Skip to content
View exorrtech's full-sized avatar

Block or report exorrtech

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
exorrtech/README.md
EXORR

Typing SVG


Website LinkedIn Email


Fractional CISO specializing in Azure cloud and AI infrastructure security. Attack chain research, red team operations, and hardening what others leave exposed. Available per-engagement.


🛡️ Security Tools


🔬 Research

Finding Severity Target
Key Vault Secret Extraction via Privileged Identity Assignment Critical Azure Key Vault
Entra ID Privilege Escalation via Role Assignment High Microsoft Entra ID
OpenAI Prompt Injection via System Prompt Override High Azure OpenAI

Active research: AI Agent Attack Chains · Azure Lateral Movement · LLM Jailbreak Taxonomy


📜 Credentials

ISC2 CC MS-900 OSCP — 2026


⚡ Services

Fractional CISO · On-demand security leadership — strategy, policy, incident response

Void Scan · Attack surface mapping & subdomain reconnaissance

AI Red Team Sprint · LLM prompt injection & jailbreak testing

Full Security Audit · Azure/Entra ID misconfiguration assessment

Penetration Testing · Application & infrastructure pentesting


GitHub Stats GitHub Streak

Activity Graph

Walk with the void.

Popular repositories Loading

  1. recon-toolkit recon-toolkit Public

    Automated attack surface discovery pipeline — subfinder, httpx, nmap, nuclei integration

    Python 1

  2. exorrtech.github.io exorrtech.github.io Public template

    EXORR Security — Azure & AI security advisory website

    HTML

  3. exorr-prompt-fuzzer exorr-prompt-fuzzer Public

    Automated LLM prompt injection & jailbreak testing for red teams

    Python

  4. exorr-secret-scanner exorr-secret-scanner Public

    Detect leaked secrets, API keys & credentials in Git repos and directories

    Python

  5. exorr-azure-audit exorr-azure-audit Public

    Azure & Entra ID security misconfiguration scanner — RBAC, Key Vault, NSG, identity

    Python

  6. exorr-subdomain-monitor exorr-subdomain-monitor Public

    Continuous subdomain discovery, change tracking & monitoring for attack surface management

    Python