Skip to content
View maxmoodycyber's full-sized avatar
πŸ™‚
The G Hub B)
πŸ™‚
The G Hub B)
  • United Kingdom

Block or report maxmoodycyber

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
maxmoodycyber/README.md

Max Moody | Offensive Security Specialist & Cyber Threat Hunter

AbuseIPDB Contributor Badge

About Me

Cybersecurity professional with a red-team mindset focused on penetration testing, network vulnerability assessment, and threat intelligence. I develop specialized tools for OSINT investigations, DDoS protection, and security automation on Linux environments.


πŸ›‘οΈ Expertise

Offensive Security

  • Penetration Testing: Comprehensive security assessments using industry-standard tools and custom exploits
  • Network Scanning & Enumeration: Development of specialized scanners for threat detection and vulnerability assessment
  • OSINT Investigations: Advanced techniques for gathering actionable intelligence from public sources

Defensive Measures

  • DDoS Mitigation: Implementation of sophisticated protection strategies using Cloudflare and custom solutions
  • Threat Modeling: Identification of potential attack vectors and implementation of countermeasures
  • Security Automation: Creation of streamlined workflows for rapid incident response

πŸ”§ Technical Arsenal

skills = {
    "languages": ["Python", "Bash", "Go"],
    "offensive_tools": ["Metasploit", "Nmap", "Burp Suite", "Custom Scanners"],
    "defensive_tools": ["Wireshark", "Cloudflare", "Suricata", "OSSEC"],
    "environments": ["Kali Linux", "Ubuntu", "Arch Linux"],
    "methodologies": ["OSINT", "Network Mapping", "Vulnerability Assessment", "Exploit Development"]
}

πŸš€ Featured Projects

Advanced network scanner leveraging masscan to identify and evaluate active Ollama instances across the internet, enhancing threat detection capabilities.

# Key features
- High-performance scan techniques
- Detailed vulnerability assessment
- Comprehensive reporting

PoC utility demonstrating the exploitation of Valve Source Engine servers as DDoS amplification vectors, highlighting the intersection of offensive and defensive security.

Robust OSINT tool utilizing the BT Phonebook with ripgrep for rapid extraction of intelligence from PDFs, optimized for security investigations.

Implementation of ASN blocking, geoblocking, and other techniques for robust web infrastructure protection via Cloudflare.

Streamlined OSINT tool designed for aggregating and analyzing social media data linked to specific usernames.

Security tool using Selenium to create precise webpage replicas for phishing awareness training and security analysis.


πŸ” Current Research & Development

  • Advanced Evasion Techniques: Developing methodologies to bypass modern detection systems
  • Vulnerability Hunting: Researching vulnerabilities in common network protocols
  • DDoS Evolution: Creating next-generation mitigation strategies for emerging attack vectors and researching common threats
  • Automated Threat Intelligence: Building systems to collect, analyze, and act on threat data

πŸ“Š GitHub Stats

Top Languages


"The best defense is understanding the offense."

Pinned Loading

  1. Open-Ollama-Scanner Open-Ollama-Scanner Public

    A network scanner leveraging masscan to locate running and usable Ollama instances across the internet.

    Python 1

  2. BT-Phonebook-Lookup BT-Phonebook-Lookup Public

    A UK whitepages alternative which leverages the BT Phonebook and ripgrep to quickly parse through PDFs to find data on people, phone numbers, businesses and addresses

    Python

  3. VSE-UDP-Amplification-Scanner VSE-UDP-Amplification-Scanner Public

    A POC for using Valve Source Engine servers as a UDP DDoS amplification attack vector

    Python 2 1

  4. kittysint kittysint Public

    A basic OSINT tool for gathering social media linked to a username

    Python 2

  5. Site-Cloner Site-Cloner Public

    A 1 to 1 webpage cloner using selenium

    Python 1

  6. Cloudflare-DDOS-Protection Cloudflare-DDOS-Protection Public

    Ways to protect your website via Cloudflare through ASN blocking, geoblocking and more.

    5 2