About Bytrep Advanced Security
Bytrep Advanced Security is a Moroccan cybersecurity platform (toward a society) founded with a strategic technical vision. The platform specializes in offensive engineering and digital defense, providing precise and legal solutions to combat the most serious digital threats of our time. It is fully compliant with international regulations, such as the General Data Protection Regulation (GDPR).
We serve all entities and individuals who respect legal frameworks and ethical cybersecurity principles, offering advanced tools and services within fully licensed environments.
Our Research Department
Bytrep has a cybersecurity research department, led by a cybersecurity engineer known for his efforts in publishing high-impact vulnerabilities and developing advanced exploits. He also makes valuable contributions to security research and prepares important reports.
About Our Engineer
An offensive cyberweapons engineer with over Several years of extensive experience in vulnerability development, kernel exploitation, bypass techniques, and penetration testing.
Combines advanced research, strategic planning, and programming proficiency to build advanced offensive tools and frameworks.
Skills include:
- Developing low-level tools using assembly languages, C, and C++.
- Building tools such as the kernel framework, PacketMist, the Webmin Exploit tool, and Reverse Shell x86.
- Analyzing protocols .
- Creating scanning and obfuscation tools such as advanced LFI scanners, passive spy tools, and ARP spoofing detectors.
- Writing secure, XOR-encrypted attack code for analysis.
GitHub Publications
& Platform bytrep.com
His GitHub account hosts several Proof-of-Concept (PoC) exploits and advanced tools, including but not limited to:
- IBM MQ SSL Protocol Bypass Vulnerability (CVE-2025-36041)
- CVE-2025-2783 Bypass protection in Google Chrome on Windows via Mojo IPC data manipulation
- CVE-2025-6907 SQL injection in Car Rental System v1.0 via /book_car.php using fname
- CVE-2025-6860 Double SQL injection in Best Beauty Salon Management System via fromdate and today
- CVE-2025-5964 Path traversal in M-Files server via improperly sanitized API endpoints
- CVE-2024-4577 Argument injection vulnerability in PHP-CGI on Windows that allows remote command execution
- CVE-2025-39913 UAF in kernel ≤ 6.12.38 linux (psock-cork)
- CVE-2025-11077 SQL Injection in Online Learning Management (add_content.php)
- CVE-2025-39866 use-after-free and race condition in linux kernel 6.12.16
- CVE-2025-59342 Path traversal vulnerability in esm.sh (esm-dev)
- CVE-2025-10046 SQL injection ELEX WooCommerce Google Shopping
- CVE-2025-9090 Command Injection in Tenda AC20 16.03.08.12 (/goform/telnet)
- CVE Analysis : CVE-2025–36041 Deep Dive: IBM MQ Architecture, Exploitation, and Mitigation
- CVE Analysis :CVE-2025-39913: Linux Kernel eBPF SOCKMAP Use-After-Free Vulnerability
- Resesarch : Branch Predictors - ASLR
- Research : AVX-Based Timing Side Channel ..etc
All of these exploits, and many more, are written in C and Assembly and are publicly available on GitHub. They are distributed exclusively. For ethically approved testing, we provide environments with strict documentation and transparency.
À Propos de Bytrep Advanced Security
Bytrep Advanced Security est une platform marocaine (vers une société) de cybersécurité fondée avec une vision technique stratégique. La société se spécialise dans l'ingénierie offensive et la défense numérique, fournissant des solutions précises et légales pour combattre les menaces numériques les plus graves de notre époque. Elle est entièrement conforme aux réglementations internationales, telles que le Règlement Général sur la Protection des Données (RGPD).
Nous servons toutes les entités et les individus qui respectent les cadres juridiques et les principes éthiques de la cybersécurité, en offrant des outils et services avancés dans des environnements entièrement licenciés.
Notre Département de Recherche
Bytrep dispose d'un département de recherche en cybersécurité, dirigé par un ingénieur en cybersécurité connu pour ses efforts dans la publication de vulnérabilités à fort impact et le développement d'exploits avancés. Il contribue également de manière précieuse à la recherche en sécurité et prépare des rapports importants.
À Propos de Notre Ingénieur
Un ingénieur en cyberarmes offensives avec des plusieurs années d'expérience approfondie dans le développement de vulnérabilités, l'exploitation du noyau, les techniques de contournement et les tests d'intrusion.
Combine recherche avancée, planification stratégique et compétence en programmation pour construire des outils et frameworks offensifs avancés.
Compétences incluent :
- Développement d'outils bas niveau utilisant les langages d'assemblage, C et C++.
- Construction d'outils tels que le framework Kernel, PacketMist, l'outil d'exploitation Webmin et Reverse Shell x86.
- Analyse de protocoles .
- Création d'outils de scan et d'obfuscation tels que des scanners LFI avancés, des outils d'espionnage passifs et des détecteurs d'usurpation ARP.
- Écriture de code d'attaque sécurisé et chiffré XOR pour l'analyse.
حول Bytrep للأمن المتقدم
تُعد Bytrep منصة مغربية في بداية الانطلاق لتكون شركة مسجلة قانونيًا وفقًا للتشريعات السارية في المملكة المغربية. تعمل الشركة في مجال الأمن السيبراني وتطوير الحلول الرقمية، وبيع الأدوات والخدمات المتعلقة بحماية أنظمة ومعدات المعلومات والشبكات. وتلتزم بالامتثال لجميع القوانين الوطنية والدولية المطبقة ضمن مجال خبرته .
قسم الأبحاث لدينا
تمتلك Bytrep قسمًا للأبحاث في مجال الأمن السيبراني، يقوده مهندس أمن سيبراني معروف بجهوده في نشر الثغرات ذات التأثير الكبير وتطوير أدوات استغلال متقدمة. كما يقدم مساهمات قيمة في البحث الأمني ويعد تقارير مهمة.
حول مهندسنا
مهندس أدوات سيبرانية متقدمة ، بأكثر عدة سنوات من الخبرة الواسعة في تطوير الثغرات، استغلال النواة، واختبار الاختراق.
يجمع بين البحث المتقدم، التخطيط الاستراتيجي، والكفاءة في البرمجة .
تشمل المهارات:
- تطوير أدوات منخفضة المستوى باستخدام لغات التجميع، C، و C++.
- بناء أدوات مثل إطار Kernel، PacketMist، أداة استغلال Webmin، و Reverse Shell x86.
- تحليل البروتوكولات.
- إنشاء أدوات المسح والإخفاء مثل ماسحات LFI المتقدمة، أدوات التجسس السلبية، وكاشفات انتحال ARP.
- كتابة كود هجوم آمن ومشفر بـ XOR للتحليل.
What We Offer
CVE
We present a curated selection of exploits (exploit, poc) for some vulnerabilities in an advanced programming language with the aim of strengthening security within the legal framework.
Articles and reports
We provide in-depth analyzes and academic articles designed to enhance practical learning, creative research, and professional growth.
Security researchs
We conduct security research to develop and discover new technologies.
Our Vision
To contribute significantly to the field of legal cyberengineering by combining deep technical knowledge, compliance, openness, and collaborative innovation among the international cybersecurity community.
Open to Collaboration
We believe that digital security is a shared responsibility. Bytrep welcomes collaborations with security researchers, academic institutions, and regulatory-compliant organizations seeking to acquire practical offensive capabilities within a transparent and ethical framework.
