<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Mahshooq Zubair - Software Engineer &amp; Security Researcher</title>
    <link>https://mahshooq.dev</link>
    <description>Portfolio, projects, security research, and blog posts by Mahshooq Zubair - Software Engineer specializing in full-stack development, cybersecurity, and AI solutions.</description>
    <language>en</language>
    <lastBuildDate>Sat, 18 Apr 2026 11:06:28 GMT</lastBuildDate>
    <atom:link href="https://mahshooq.dev/rss.xml" rel="self" type="application/rss+xml" />
    <image>
      <url>https://mahshooq.dev/opengraph-image</url>
      <title>Mahshooq Zubair</title>
      <link>https://mahshooq.dev</link>
    </image>
    <category>Software Engineering</category>
    <category>Cybersecurity</category>
    <category>Full-Stack Development</category>
    <category>AI Solutions</category>
    <copyright>Copyright 2026 Mahshooq Zubair</copyright>
    <managingEditor>kmahshooq@gmail.com (Mahshooq Zubair)</managingEditor>
    <webMaster>kmahshooq@gmail.com (Mahshooq Zubair)</webMaster>
    <generator>Next.js</generator>
    <ttl>1440</ttl>
    
    <item>
      <title><![CDATA[Connect - A platform for patients recruitment and clinical trials.]]></title>
      <description><![CDATA[Developed and optimized core features for patient recruitment. Integrated clinical trial workflows to streamline operations. Enhanced platform security to ensure data privacy and compliance.]]></description>
      <link>https://trialx.com/iconnect</link>
      <pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate>
      <category>Project</category>
      <guid isPermaLink="true">https://mahshooq.dev/projects#connect</guid>
    </item>
  
    <item>
      <title><![CDATA[CVE-2024-12880]]></title>
      <description><![CDATA[This vulnerability allows users to manipulate their access and retrieve API tokens of other tenants, potentially performing unauthorized actions and accessing sensitive data.]]></description>
      <link>https://huntr.com/bounties/c41c7eaa-554a-408c-96be-9dba56113970</link>
      <pubDate>Sat, 01 Mar 2025 00:00:00 GMT</pubDate>
      <category>CVE</category>
      <guid isPermaLink="true">https://huntr.com/bounties/c41c7eaa-554a-408c-96be-9dba56113970</guid>
    </item>
  
    <item>
      <title><![CDATA[Multi-Tenancy in Flask]]></title>
      <description><![CDATA[This blog post discusses the implementation of multi-tenancy in a Flask application using SQLAlchemy and Flask-Migrate. It covers the challenges faced, the solutions implemented, and the benefits of using a multi-tenant architecture.]]></description>
      <link>https://medium.com/@mahshooq/multi-tenancy-in-flask-f5a5960fc9e4</link>
      <pubDate>Mon, 01 Jan 2024 00:00:00 GMT</pubDate>
      <category>Blog</category>
      <guid isPermaLink="true">https://medium.com/@mahshooq/multi-tenancy-in-flask-f5a5960fc9e4</guid>
    </item>
  
    <item>
      <title><![CDATA[Truzta - AI-Driven Compliance Automation and Proactive Security Platform.]]></title>
      <description><![CDATA[Developed and optimized core components of Truzta Integrated security compliance, penetration testing, and source code review tools into a unified system. Integrated cloud infrastructure using CloudFormation & Lambda for automated cloud security management. Designed seamless third-party integrations, improving platform extensibility.]]></description>
      <link>https://truzta.com/</link>
      <pubDate>Sun, 01 Oct 2023 00:00:00 GMT</pubDate>
      <category>Project</category>
      <guid isPermaLink="true">https://mahshooq.dev/projects#truzta</guid>
    </item>
  
    <item>
      <title><![CDATA[CVE-2023-36809]]></title>
      <description><![CDATA[The application contains a stored XSS vulnerability, which allows an attacker to inject and execute malicious scripts within the application. The vulnerability occurs due to improper input validation and output encoding mechanisms, which fail to adequately sanitize and encode user-generated content.]]></description>
      <link>https://medium.com/@mahshooq/improper-neutralization-of-input-during-web-page-generation-stored-xss-in-kiwitcms-6d798f74d71</link>
      <pubDate>Tue, 01 Aug 2023 00:00:00 GMT</pubDate>
      <category>CVE</category>
      <guid isPermaLink="true">https://medium.com/@mahshooq/improper-neutralization-of-input-during-web-page-generation-stored-xss-in-kiwitcms-6d798f74d71</guid>
    </item>
  
    <item>
      <title><![CDATA[Sprigma - A form creating application with all available html fields and conditional fields.]]></title>
      <description><![CDATA[Developed Sprigma, a form creation application with all available HTML fields and conditional fields. Implemented dynamic form creation and submission with real-time validation. Designed and developed a user-friendly interface for easy form creation and management.]]></description>
      <link>https://sprigma.com</link>
      <pubDate>Sun, 01 Jan 2023 00:00:00 GMT</pubDate>
      <category>Project</category>
      <guid isPermaLink="true">https://mahshooq.dev/projects#sprigma</guid>
    </item>
  
    <item>
      <title><![CDATA[DocHours - A SAAS Based Multi-Tenant Hospital Management system.]]></title>
      <description><![CDATA[Architected and developed a scalable, SAAS-based multi-tenant healthcare management platform. Optimized database performance, improving system efficiency and reducing load times. Built a CI/CD pipeline, streamlining deployments and reducing manual errors. Implemented AI-powered prescription suggestions, enhancing doctor-patient interaction.]]></description>
      <link>https://dochours.com</link>
      <pubDate>Mon, 01 Aug 2022 00:00:00 GMT</pubDate>
      <category>Project</category>
      <guid isPermaLink="true">https://mahshooq.dev/projects#dochours</guid>
    </item>
  
    <item>
      <title><![CDATA[R3C0Nizer-v2 - A workflow orchestration tool for Pentesters and Bug Hunter.]]></title>
      <description><![CDATA[Developed a highly customizable security scan orchestration tool, enabling pentesters to define custom workflows. Enabled distributed scanning, supporting multi-system execution for faster results. Supported internal network scanning, without exposing sensitive assets to the internet. Continuous monitoring & scheduled scans, ensuring persistent security assessment.]]></description>
      <link>https://github.com/initcrew/R3C0Nizer-v2</link>
      <pubDate>Sat, 01 Jan 2022 00:00:00 GMT</pubDate>
      <category>Project</category>
      <guid isPermaLink="true">https://mahshooq.dev/projects#r3c0nizer-v2</guid>
    </item>
  
  </channel>
</rss>