Skip to content
View joaovarelas's full-sized avatar

Organizations

@xSTF @securitytoolkit

Block or report joaovarelas

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
joaovarelas/README.md

πŸ‘¨β€πŸ’» About Me

  • πŸ’Ό Cybersecurity Professional
  • 🏠 Based in Portugal
  • 🏞️ Mountain biking β‹… Traveling β‹… Reading

πŸ“« Connect

Website LinkedIn GitHub Email


πŸ› οΈ Tech Stack

πŸ’» Languages & Scripting

Rust C/C++ Assembly Python Java PowerShell Bash

βš”οΈ Cybersecurity Domains

Red Teaming Adversary Simulation EDR Evasion Reverse Engineering Vulnerability Research DevSecOps Cloud Security

πŸ›‘οΈ Platforms & Tools

Windows Linux Docker Virtualization Active Directory


🌟 Featured Projects

  • NTDShadow β€” Active Directory NTDS.dit extraction via Volume Shadow Copies (VSS).
  • Steal Token Rust β€” Weaponizing Windows API for token theft and process impersonation.
  • Obfuscator-LLVM-16.0 β€” Research on porting LLVM-based obfuscation to Rust to hinder static analysis.
  • NetExec contribution β€” Developed the Hyper-V enumeration module for the CrackMapExec successor.
  • Counter-Strike Game Hacking β€” Reverse engineering engine modules in C++ to develop memory-resident exploits.

πŸ“Š GitHub Stats

GitHub Stats


Pinned Loading

  1. Obfuscator-LLVM-16.0 Obfuscator-LLVM-16.0 Public

    Shell 146 26

  2. java-remote-class-loader java-remote-class-loader Public

    Java 31 6

  3. CVE-2021-30357_CheckPoint_SNX_VPN_PoC CVE-2021-30357_CheckPoint_SNX_VPN_PoC Public

    Proof-of-Concept for privileged file read through CheckPoint SNX VPN Linux Client

    6 1

  4. steal-token-rs steal-token-rs Public

    "steal-token-rs" is a Rust project that demonstrates how to obtain and impersonate a user's access token, allowing manipulation of system privileges.

    Rust 3 2

  5. ntdshadow ntdshadow Public

    Tool for extracting the NTDS.dit Active Directory database through Volume Shadow Copies (VSS).

    C++ 2 1

  6. AV/EDR Lab Environment Setup AV/EDR Lab Environment Setup
    1
    Credits c5pider
    2
    
                  
    3
    
                  
    4
    This may be helpful…, It was previously share but i have added few more things
    5