Ir al contenido
root@defcon-rd // since 2018 // SOC ACTIVE

DEFENSA · AUTOMATIZACION
· INVESTIGACION ·

DefConRD integra tres disciplinas: ciberseguridad ofensiva y defensiva, automatización de procesos e integraciones, e investigación y adaptación de nuevas tecnologías (AI/ML, IoT, blockchain, computación cuántica). Operamos desde Santo Domingo para RD, el Caribe y clientes remotos en LATAM.

/ engagements
0+
/ automations
0+
/ uptime_soc
99.97%
/ response_avg
<12m
root@defcon-rd:~# ./recon --target client.example.com
[+] Initiating passive reconnaissance...
[+] Resolved 3 subdomains, 2 MX records
[!] SSL cert expires in 14 days -- WARN
root@defcon-rd:~# scan --ports 1-65535 --stealth
[+] Open ports: 22, 80, 443, 8080, 9200
[!] Elasticsearch 9200 exposed -- CRITICAL
root@defcon-rd:~# report --format pdf --encrypt
[+] Report generated. Severity: HIGH
./services --list

Tres líneas de servicio. Una sola operación.

Ciberseguridad ofensiva y defensiva, automatización de procesos e investigación aplicada. Combinamos las tres cuando el reto lo requiere: un SOC automatizado, un pentest que alimenta playbooks SOAR, una línea de I+D que evalúa IA generativa para tu operación.

# svc/pentest
{ }

Pentest de Seguridad

Pruebas de intrusion manuales y automatizadas sobre aplicaciones web, redes, infraestructura cloud, API, mobile y Active Directory. Metodologia OWASP + PTES + MITRE ATT&CK.

WEB · API · RED · CLOUD · AD
# svc/soc
$ _

Monitoreo SOC 24/7

Centro de operaciones con analistas certificados monitoreando eventos, correlacionando con threat intel y respondiendo alertas en menos de 12 minutos.

SIEM · SOAR · MTTR < 12m
# svc/automation

Automatización de Procesos

RPA, scripts, integraciones y orquestación de workflows. Conectamos ERPs, CRMs, APIs y servicios cloud para eliminar trabajo manual repetitivo y reducir errores operativos.

RPA · API · n8n · Python
# svc/research

Investigación & Nuevas Tecnologías

Evaluamos AI/ML, IoT, blockchain, edge computing y computación cuántica. Construimos prototipos, medimos aplicabilidad y los integramos a tu operación cuando están listos para producción.

AI · IoT · BLOCKCHAIN · QUANTUM
# svc/compliance
[+]

Cumplimiento Normativo

Implementación y auditoría de controles para ISO 27001, NIST CSF, PCI-DSS, SOC 2, HIPAA y regulación local dominicana. Gap analysis, remediación y certificación.

ISO27001 · NIST · PCI · SOC2
# svc/ir
!!

Respuesta a Incidentes

Equipo de respuesta disponible 24/7 para contener, erradicar y recuperar. Forense digital, análisis de malware, comunicación con autoridades y lecciones aprendidas.

IR · FORENSE · MALWARE
./soc --live

Vemos los ataques antes que tu firewall

Nuestros analistas procesan miles de eventos por segundo y correlacionan con threat intel en tiempo real. Esto es lo que se ve en el SOC ahora mismo.

LIVE · THREAT FEED
[14:28:45] BLOCK Firewall rule auto-applied: 194.5.249.x blacklisted
[14:31:00] ATTACK Phishing URL detected in mail -- user notified
[14:33:12] ALERT Anomalous privilege escalation attempt -- domain admin
[14:35:00] INFO Compliance scan complete -- ISO 27001: 94% controls passing
[14:37:21] BLOCK MFA challenge issued -- session #4481, user=jose.r
[14:39:44] ATTACK SQL injection attempt against /api/v1/auth
[14:42:08] ALERT Outbound DNS to known C2 -- prod-web-03
$ ./request --type=engagement

Auditoría inicial sin costo

30 minutos con un senior security engineer. Analizamos tu superficie de ataque, identificamos los 3 riesgos más críticos y te entregamos un mini-reporte ejecutivo.

Reservar auditoria
CYBER ALERT
The Hacker News :: RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service The Hacker News :: Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots The Hacker News :: DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts The Hacker News :: Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data The Hacker News :: Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker The Hacker News :: Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants SANS ISC :: More Odd DNS Records: NIMLOC, (Tue, Jul 7th) The Hacker News :: What Changes When Your Software Supply Chain Includes AI Writing Your Code? InfoSecurity Magazine :: Suspected Chinese Threat Group Targets Universities via Vulnerable Roundcube Servers The Hacker News :: Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities InfoSecurity Magazine :: Scattered Spider’s Structure More Like a Cybercrime Collective Than a Unified Gang The Hacker News :: CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware The Hacker News :: BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA InfoSecurity Magazine :: UK Government Launches Cyber Resilience Pledge, Claiming 60+ Signatories InfoSecurity Magazine :: Hackers Exploit Maximum Severity Adobe ColdFusion Flaw InfoSecurity Magazine :: Phishing Attacks Targeted Facebook Users With Fake Verification Offer SANS ISC :: ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th) The Hacker News :: Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations The Hacker News :: 16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems The Hacker News :: Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure