Skip to content
View JMarchiori13's full-sized avatar
🐕
uwu
🐕
uwu
  • Brazil

Block or report JMarchiori13

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
JMarchiori13/README.md

Typing SVG


🧠 About

Security researcher working on Windows offensive tradecraft: credential access, process injection, and adversary technique analysis. Everything I publish is validated in an isolated lab and mapped to MITRE ATT&CK, with expected results per hardening stage.

⚠️ All research here runs in isolated lab environments and is published for educational and authorized red team use only.


🔬 Featured Research

Project Focus ATT&CK
cred-harvester Credential access: LSASS, DPAPI, browser stores, offline SAM T1003.001/.002 · T1555.003/.004
process-injection-arsenal Process injection: remote thread, APC, hijacking, hollowing, stomping, mapping T1055 · T1055.012
osint-recon Passive OSINT recon framework in Rust: subdomains, DNS, ASN, CT, GitHub dorking, Brazilian context T1590 · T1591 · T1592 · T1593 · T1589 · T1596
defender-evasion-research Windows Defender evasion research: signatures, AMSI, ETW, cloud protection, 2026 verdict matrix T1562 · T1027
discord-recon Discord OSINT CLI in Rust: invite/guild/webhook/snowflake/user intel, read-only, keyless + bot tiers T1593.001 · T1589.002
xerxes-project Modular pentest harness in Rust: plugin architecture, port scanner, subdomain brute, web fuzzer, cred testing TA0007 · T1046 · T1595 · T1110
Technique × hardening matrix Injection technique comparison OSINT ATT&CK coverage Defender evasion verdict matrix

🛠️ Stack

Offensive & systems

Platform & tooling


📊 Stats


contribution snake

🇧🇷 Brazil · Automation && Maldev

Pinned Loading

  1. windows-credential-paths windows-credential-paths Public

    Documentação técnica dos caminhos onde senhas, credenciais e chaves SSH são armazenadas no Windows — referência para segurança defensiva, DFIR e hardening.

    2