- 🏴☠️ Hacker and Speaker.
- 🦾 DEF CON 5411 / BCA LTD Founder.
- 🦮 My partner in crime is a Golden Retriever.
- Contact
| # | Date | Conference | 🏳 | Talk |
|---|---|---|---|---|
| 1 | 2018 | XTREMESEC Brazil | 🇧🇷 | 🚔 I Fought the Law and the Law lost |
| 2 | 2018 | ROADSEC Joao Pessoa | 🇧🇷 | 🚔 I Fought the Law and the Law lost |
| 3 | 2018 | DEF CON 26 Las Vegas (RV) | 🇺🇸 | 🚔 I Fought the Law and the Law lost |
| 4 | 2018 | DEF CON 26 Las Vegas (DDV) | 🇺🇸 | 💽 Hacking GlusterFS with GEVAUDAN |
| 5 | 2018 | DEVFEST Siberia | 🇷🇺 | 🐋 Hacking Docker with PAZUZU |
| 6 | 2019 | DragonJAR Manizales | 🇨🇴 | 🛂 ACME: American Coyotaje in the Modern Era |
| 7 | 2019 | P0SCon Urmía | 🇮🇷 | ☢️ Meltdown: Nuclear Secrets, Lies & Cyberweapons |
| 8 | 2020 | DC7831 Nizhny Nóvgorod | 🇷🇺 | 🚔 I Fought the Law and the Law lost |
| 9 | 2020 | Texas Cyber Summit | 🇺🇸 | 🦠 Propaganda and Surveillance during a Pandemic |
| 10 | 2020 | DEF CON 28 Las Vegas (RTV) | 🇺🇸 | ⌨️ Evil Genius: Why you shouldn't trust that keyboard |
| 11 | 2020 | DEF CON 28 Las Vegas (RTV) | 🇺🇸 | 🔉 Sounds Legit: Why you shouldn't trust that speaker |
| 12 | 2020 | DEF CON 28 Las Vegas (HHV) | 🇺🇸 | 🔧 onkeypress="hack();" |
| 13 | 2020 | DEF CON 28 Las Vegas (RV) | 🇺🇸 | 🦠 Propaganda and Surveillance during a Pandemic |
| 14 | 2020 | BSides Newcastle | 🇬🇧 | ⚡ Charge!: Why you shouldn't trust that power bank |
| 15 | 2020 | DragonJAR Manizales | 🇨🇴 | 🚔 I Fought the Law and the Law lost |
| 16 | 2020 | EC-Council Hacker Halted | 🇺🇸 | 🛂 ACME: American Coyotaje in the Modern Era |
| 17 | 2020 | GrayHat | 🇺🇸 | ⚡ Charge!: Why you shouldn't trust that power bank |
| 18 | 2020 | GrayHat | 🇺🇸 | 🧠 Malicious Learning: Generating fake news and propaganda with ML |
| 19 | 2020 | YASCon | 🇮🇳 | 🔐 BumpKey: A hardware Swiss Knife for RedTeaming (Workshop) |
| 20 | 2020 | YASCon | 🇮🇳 | |
| 21 | 2020 | BSides Islamabad | 🇵🇰 | 🔐 BumpKey: A hardware Swiss Knife for RedTeaming (Talk) |
| 22 | 2020 | HoneyCon | 🇪🇸 | 🚔 I Fought the Law and the Law lost |
| 23 | 2020 | HoneyCon | 🇪🇸 | 🦠 Propaganda and Surveillance during a Pandemic |
| 24 | 2021 | CONHESI | 🇵🇪 | 🦠 Propaganda and Surveillance during a Pandemic |
| 25 | 2021 | BSides Panamá | 🇵🇦 | 🎙️ Mime: Hacking digital assistants without saying a word |
| 26 | 2021 | Kerala Police Cyberdome | 🇮🇳 | 🇦🇷 TangoLeaks |
| 27 | 2021 | P0SCon Urmía | 🇮🇷 | 🛡️ A visit to the Armory: Building your own Combat Hardware |
| 28 | 2021 | P0SCon Urmía | 🇮🇷 | 🗣️ VKG: A PsyOps Framework |
| 29 | 2021 | Machine Learning Utah | 🇺🇸 | 🧠 Malicious Learning: Generating fake news and propaganda with ML |
| 30 | 2021 | DEF CON 29 Las Vegas (AV) | 🇺🇸 | 🤖 Everything is a C2 if you're brave enough |
| 31 | 2021 | DEF CON 29 Las Vegas (RV) | 🇺🇸 | 🏹 Venator: Hunting & smashing trolls on Twitter |
| 32 | 2021 | DragonJAR Manizales | 🇨🇴 | 🏹 Venator: Hunting & smashing trolls on Twitter |
| 33 | 2021 | Ruby Kaigi | 🇯🇵 | 💎 Crafting exploits, tools and havoc with Ruby |
| 34 | 2021 | BugCon | 🇲🇽 | 🏹 Venator: Hunting & smashing trolls on Twitter |
| 35 | 2021 | EC-Council Hacker Halted | 🇺🇸 | 🏹 Venator: Hunting & smashing trolls on Twitter |
| 36 | 2021 | ROOTCON 15 | 🇵🇭 | 🛡️ A visit to the Armory: Building your own Combat Hardware |
| 37 | 2021 | Texas Cyber Summit | 🇺🇸 | 🤖 Everything is a C2 if you're brave enough |
| 38 | 2021 | Hacking Bolivia | 🇧🇴 | 🏹 Venator: Hunting & smashing trolls on Twitter |
| 39 | 2022 | DEF CON 30 VR | 🇺🇸 | 🎲 Exploits & Dragons |
| 40 | 2022 | DragonJAR Manizales | 🇨🇴 | 🌉 Nuevas amenazas en el mundo crypto |
| 41 | 2023 | DEF CON 31 RV | 🇺🇸 | 🐴 Riding with the Chollimas |
| 42 | 2023 | Nerdearla 10 | 🇦🇷 | 🐴 Riding with the Chollimas |
| 43 | 2023 | 8.8 | 🇨🇱 | 🐴 Riding with the Chollimas |
| 44 | 2023 | Interbanking DevConnect | 🇦🇷 | 🏦 Amenazas digitales en la banca latinoamericana |
| 45 | 2024 | Nerdearla | 🇨🇱 | 🧙🏼♂️ You Shall Not Pass: Ataques RansomDDoS |
| 46 | 2024 | Insomni'Hack | 🇨🇭 | 🦮 mFT: Malicious Fungible Tokens |
| 47 | 2024 | TyphoonCon | 🇰🇷 | 🦮 mFT: Malicious Fungible Tokens |
| 48 | 2024 | TyphoonCon | 🇰🇷 | 🐴 Riding with the Chollimas |
| 49 | 2024 | i3 | 🇦🇷 | 🏦 Amenazas digitales en la banca latinoamericana |
| 50 | 2024 | Campus Party Sao Paulo | 🇧🇷 | 🇰🇵 K-Hackers |
| 51 | 2024 | BSides Las Vegas | 🇺🇸 | 💿 Ransomware BSides |
| 52 | 2024 | DEF CON 32 Adversary Village | 🇺🇸 | 🦮 mFT: Malicious Fungible Tokens |
| 53 | 2024 | DEF CON 32 La Villa Hacker | 🇺🇸 | 💿 Ransomware BSides |
| 54 | 2024 | BxSec | 🇧🇷 | 🇰🇵 K-Hackers |
| 55 | 2024 | Nerdearla Intersec | 🇦🇷 | ☠️ DEF CON Learnings |
| 56 | 2024 | Mind The Sec | 🇧🇷 | 💿 Ransomware BSides |
| 57 | 2024 | Hacking na Web Day | 🇧🇷 | 🇰🇵 K-Hackers |
| 58 | 2024 | DragonJAR Manizales | 🇨🇴 | 🇰🇵 PhishedIn |
| 59 | 2024 | EC-Council Hacker Halted | 🇺🇸 | 🇰🇵 PhishedIn |
| 60 | 2025 | BSides Las Vegas | 🇺🇸 | 💉 Locking Hands / LockSkin |
| 61 | 2025 | DEF CON 33 Data Duplication Village | 🇺🇸 | 🐑 More Fungible Threats |
| 62 | 2025 | DEF CON 33 Malware Village | 🇺🇸 | 🇰🇵 North Korea's Fur Shop |
| 63 | 2025 | DragonJAR 2025 | 🇨🇴 | 💉 Locking Hands / LockSkin |
| 64 | 2025 | Nerdearla 2025 | 🇦🇷 | 💉 Locking Hands / LockSkin |
| 65 | 2025 | EC-Council Hacker Halted | 🇺🇸 | 🇨🇳 How do you say help in Chinese? |
| 66 | 2025 | La Meetup III | 🇺🇾 | 💉 Locking Hands / LockSkin |
| 67 | 2025 | BSides Pyongyang | 🇰🇵 | 🇰🇵 North Korea's Zoo: Capturing Crabs, Snakes and Chollimas |
| 68 | 2026 | Insomni'Hack | 🇨🇭 | 📹 Smile! You're on Camera: Livestreaming from a DPRK Laptop Farm |
| 69 | 2026 | Forbes Uruguay | 🇺🇾 | 👔 Forbes Summit Revolución Fintech: Panel "Entre unos y ceros" |
| 70 | 2026 | DEF CON 34 Adversary Village | 🇺🇸 | 🤖 Haetae: An agent to take down DPRK C2 Servers (Talk) |
| 71 | 2026 | DEF CON 34 Malware Village | 🇺🇸 | 🇰🇵 North Korea's Safari: Poaching for Gophers, Armadillos and RATs |
| 72 | 2026 | DEF CON 34 Red Team Village | 🇺🇸 | 🤖 Haetae: An agent to take down DPRK C2 Servers (Workshop) |
| 73 | 2026 | DEF CON 34 Main Stage | 🇺🇸 | 📹 Smile! You're on Camera: Episode 2 |
| # | CVE | Vulnerability | Short Name | Score | Product | Link |
|---|---|---|---|---|---|---|
| 1 | CVE-2018-19466 | Information Disclosure | LEMPO | 9.8 | Portainer | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19466 |
| 2 | CVE-2019-11881 | Web Parameter Tampering | VanCleef | 4.7 | Rancher | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11881 |
| 3 | CVE-2020-8820 | Stored XSS | - | 5.4 | Webmin | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8820 |
| 4 | CVE-2020-8821 | HTML Injection | - | 5.4 | Webmin | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8821 |
| 5 | CVE-2020-12670 | XSS | - | 6.1 | Webmin | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12670 |
| # | Blog / Zine | Title | Language | Link |
|---|---|---|---|---|
| 1 | Bitso Quetzal Team | Disrupting an APT Phishing Campaign | English | https://quetzalteam.substack.com/p/evilslack |
| 2 | Bitso Quetzal Team | Drainers as a Service | English | https://quetzalteam.substack.com/p/drainers |
| 3 | Bitso Quetzal Team | Docks Malware | English | https://quetzalteam.substack.com/p/docks |
| 4 | Bitso Quetzal Team | Malware & Taxes | English | https://quetzalteam.substack.com/p/malware-and-taxes |
| 5 | Bitso Quetzal Team | Your Ad Here | English | https://quetzalteam.substack.com/p/your-ad-here |
| 6 | PagedOut Issue #4 | Malicious Fungible Tokens | English | https://pagedout.institute/download/PagedOut_004_beta1.pdf |
| 7 | PagedOut Issue #4 | Drainers | English | https://pagedout.institute/download/PagedOut_004_beta1.pdf |
| 8 | Bitso Quetzal Team | Profiling and Burning a DaaS campaign | English | https://quetzal.bitso.com/p/it-never-drains-but-it-pours |
| 9 | Phrack Issue #71 | Riding with the Chollimas | English | http://phrack.org/issues/71/3.html#article |
| 10 | Bitso Quetzal Team | Wallet Inspector | English | https://quetzal.bitso.com/p/wallet-inspector |
| 11 | Bitso Quetzal Team | Drainer Autopsies | English | https://quetzal.bitso.com/p/drainers-autopsies |
| 12 | tmp.Out #3 | QRLog Malware Analysis | English | https://tmpout.sh/3/ |
| 13 | Bitso Quetzal Team | Stealing Christmas | English | https://quetzal.bitso.com/p/stealing-christmas |
| 14 | Bitso Quetzal Team | A Phishing Trip | English | https://quetzal.bitso.com/p/a-phishing-trip |
| 15 | ANY.RUN Blog | InvisibleFerret Technical Analysis | English | https://any.run/cybersecurity-blog/invisibleferret-malware-analysis/ |
| 16 | ANY.RUN Blog | Zhong Stealer Technical Analysis | English | https://any.run/cybersecurity-blog/zhong-stealer-malware-analysis/ |
| 17 | PagedOut Issue #6 | Contagious Interview | English | https://pagedout.institute/download/PagedOut_006.pdf |
| 18 | ANY.RUN Blog | PE32 Ransomware Analysis | English | https://any.run/cybersecurity-blog/pe32-ransomware-analysis/ |
| 19 | ANY.RUN Blog | Mamona Ransomware Analysis | English | https://any.run/cybersecurity-blog/mamona-ransomware-analysis/ |
| 20 | ANY.RUN Blog | OtterCookie Technical Analysis | English | https://any.run/cybersecurity-blog/ottercookie-malware-analysis/ |
| 21 | Bitso Quetzal Team | Interview with the Chollima | English | https://quetzal.bitso.com/p/interview-with-the-chollima |
| 22 | Bitso Quetzal Team | Interview with the Chollima 2 | English | https://quetzal.bitso.com/p/interview-with-the-chollima-ii |
| 23 | ANY.RUN Blog | DEVMAN Ransomware Sample Analysis | English | https://any.run/cybersecurity-blog/devman-ransomware-analysis/ |
| 24 | ANY.RUN Blog | PyLangGhostRAT Sample Analysis | English | https://any.run/cybersecurity-blog/pylangghost-malware-analysis/ |
| 25 | HackRead | CoinMarketCap Spear-Phishing Campaign | English | https://hackread.com/fake-coinmarketcap-journalists-crypto-executives-spear-phishing/ |
| 26 | Bitso Quetzal Team | AMOS Stealer Dissection | English | https://quetzal.bitso.com/p/todays-host-amos-stealer |
| 27 | HackRead | Fake Empire Podcast Infects Crypto Influencers with AMOS Stealer | English | https://hackread.com/fake-empire-podcast-invites-crypto-macos-amos-stealer/ |
| 28 | ANY.RUN Blog | FunkSec Ransomware Sample Analysis | English | https://any.run/cybersecurity-blog/funklocker-malware-analysis/ |
| 29 | Bitso Quetzal Team | Interview with the Chollima 3 | English | https://quetzal.bitso.com/p/interview-with-the-chollima-iii |
| 30 | HackRead | North Korean Hackers Caught on Video Using AI Filters in Fake Job Interviews | English | https://hackread.com/north-korean-hackers-video-ai-filter-fake-job-interview/ |
| 31 | Bitso Quetzal Team | Interview with the Chollima 4 | English | https://quetzal.bitso.com/p/interview-with-the-chollima-iv |
| 32 | BlockThreat | Interview with the Chollima 3 | English | https://newsletter.blockthreat.io/p/blockthreat-week-44-2025 |
| 33 | MeFiltraron | Análisis de BellaCiao | Spanish | https://news.mefiltraron.com/p/edicion-especial-bellaciao |
| 34 | Bitso Quetzal Team | Interview with the Chollima 5 | English | https://quetzal.bitso.com/p/interview-with-the-chollima-v |
| 35 | Bitso Quetzal Team | Interview with the Chollima 6 | English | https://quetzal.bitso.com/p/interview-with-the-chollima-vi |
| 36 | ANYRUN | Recording Famous Chollima | English | https://any.run/cybersecurity-blog/lazarus-group-it-workers-investigation/ |
| 37 | Bitso Quetzal Team | Interview with the Chollima 7 (Final Chapter) | English | https://quetzal.bitso.com/p/final-chapter-interview-with-the |
| 38 | BlockThreat | Interview with the Chollima 7 (Final Chapter) | English | https://newsletter.blockthreat.io/p/blockthreat-week-51-2025 |
| 39 | MeFiltraron | Heretic Ransomware para TempleOS | Spanish | https://news.mefiltraron.com/p/edicion-especial-nada-es-sagrado |
| 40 | MeFiltraron | Skynet, un framework para Prompt Injection | Spanish | https://news.mefiltraron.com/p/edicion-especial-hackeando-ias |
| 41 | Bitso Quetzal Team | DPRK's Safari: Poaching for Armadillos | English | https://quetzal.bitso.com/p/north-koreas-safari-poaching-for |
| 42 | Bitso Quetzal Team | DPRK's Safari: Poaching for Gophers | English | https://quetzal.bitso.com/p/north-koreas-safari-poaching-for-064 |
| 43 | Bitso Quetzal Team | DPRK's Safari: Poaching for RATs | English | https://quetzal.bitso.com/p/north-koreas-safari-hunting-for-rats |
| 44 | ANY.RUN Blog | Mach-O Man Analysis | English | https://any.run/cybersecurity-blog/lazarus-macos-malware-mach-o-man/ |
| 45 | Bitso Quetzal Team | Interview with the Chollima VIII | English | https://quetzal.bitso.com/p/interview-with-the-chollima-viii |
| 46 | MeFiltraron | Cómo nació MeFiltraron | Spanish | https://news.mefiltraron.com/p/edicion-especial-numero-100 |
| 47 | Paged Out #9 | ClickFixBreak | English | https://pagedout.institute/download/PagedOut_009.pdf |
| # | Title | Language | Link |
|---|---|---|---|
| 1 | Chaotic Ruby | English | http://books.apple.com/us/book/chaotic-ruby/id6739544400 |
| 2 | Encriptar, Filtrar, Hackear | Spanish | https://encriptarfiltrarhackear.com |
| # | Interview | Language | Link |
|---|---|---|---|
| 1 | Vice Society | English & Spanish | https://github.com/mauroeldritch/vicesociety |
| 2 | Dark Vault | English & Spanish | https://github.com/mauroeldritch/darkvault |
| 3 | G0DHAND | Spanish | https://mefiltraron.com/interviews#G0DHAND |
| 4 | Stormous | Spanish | https://mefiltraron.com/interviews#stormous |
| Link |
|---|
| See Press Releases |



