Skip to content
View franckferman's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report franckferman

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
franckferman/README.md

Franck FERMAN

CyberSecurity Engineer

Pentest   ▪   Red Team   ▪   Malware Development
SOC   ▪   System & Network   ▪   Governance

   


About me

CyberSecurity professional with a background spanning Offensive Security (Pentest, Red Teaming, Malware Development), System & Network Administration, SOC & Detection, and Security Governance (Risk Management, Compliance, Security Strategy). I build and break things — and I document both.


Education

  • HETIC — FullStack Web Development, Design & Communication
  • 42 — Low-Level Programming, Algorithms, Systems
  • Aston Institute — System, Network & Security Administration
  • 2600 — Security Research, Offensive & Defensive Security, OSINT, Governance
  • Oteria Cyber School — Cybersecurity & Governance

Experience

  • 💼 Freelance / Auto-entrepreneur — IT · Web Developer · SysAdmin · Security Consultant Independent missions across IT support, infrastructure, web development and security consulting.

  • 🌍 Veolia — IT Global leader in water, waste & energy management — €45B+ revenue, 220+ countries, 213,000+ employees.

  • 🇫🇷 French National Assembly — IT Core institution of French democracy — 577 deputies, Palais Bourbon, Paris.

  • 🏙 City of Aulnay-sous-Bois — IT → SysAdmin & Network Engineer → CISO Municipal infrastructure — 85,000+ inhabitants, 2,000+ agents, 100+ sites, 1,500+ endpoints.

  • 🎭 Théâtre des Champs-Élysées — CyberSecurity Engineer Classified French historical monument (1957), Avenue Montaigne — under Caisse des Dépôts et Consignations. Hybrid SI security, offensive & defensive operations, SOC deployment.

  • 🏦 Crédit Agricole — CyberSecurity & Linux Systems Engineer One of the world's largest banking groups — €2,000B+ in assets, 150,000+ employees worldwide.

  • ⚔️ KatanHack — Founder Cybersecurity consultancy — penetration testing, Active Directory & web audits, security awareness.

Additional engagements conducted as freelance / auto-entrepreneur — multiple confidential clients across pentest, security consulting, IT infrastructure, and development missions.


Research & CVEs

  • CVE-2025-67906 — Stored XSS · MISP Workflow Engine Unsanitized name field in workflow node JSON, rendered via doT.js without escaping — payload executes in the browser of any user viewing the workflow, including admins. Enables privilege escalation and threat intelligence data exfiltration.

  • Critical 0-Days — Blind SQLi & Zero-Click Stored XSS · GovTech / Enterprise SaaS Unauthenticated DB exfiltration (PII, admin creds, live MFA tokens) + zero-click super-admin session takeover.

  • Critical 0-Day — Cryptographic Failure + Business Logic · Fortune 500 Payment Infrastructure Complete financial transaction integrity bypass across the entire global network.


Cyberpunk City Pixel Art

  • Pentest & Red Teaming — Infrastructure, AD, web & WiFi assessments, adversary emulation, OPSEC.
  • Malware Development — Offensive tooling in C, Rust, Go, Python — loaders, rootkits, C2 implants, exploit writing.
  • Security Governance — CISO / Assistant CIO — ISMS, risk management (EBIOS RM), compliance, awareness.
  • System & Network Administration — AD, GPO, Cisco, Palo Alto, ESXi, Windows/Linux hardening, automation.
  • Blue Team & SOC — Detection engineering, incident response, threat hunting — Wazuh, Splunk, Sysmon, Sigma, YARA, MISP, OpenCTI.

Available for red team engagements, security research, CTFs, and serious collaborations — consulting or building.


Skills & Competencies

Languages & Scripting

Python C Rust Go JavaScript PowerShell Bash Assembly Git

Offensive Security

Metasploit Burp Suite Cobalt Strike Havoc C2 BloodHound Rubeus Certipy Impacket Ligolo-ng NetExec Nessus PingCastle Specops Atomic Red Team

Blue Team & SOC

Wazuh Splunk Velociraptor Hayabusa Microsoft Defender XDR GravityZone EDR Cortex XDR Cortex XSOAR Zabbix YARA Sigma Sysmon MISP OpenCTI MITRE ATT&CK

DevOps & Automation

Docker Podman Ansible Vagrant Terraform n8n GitHub Actions

Systems & Infrastructure

Linux Windows Active Directory Microsoft 365 Entra ID Cisco Palo Alto Fortinet pfSense VMware Proxmox

AI & LLM

Ollama Local LLMs

Governance & Compliance

ISO 27001 NIST GDPR PCI-DSS EBIOS RM CIS ANSSI


  


Contact

Email Telegram Signal


contribution snake


Projects

 

 

 

 


Every tool built, every system broken, every vulnerability documented — the full picture lives in the repositories.



Visitor counter

Pinned Loading

  1. MetaDetective MetaDetective Public

    Unleash Metadata Intelligence with MetaDetective. Your Assistant Beyond Metagoofil.

    Python 445 48

  2. CassandraCTI CassandraCTI Public

    Collect, process, and automatically distribute Cyber Threat Intelligence from RSS feeds across multiple platforms.

    Python 6