Co-Founder And Technical Director at The Institute for Security and Open Methodologies
Italy
Join Prog.AI to see contacts
Join Prog.AI to see contacts
Summary
🤩
Rockstar
Marco Ivaldi is a seasoned offensive security researcher and technical leader with over two decades of hands-on experience and a current role as Co-Founder and Technical Director at HN Security within the Humanativa Group. A core developer of the OSSTMM and co-author of security texts, he blends rigorous testing methodology with practical red team and exploit development skills, evidenced by public exploit collections and a modern tactical exploitation toolkit for Windows and Active Directory. His work spans penetration testing, vulnerability research, Frida-based mobile instrumentation, and SMB/SMTP/HTTP information-leakage tooling, reflecting deep system-internals expertise and polyglot programming of “weird machines.” A frequent speaker and long-time contributor to open security projects, he pairs project and team management with blue-chip research recognition such as Microsoft’s Most Valuable Security Researcher, making him as comfortable in technical trenches as in shaping security standards.
A handy collection of my public exploits, all in one place.
Role in this project:
Security Engineer
Contributions:74 commits, 83 pushes, 1 branch in 5 years 7 months
Contributions summary:Marco is focused on identifying and exploiting vulnerabilities in various software and systems. Their commits involve writing and modifying exploits for different platforms, including Linux, Solaris, and MySQL. The primary focus is on local privilege escalation and remote code execution, demonstrating a deep understanding of system internals and security vulnerabilities. The exploits target buffer overflows, format string bugs, and other vulnerabilities to gain unauthorized access or control.
Contributions:88 commits, 1 PR, 93 pushes in 5 years 5 months
Contributions summary:Marco primarily contributed to a toolkit designed for Windows and Active Directory tactical exploitation. Their work involved creating and refining tools for information gathering and brute-force attacks against SMB, SMTP, and HTTP protocols. The contributions included scripts for user enumeration, password policy retrieval, and mass web screenshot functionality, along with enhancements and style updates to existing tools. The user demonstrated a focus on exploiting vulnerabilities related to information leakage and SMB protocols within Windows environments.
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.