Skip to content
View mbrg's full-sized avatar

Highlights

  • Pro
Block or Report

Block or report mbrg

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mbrg/README.md

Hi there 👋

twitter email me Mastodon

I'm a security researcher and engineer passionate about all things related to cloud, SaaS and no-code security.

Affiliations:

Currently working on:

  • Power-pwn - repurpose Microsoft-trusted executables, service accounts and cloud services to power a malware operation
  • Powerful - install a backdoor on O365 Power Platform enabling creating, triggering and deleting any arbitrary automation
  • ZapCreds - scan Zapier for shared credentials ready for exploit

Check out my latest and upcoming talks, come and say hi!

Pinned

  1. power-pwn power-pwn Public

    An offensive and defensive security toolset for Microsoft 365 Power Platform

    Python 427 37

  2. zenitysec/awesome-low-code zenitysec/awesome-low-code Public

    Awesome Low Code platforms, vendors, tools and resources

    295 29

  3. differential-privacy differential-privacy Public

    Naive implementation of basic Differential-Privacy framework and algorithms

    Python 45 14

  4. zenitysec/sphinx-rego zenitysec/sphinx-rego Public

    Sphinx extension that automatically documents Open Policy Agent Rego policies

    Python 23 2

  5. crd crd Public

    Your private secret storage, with a familiar dict API

    Python 8 33

  6. defcon30 defcon30 Public

    DEFCON30 Talk Material, References and Extra Bits

    35 4