"A chain is only as strong as its weakest link." -- Charles A. Lindbergh
"I have seen the fnords." -- Historical graffiti on Anarchy Bridge, UK
"Testing can prove the presence of bugs, but not their absence." -- Edsger W. Dijkstra
"The enemy knows the system." -- Claude E. Shannon
"Perfection is achieved when there is nothing left to remove." -- Antoine de Saint-Exupery
"The GNU people aren't evil." -- /usr/src/linux/Documentation/CodingStyle
"You can't argue with a root shell." -- Felix "FX" Lindner
"Well, until that perfect world you need red team analysis" -- @thegrugq_ebooks
"Never whistle while you're pissing." -- Hagbard Celine
"When cryptography is outlawed, bayl bhgynjf jvyy unir cevinpl." -- Anonymous


[0x01] Who's Raptor?

I'm a seasoned information security researcher and consultant, specializing in networking (from old school X.25 to modern Wi-Fi), telephony (POTS, mobile, VoIP), and cyber-physical systems (SCADA and process control technologies in general). I work as Team Manager and Principal Security Advisor at @Mediaservice.net (Cybaze), a leading security advisory firm based in Italy, where I'm in charge of project and team management, penetration testing, compliance audits, vulnerability research, and exploit development. Basically, I'm a professional hacker and project manager. I hold the following certifications: As member of the ISECOM Core Team, I'm involved in the development of the Open Source Security Testing Methodology Manual (OSSTMM), the international standard for performing security testing. I'm also contributing to the Hacker Highscool (HHS), another ISECOM project promoting security awareness for teens. As a technical writer, I've published articles on many computing magazines and I've co-authored some books, such as the popular Hacking Exposed Linux. Back in the 90s, I co-founded Linux&C (the first Italian magazine about Linux and open source), Linux Pratico, and H&C.

This is my personal homepage and playground. Take a look below for (new) stuff. Please send your feedback to: Marco Ivaldi <raptor[at]0xdeadbeef.info> (PGP key updated on 2014-07-01).

[0x02] Projects

Here's the list of my current research projects related to ethical hacking and information security.

[0x04] Publications

This is a collection of books, articles, research papers, presentations, and advisories I've written or contributed to. A list of relevant mailing lists is also included. Links to modern social media platforms are in the footer of this homepage.

Articles and Books

Interviews and Mentions Advisories Related Works Mailing Lists

[0x08] Exploits

As a hacker and programmer of weird machines, I study how things can go wrong. Here are some of the exploits I've developed during my vulnerability research activities (for educational purposes only).


Solaris/SPARC Solaris/x86 AIX OpenBSD Windows Oracle MySQL Miscellaneous

[0x10] Code

I'm a polyglot programmer and this section is dedicated to some of the programs and scripts I've written. Most of this stuff is experimental, standard disclaimer applies.

New School

Old School Exploitation Esoteric

[0x20] Configurations

Here are some configuration templates for common information security solutions. YMMV.

Packet Filters

Application Firewalls Virtual Private Networks

[0x40] /dev/random

A collection of other random stuff.

