Whoami

Perfil profesional orientado a pentesting, ethical hacking y bug bounty. Aquí recopilo logros, estadísticas y experiencia real en plataformas y competiciones.

About me

Ingeniero de Telecomunicaciones con enfoque en ciberseguridad ofensiva, CTFs y seguridad web. Me interesa el análisis técnico y la divulgación mediante writeups y herramientas.

Pentesting Web Hacking Bug Bounty CTF
Highlights

Algunos logros:

🎤 Speaker SecAdmin 🏆 Finalist ECSC 🩸 HTB Bloods 💰 H1 Bounties

Timeline

Formación, experiencia y reconocimientos en una vista clara.

Estudio

2019

Graduated in Telecommunication Technologies Engineering from the University of Seville.

Trabajo

2019

Cybersecurity Specialist at Wellness Tech / IRIS Sentinel.

Ponencia

2019

Speaker at the SecAdmin 2019 conference.

CTF

2022

Finalist CTF Team Spain ECSC 2022 - INCIBE.

CTF

2022

Finalist CTF SecAdmin 2022.

Trabajo

2023

Pentester at Telefonica.

Trabajo

2024

I do bug bounty part-time.

CTF

2024

CyberCampUSAL Finalist - 2024.

Ponencia

2025

Talk at INCIBE Emprende about "Bug Bounty Fundamentals and Technical Reports” - 2025.

Pentesting — HackTheBox

Estadísticas extraídas en tiempo real desde tu integración API.

Name
Country
User owns
System owns
Bloods
/
Points
Rank
(/7)
Hall of Fame
Machines
Owned 0 / —
User System Bloods /
Challenges
Owned 0 / —
Points Rank HoF

Pentesting — PortSwigger

Progreso en learning paths y laboratorios por dificultad.

Vulnerability Labs

Apprentice

100% (59/59)

Practitioner

93% (160/172)

Expert

72% (28/39)

Bug Bounty — HackerOne

Badges y milestones conseguidos por reports válidos y actividad sostenida.

Bounty Hunter
November 7, 2024 — Ten bounties received
TrailBlazer
August 3, 2023 — Was the first of multiple reporters to report a vulnerability
Insecticide
August 3, 2023 — First report closed as resolved
Publish or Perish
August 14, 2023 — Publicly disclosed a report
Good Samaritan
October 6, 2023 — Resolved a report with a team that doesn't pay bounties
Diversity
October 18, 2024 — Reported bugs to 5 different teams
Streaker
July 3, 2024 — Two reports in a row were closed as resolved
Greybeard
December 3, 2024 — Submitted valid reports 3 months in a row
Patient
February 24, 2025 — Waited more than six months for a report to get resolved
A2: Broken Authentication
November 25, 2025 — Reported a Broken Authentication vulnerability
Milestone-program-Level-1
October 29, 2025 — Achieved level 1 in Milestone Program
A5: Broken Access Control
December 3, 2024 — Reported a valid Broken Access Control vulnerability
A7: Cross-Site Scripting (XSS)
July 3, 2024 — Reported a valid Cross-Site Scripting (XSS) vulnerability
A3: Sensitive Data Exposure
June 20, 2024 — Reported a valid Sensitive Data Exposure vulnerability
A1: Injection
August 3, 2023 — Reported a valid Injection vulnerability

CTF

Aquí podrás añadir ranking, equipos, eventos y writeups de competición.

CTF Team Spain — ECSC

2022
Ciudad Madrid
Resultado Finalista
Info Link

SecAdmin CTF

2022
Ciudad Sevilla
Resultado Finalista
Info Link

CyberCampUSAL

2024
Ciudad Salamanca
Resultado Finalista
Info Link

CERTS

Certificaciones, formación y objetivos futuros.

eJPT PNPT OSCP (in progress) Web Security