8000 AvishaiEfrat (Avishai Efrat) · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
View AvishaiEfrat's full-sized avatar

Block or report AvishaiEfrat

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
AvishaiEfrat/README.md

Hi there 👋

  1. I'm a senior security researcher specializing in AI and low-code/no-code security at Zenity, and enthusiastic about all aspects of security.
  2. My current work is focusing on identifying vulnerabilities in organizations' Copilot M365, CoPilot Studio bots, and GenAI deployments and my experience spans across web security, anti-bot protection, OSINT, blockchain, and data engineering.
  3. I'm one of the main contributors of PowerPwn, using this user too (supporting an OS security tool has always been a dream of mine). I'm also the creator of the Copilot Studio Hunter module and co-creator of the Power Pages module in the tool.
  4. I also contribute to the GenAI attack matrix at ttps.ai (some of it has also been added to MITRE ATLAS).
  5. I've previously presented at BSidesTLV, Black Hat USA Arsenal and SecTor.

Some highlights from other public research and talks I've worked on:

  1. Copilot Studio discovery and data leaks
  2. Power Platform DLP bypasses
  3. Online dating services data leak #1
  4. Online dating services data leak #2
  5. BH 24 briefing (contributor)
  6. BH 24 Arsenal (contributor & presenter)
  7. SecTor 24 briefing (contributor & presenter)
  8. SecTor 24 Arsenal (contributor & presenter)
  9. Zenity Research blog

Pinned Loading

  1. power-pwn power-pwn Public

    Forked from mbrg/power-pwn

    An offensive security toolset for Microsoft 365 focused on Microsoft Copilot, Copilot Studio and Power Platform

    Python

  2. Ethereum-Payment-Splitter Ethereum-Payment-Splitter Public

    An Ether Payment Splitter for musical royalties. It's a test project done using Solidity & Javascript (including the Web3.js library).

    HTML 9 2

0