Mahmoud

Mahmoud Fathy

Blockchain Engineer

Security-focused Blockchain & Smart Contract Engineer capable of building production-grade full-stack Web3 dapps on EVM and Solana. Specialized for years in adversarial review to ensure correctness, safety and security of well-known protocols.

Blockchain Engineer
Smart Contracts
Rust / Solidity
Security Audits

About Me

I am a Blockchain and Smart Contract Engineer with over four years of focused experience in Web3 space and more than a decade of engineering experience overall. My work centers around designing, implementing, and adversarially reviewing Smart Contracts on-chain, primarily across EVM-based ecosystems, with hands-on exposure to Solana development using Anchor & Pinocchio. I have audited top-tier protocols, analyzed complex exploit patterns with proof of concepts, carry out fuzz testing and formal verification to ensure expected behaviour is persistent accross a wide range of inputs.

Location

Germany

Focus Areas

EVM · Security · DeFi · Solana

Role

Blockchain Security Engineer

Languages

Arabic, English, German, French

Career Journey

Work Experience

Blockchain Security Researcher

Zokyo

2022 - Present
  • Conducted in-depth security audits for early-stage and high-profile Web3 protocols, delivering structured findings reports.
  • Performed manual code review, invariant analysis, unit testing, and fuzz testing to uncover logic flaws, edge-case failures, and exploitable attack surfaces in EVM-based Smart Contracts.
  • Contributed adversarial analysis and expanded test coverage for complex protocols including World Liberty Finance (WLFI) and LayerZero, identifying critical vulnerabilities prior to deployment.
  • Collaborated directly with client teams to communicate risk clearly, validate fixes, and ensure secure remediation before deployment.
  • Authored technical blog posts highlighting interesting audit findings, tools and security best practices to educate teams and the broader Web3 community.
SoliditySecurityFoundryHardhatTypescriptEchidnaDeFiNFTsERCs

Independent Software Developer

Independent

2020 - 2021
  • Led and delivered end-to-end software systems across blockchain, backend, and frontend stacks, operating as lead and often sole engineer across multiple independent projects.
  • Designed and implemented a blockchain-based NFT presale for a game, owning the full smart contract lifecycle including architecture, testing, Web3 frontend , backend workers, distributed storage and database design.
  • Contributed to a proof-of-concept distributed ledger architecture for a US-based client, focusing on message-passing patterns which serves as the low layer fabric for their blockchain.
  • Built and delivered a cross-platform mobile attendance management application as an independent project alongside full-time employment as a lecturer.
SolidityReactElixirNode.jsJS/TSPostgreSQLFlutterIPC

Academic Staff Educator

National Telecommunication Institute

2012 - 2021
  • Delivered hands-on technical training as part of government-sponsored education and upskilling initiatives, teaching recent graduates, fellow academic staff personnels, and technical college students.
  • Designed and taught curricula spanning computer networks, cloud infrastructure, programming, and applied systems engineering, balancing students' theoretical foundations with practical implementation.
  • Supervised diploma and graduation projects, guiding students through system architecture, implementation, testing, and technical evaluation.
  • Participated in certified academy programs aligned with enterprise technologies, including VMware, Cisco, and Huawei, ensuring training reflected real-world industry standards.
  • Supervised diploma and graduation projects, guiding students through system architecture, implementation, testing, and technical evaluation.
NetworksCloudPythonTensorflowVirtualization TechnologyInternet of ThingsDeep LearningKerasscikit-learn
Portfolio

Projects & Highlights

LayerZero
Filecoin
DeBridge
Sovryn
SushiSwap
Almanak

Audited TVL

$5B+

Value secured across projects audited.

Technical Stack

Skills & Expertise

Blockchain

EthereumAdvanced
EVM L2sAdvanced
DeFiAdvanced
SolanaIntermediate
Zero-KnowledgeIntermediate

Smart Contracts

SolidityAdvanced
FoundryAdvanced
HardhatAdvanced
TruffleAdvanced
ERC StandardsAdvanced
Proxy PatternsAdvanced
Gas OptimizationAdvanced

Security & Auditing

Adversarial Manual ReviewAdvanced
Fuzz TestingAdvanced
Test CoverageAdvanced
Economic based AttacksAdvanced
Security ReportingAdvanced
Exploit AnalysisAdvanced
Formal VerificationIntermediate

Backend

Node.jsAdvanced
JavascriptAdvanced
PythonAdvanced
PostgreSQLAdvanced
Go + TemplIntermediate
Elixir (Phoenix)Intermediate
NoSql (MongoDB)Intermediate

Frontend

Next.jsAdvanced
ReactAdvanced
wagmi | viem | ethers.jsAdvanced
FlutterAdvanced
TailwindAdvanced

DevOps & Cloud

LinuxAdvanced
GitAdvanced
DockerAdvanced
KubernetesIntermediate
GCPIntermediate
AWSIntermediate
CI/CDIntermediate

Data & AI

Deep LearningAdvanced
TensorflowAdvanced
KerasAdvanced
Python ML stackAdvanced
Model Evaluation & OptimizationIntermediate
Data AnalyticsIntermediate
Get in Touch

Let's Connect

Have a project in mind or want to discuss blockchain solutions? I would love to hear from you.