Mor Davidovich

Vulnerability Research Team Lead at Jenovice

Rosh HaAyin, Center District, Israel
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

🤩
Rockstar
🎓
Top School
Mor Davidovich is a vulnerability researcher with six years of hands-on experience in offensive security, currently researching at Jenovice after leading red team engagements at EY and co-founding ShorSec. He combines practical pentesting and red-team experience with independent research into AV and defense bypasses, and publishes findings regularly on his pentesting blog. Comfortable writing his own tools, Mor has contributed notable modules to Recon-ng and Empire and extended the KrbRelayUp project to support shadow credentials and ADCS relay methods. His background spans network operations, penetration testing, and automated exploit development, giving him a strong operational grasp of Windows domain attacks. Actively preparing for OSCP after ECPPT and HDE, he blends curiosity-driven research with pragmatic, tool-centric engineering. Based in Rosh HaAyin, Israel, he often surfaces non-obvious attack paths by prototyping custom tooling to validate defensive assumptions.
code7 years of coding experience
job4 years of employment as a software developer
bookCSPT, HDE - Hacking Defined Experts, CSPT, HDE - Hacking Defined Experts at See Security: Cyber & Information Security College
github-logo-circle

Github Skills (14)

windows10
ldap10
exploit10
csharp10
kerberos10
dotnet-core10
audit-trail9
audit-logging9
auditing9
code-auditing9
dotnet9
net9
asp-net9
audit9

Programming languages (4)

C#PowerShellC++Python

Github contributions (5)

github-logo-circle
Dec0ne/KrbRelayUp

Apr 2022 - Aug 2022

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
Role in this project:
userSecurity Engineer
Contributions:2 reviews, 25 commits, 5 PRs in 3 months
Contributions summary:Mor primarily contributed to the development and improvement of a Windows domain privilege escalation tool. Their commits focused on refining the tool's functionality, including addressing missing files and removing hardcoded values. The user added support for shadow credentials and ADCS relay methods, extending the tool's capabilities. These modifications suggest a focus on exploiting and automating security vulnerabilities.
ldapprivilege-escalation
Dec0ne/AMS-BP

Nov 2019 - Nov 2021

AMSI Bypass for powershell
Contributions:44 commits, 42 pushes, 1 branch in 2 years
powershell
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial