Marco Ivaldi

Co-Founder And Technical Director at The Institute for Security and Open Methodologies

Italy
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

🤩
Rockstar
Marco Ivaldi is a seasoned offensive security researcher and technical leader with over two decades of hands-on experience and a current role as Co-Founder and Technical Director at HN Security within the Humanativa Group. A core developer of the OSSTMM and co-author of security texts, he blends rigorous testing methodology with practical red team and exploit development skills, evidenced by public exploit collections and a modern tactical exploitation toolkit for Windows and Active Directory. His work spans penetration testing, vulnerability research, Frida-based mobile instrumentation, and SMB/SMTP/HTTP information-leakage tooling, reflecting deep system-internals expertise and polyglot programming of “weird machines.” A frequent speaker and long-time contributor to open security projects, he pairs project and team management with blue-chip research recognition such as Microsoft’s Most Valuable Security Researcher, making him as comfortable in technical trenches as in shaping security standards.
code9 years of coding experience
job21 years of employment as a software developer
languagesItalian, English, French, Croatian
github-logo-circle

Github Skills (32)

objective-c10
ios10
python10
mysql10
information-gathering10
vulnerability10
frida10
linux10
c1110
smb10
c1710
exploit10
exp10
active-directory10
solaris10

Programming languages (13)

PowerShellJavaCRustMakefileHTMLTypeScriptShell

Github contributions (5)

github-logo-circle
0xdea/exploits

Jul 2017 - Jan 2023

A handy collection of my public exploits, all in one place.
Role in this project:
userSecurity Engineer
Contributions:74 commits, 83 pushes, 1 branch in 5 years 7 months
Contributions summary:Marco is focused on identifying and exploiting vulnerabilities in various software and systems. Their commits involve writing and modifying exploits for different platforms, including Linux, Solaris, and MySQL. The primary focus is on local privilege escalation and remote code execution, demonstrating a deep understanding of system internals and security vulnerabilities. The exploits target buffer overflows, format string bugs, and other vulnerabilities to gain unauthorized access or control.
placebuffer-overflowmuslmysqlall-in-one
0xdea/tactical-exploitation

Sep 2017 - Jan 2023

Modern tactical exploitation toolkit.
Role in this project:
userSecurity Engineer
Contributions:88 commits, 1 PR, 93 pushes in 5 years 5 months
Contributions summary:Marco primarily contributed to a toolkit designed for Windows and Active Directory tactical exploitation. Their work involved creating and refining tools for information gathering and brute-force attacks against SMB, SMTP, and HTTP protocols. The contributions included scripts for user enumeration, password policy retrieval, and mass web screenshot functionality, along with enhancements and style updates to existing tools. The user demonstrated a focus on exploiting vulnerabilities related to information leakage and SMB protocols within Windows environments.
exploitationtacticalpenetration-testingactive-directoryinformation-gathering
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial