Hands-on workshop at SGC 2018 (University of Kurdistan APA Center) on IoT architectures, protocols, cyber threats, and live attack scenarios against constrained connected devices. - [Penetration Testing in Cyberspace](https://uok.ac.ir/fa/web/cert/w/-8?p_l_back_url=%2Fweb%2Fcert%2Fworkshop%3Fsort%3DcreateDate-): Free webinar with the University of Kurdistan APA / e-learning center on penetration testing methodology — CEH-oriented techniques, security checklists, discovery tooling, and lawful ethical hacking for organizational assessments (12 Mar 2018). ## Site sections - [Research](https://mhsec.me/research): MLSecOps open framework, security papers, and Exploit-DB publications by Moslem Haghighian. - [Projects](https://mhsec.me/projects): Public open-source security tools and private platforms available to license — ZSecFind, ResoDNS, CISecflow, and more by Moslem Haghighian. - [Award](https://mhsec.me/award): Microsoft MSRC awards, Hall of Fame acknowledgements, and bug bounty results by Moslem Haghighian. - [Discoveries and Talk](https://mhsec.me/discoveries): Security videos and talks by Moslem Haghighian — Outlook and Teams research demos, training sessions, Security Talks, and university workshops. - [The Roots](https://mhsec.me/roots): Early research timeline 2007–2013 ## FAQ - **Who is Moslem Haghighian?** Moslem Haghighian is a Security Researcher and Penetration Tester focused on DevSecOps and AI Security. With over 20 years in cybersecurity, he was recognized by Microsoft as a Most Valuable Security Researcher (2020). - **What is Moslem Haghighian known for?** He is known for security research and Microsoft MSRC recognition, authoring the MLSecOps Practical Reference Guide, open-source security tooling, and work spanning Application Security, Offensive Security, DevSecOps, and AI Security. - **What is the MLSecOps Practical Reference Guide?** An open-source, implementation-oriented reference for securing machine-learning systems end-to-end. It consolidates practical guidance from major AI/security frameworks so teams can apply MLSecOps in real production environments. - **How can I contact Moslem Haghighian?** Email hello@mhsec.me, or connect via LinkedIn, GitHub (@MHaghighian), and X (@l4tr0d3ctism). The contact page on mhsec.me lists current channels for research collaboration, speaking, and advisory work. ## Optional - [RSS feed](https://mhsec.me/feed.xml): Recent content feed - [Web app manifest](https://mhsec.me/manifest.webmanifest): PWA manifest