Skip to content
Avatar
💉
Gonzo Hacking
💉
Gonzo Hacking

Achievements

Achievements

Block or Report

Block or report MauroEldritch

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
MauroEldritch/README.md

About Me

  • 🏴‍☠️ Hacker and Speaker.
  • 🦾 Cybersecurity Architect.
  • 🐀 My villain pet is a Chinchilla (He is a villain too).

Talks

# Date Conference 🏳 Talk
0 2018 XTREMESEC Brazil 🇧🇷 🚔 I Fought the Law and the Law lost
1 2018 ROADSEC Joao Pessoa 🇧🇷 🚔 I Fought the Law and the Law lost
2 2018 DEF CON 26 Las Vegas (RV) 🇺🇸 🚔 I Fought the Law and the Law lost
3 2018 DEF CON 26 Las Vegas (DDV) 🇺🇸 💽 Hacking GlusterFS with GEVAUDAN
4 2018 DEVFEST Siberia 🇷🇺 🐋 Hacking Docker with PAZUZU
5 2019 DragonJAR Manizales 🇨🇴 🛂 ACME: American Coyotaje in the Modern Era
6 2019 P0SCon Urmía 🇮🇷 ☢️ Meltdown: Nuclear Secrets, Lies & Cyberweapons
7 2020 DC7831 Nizhny Nóvgorod 🇷🇺 🚔 I Fought the Law and the Law lost
8 2020 Texas Cyber Summit 🇺🇸 🦠 COVID-1984: Propaganda and Surveillance during a Pandemic
9 2020 DEF CON 28 Las Vegas (RTV) 🇺🇸 ⌨️ Evil Genius: Why you shouldn't trust that keyboard
10 2020 DEF CON 28 Las Vegas (RTV) 🇺🇸 🔉 Sounds Legit: Why you shouldn't trust that speaker
11 2020 DEF CON 28 Las Vegas (HHV) 🇺🇸 🔧 onkeypress="hack();"
12 2020 DEF CON 28 Las Vegas (RV) 🇺🇸 🦠 COVID-1984: Propaganda and Surveillance during a Pandemic
13 2020 BSides Newcastle 🇬🇧 Charge!: Why you shouldn't trust that power bank
14 2020 DragonJAR Manizales 🇨🇴 🚔 I Fought the Law and the Law lost
15 2020 EC-Council Hacker Halted 🇺🇸 🛂 ACME: American Coyotaje in the Modern Era
16 2020 GrayHat 🇺🇸 Charge!: Why you shouldn't trust that power bank
17 2020 GrayHat 🇺🇸 🧠 Malicious Learning: Generating fake news and propaganda with ML
18 2020 YASCon 🇮🇳 🔐 BumpKey: A hardware Swiss Knife for RedTeaming (Workshop)
19 2020 YASCon 🇮🇳 ⁉️ RedBaron: A framework to generate distractions and summon chaos
20 2020 BSides Islamabad 🇵🇰 🔐 BumpKey: A hardware Swiss Knife for RedTeaming (Talk)
21 2020 HoneyCon 🇪🇸 🚔 I Fought the Law and the Law lost
22 2020 HoneyCon 🇪🇸 🦠 COVID-1984: Propaganda and Surveillance during a Pandemic
23 2021 CONHESI 🇵🇪 🦠 COVID-1984: Propaganda and Surveillance during a Pandemic
24 2021 BSides Panamá 🇵🇦 🎙️ Mime: Hackeando asistentes digitales sin decir una palabra
25 2021 Kerala Police Cyberdome 🇮🇳 🇦🇷 TangoLeaks
26 2021 P0SCon Urmía 🇮🇷 🛡️ A visit to the Armory: Building your own Combat Hardware
27 2021 P0SCon Urmía 🇮🇷 🗣️ VKG: A PsyOps Framework
28 2021 Machine Learning Utah 🇺🇸 🧠 Malicious Learning: Generating fake news and propaganda with ML
29 2021 DEF CON 29 Las Vegas (AV) 🇺🇸 🤖 Everything is a C2 if you're brave enough
30 2021 DEF CON 29 Las Vegas (RV) 🇺🇸 🏹 Venator: Hunting & smashing trolls on Twitter
31 2021 DragonJAR Manizales 🇨🇴 🏹 Venator: Hunting & smashing trolls on Twitter
32 2021 Ruby Kaigi 🇯🇵 💎 Crafting exploits, tools and havoc with Ruby
33 2021 BugCon 🇲🇽 🏹 Venator: Hunting & smashing trolls on Twitter
34 2021 EC-Council Hacker Halted 🇺🇸 🏹 Venator: Hunting & smashing trolls on Twitter
35 2021 ROOTCON 15 🇵🇭 🛡️ A visit to the Armory: Building your own Combat Hardware
36 2021 Hacking Bolivia 🇧🇴 🏹 Venator: Hunting & smashing trolls on Twitter

CVEs

# CVE Short Name Score Product
1 CVE-2018-19466 LEMPO 9.8 Portainer
2 CVE-2019-11881 VanCleef 4.7 Rancher
3 CVE-2020-8820 Stored XSS 5.4 Webmin
4 CVE-2020-8821 HTML Injection 5.4 Webmin
5 CVE-2020-12670 XSS 6.1 Webmin

Podcasts

# Podcast Title Language Link
1 Se Tildó Confesiones de un Troll Spanish https://open.spotify.com/episode/7rul6ok4jPSvRaedUulPLs

Media

# Agency Title Language Link
1 TN Cómo funciona el aparato de propaganda en las redes sociales Spanish https://tn.com.ar/podcasts/2021/03/11/confesiones-de-un-troll-como-funciona-el-aparato-de-propaganda-en-las-redes-sociales/
2 InfoAMBA El señor de los Trolls Spanish https://www.infoamba.com.ar/el-senor-de-los-trolls-ariel-garbarz-seria-quien-maneja-los-trolls-k/
3 Más que Palabras El señor de los Trolls Spanish https://www.mixcloud.com/InfoAMBA/mas-que-palabras-19-de-febrero-eldritch/
4 La Opinión Semanario Ciberataque: hackearon la web municipal y filtraron datos de más de 12500 usuarios con sus claves Spanish https://www.laopinionsemanario.com.ar/noticia/ciberataque-hackearon-la-web-municipal-y-filtraron-datos-de-mas-de-12-500-usuarios-con-sus-claves/
5 Sin Galera Ciberataque a la Municipalidad de San Pedro Spanish https://youtu.be/RDY8CKNCvVY?t=849
6 La Opinión Semanario "El Gobierno no sabía que se habían filtrado los datos" Spanish https://www.laopinionsemanario.com.ar/noticia/ciberataque-el-gobierno-no-sabia-que-se-habian-filtrado-los-datos-y-deshabilito-el-acceso-de-los-12-500-usuarios/
7 La Opinión Semanario Ciberataque a la Municipalidad: "Es un hecho gravísimo" Spanish https://www.laopinionsemanario.com.ar/noticia/ciberataque-a-la-municipalidad-es-un-hecho-gravisimo-aseguro-el-especialista-que-detecto-la-filtracion-de-datos/
8 La Opinión Semanario Ciberataque a la Municipalidad: Los datos robados son sensibles Spanish https://www.laopinionsemanario.com.ar/noticia/ciberataque-a-la-municipalidad-los-datos-robados-son-sensibles-y-contienen-informacion-confidencial-de-mas-de-12-500-usuarios/
9 La Auténtica Defensa Polémica en San Pedro por hackeo y filtración de datos Spanish https://www.laautenticadefensa.net/183627
10 ClickPB O maior evento hacker da América Latina Portuguese https://www.clickpb.com.br/tecnologia/capital-paraibana-recebe-edicao-especial-do-maior-evento-hacker-da-america-latina-neste-sabado-235830.html
11 TecMundo O maior evento hacker da América Latina Inicia Portuguese https://www.tecmundo.com.br/seguranca/127182-roadsec-maior-evento-hacker-america-latina-inicia-tour-brasil.htm
12 WSCOM Joao Pessoa Recebe o Maior Evento Hacker Portuguese https://wscom.com.br/joao-pessoa-recebe-edicao-do-maior-evento/
13 Infobae Qué es el efecto 2038 Spanish https://www.infobae.com/america/tecno/2020/01/23/que-es-el-efecto-del-ano-2038-y-a-que-dispositivos-afectaria/
14 La Opinión Semanario Ciberataque a la Municipalidad: El Gobierno pidió tranquilidad Spanish https://www.laopinionsemanario.com.ar/noticia/ciberataque-el-centro-de-comercio-expreso-su-preocupacion-y-el-gobierno-pidio-tranquilidad/
15 La Opinión Semanario Ciberataque a la Municipalidad: postergan obligaciones Spanish https://www.laopinionsemanario.com.ar/noticia/tras-el-ciberataque-prorrogaron-vencimiento-de-seguridad-e-higiene-y-contactan-a-empresas-por-sus-declaraciones-juradas/
16 La Opinión Semanario Ciberataque a la Municipalidad: inauguran el sistema Tero Spanish https://www.laopinionsemanario.com.ar/noticia/ciberataque-habilitaron-un-sitio-web-para-que-los-usuarios-puedan-comprobar-si-fueron-afectados/
17 El Faro San Pedro: Con un ciberataque roban datos confidenciales Spanish https://colonbuenosaires.com.ar/elfaro/con-un-ciberataque-roban-datos-confidenciales-a-un-municipio-bonaerense/

Pinned

  1. Repository for "I Fought The Law and The Law Lost" talk. Featured on Recon Village @ DEFCON 26, Las Vegas (And many other conferences!)

    Shell 5 1

  2. lempo Public

    LEMPO (Ldap Exposure on POrtainer) is an exploit for CVE-2018-19466 (LDAP Credentials Disclosure on Portainer). Featured @ DevFest Siberia 2018

    Ruby 10 3

  3. GEVAUDAN Public

    Exploit for Red Hat / GlusterFS CVE-2018-1088 & CVE-2018-1112, featured @ DEFCON 26, Las Vegas!

    Ruby 7 4

  4. MELTDOWN Public

    Repository for my talk "Meltdown: Nuclear Secrets, Lies & Cyberweapons". Featured on p0scon Iran 2019.

    7

  5. ACME Public

    Repository for my talk "ACME: American Coyotaje in the Modern Era". Featured on Hacker Halted 2020.

  6. Repository for my talk "COVID-1984: Propaganda and Surveillance during a Pandemic". Also includes Venator.lua tool. Featured @ DEF CON 28.

    Java 4

44 contributions in the last year

Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec Jan Mon Wed Fri

Contribution activity

January 2022

MauroEldritch has no activity yet for this period.

Seeing something unexpected? Take a look at the GitHub profile guide.