2HWAمنتخب القهوة
Back to members
Avatar of Adham Khairy

Adham Khairy

MEMBER

Hello, I'm Adham Khairy (0xSponge), a Penetration Tester, Bug Bounty Hunter, and CS student at Helwan University specializing in web, Active Directory, and mobile (Android/iOS) exploitation. Driven by the belief that breaking systems is key to securing them, I combine deep manual testing with custom automation to uncover high-impact vulnerabilities that automated scanners miss. I maintain a methodical, ethical approach, continuously refining my offensive skills through CTFs and real-world hunting to stay ahead of emerging threats.

// SPECIALIZATION
Mobile SecurityWeb SecurityNetwork Security

Published Works & Writeups

Cover image for To Admin for a Bounty | How Two Dots Made Me Admin
Bug Bounty

To Admin for a Bounty | How Two Dots Made Me Admin

How a path traversal and broken access control flaw allowed escalating privileges from a low-privileged account to Admin across 150 administrative endpoints.

bug-bountypath-traversalaccess-controlprivilege-escalationweb

@0xsponge // Bug Bounty

Read →
Cover image for CyCTF Luxor 2026 | Mobile Writeup
Mobile

CyCTF Luxor 2026 | Mobile Writeup

Solving the Android track of CyCTF Luxor — extracting a token from exported SharedPreferences, recovering an AES-ECB key from the signing cert, and forging a...

androidreverse-engineeringbinder-ipcshared-preferencesaes

@0xsponge // CyCTF

Read →
Cover image for Night at the Museum
Web

Night at the Museum

Chaining a path-traversal in an admin bot's QR-scan handler with an over-trusted promote endpoint to escalate a normal user to admin and reach the flag room.

path-traversalprivilege-escalationbroken-access-controlapi

@0xsponge // FahemSec

Read →
Cover image for [Tob] WEB challenge
Web

[Tob] WEB challenge

Bypassing a broken XSS filter in a context using JavaScript hoisting to defeat a ReferenceError guard, then exfiltrating the admin bot's cookies via Burp...

xssjavascript-hoistingcookie-exfiltrationbot

@0xsponge // Helwan CTF

Read →
MiscCTF Challenge

Escape From SpongeBob

SpongeBob bolted a rocket to the boatmobile and he is leaving town tonight. The launch paperwork got torn into five pieces and every neighbor is hiding one:...

MiscSteganographyFile CarvingPNG AnalysisEYCC CTF 2026beginner-friendly

@0xsponge // EYCC CTF 2026

Play →
WebCTF Challenge

Krusty Krab Order Boards

Mr. Krabs finally put the Krusty Krab order boards online, and SpongeBob finally admitted what he really wants: the Krabby Patty secret formula. It is filed at...

WebWhiteboxXSSCookie StealingBotEYCC CTF 2026beginner-friendlywhitebox

@0xsponge // EYCC CTF 2026

Play →
MobileCTF Challenge

Krusty Krab Vault

Mr. Krabs locked the Krabby Patty formula in the safe and swears nobody can reach it. The front counter is useless, but the vault door was left wired to the...

MobileAndroidIntentBroadcast ReceiverEYCC CTF 2026beginner-friendly

@0xsponge // EYCC CTF 2026

Play →
MobileCTF Challenge

Sandy VS Frida

It's a fight for SpongeBob! Sandy locked her secrets, but Frida is trying to steal the bride's identity and fire the hidden wedding link to win.

MobileAndroidFridaDynamic HookingEYCC CTF 2026beginner-friendly

@0xsponge // EYCC CTF 2026

Play →
MobileCTF Challenge

SpongeBob's Photo Blog

SpongeBob built a photo blog to show off his jellyfishing snapshots. The post title comes straight from the link that opened it, and the page hands a little...

MobileAndroidWebViewXSS to RCEJavaScript InterfaceEYCC CTF 2026beginner-friendly

@0xsponge // EYCC CTF 2026

Play →