Ir al contenido
./about --team

EQUIPO · CIBERSEGURIDAD
· AUTOMATIZACION · I+D+i

Somos un equipo dominicano multidisciplinario que combina ciberseguridad ofensiva y defensiva, automatización de procesos e integraciones, e investigación y adaptación de nuevas tecnologías. Operamos desde Santo Domingo para República Dominicana, el Caribe y clientes remotos en LATAM y USA.

./stats --team

El equipo en numeros

/ founded
2018
/ engineers
0+
/ clients
0+
/ countries
0
./team --members

Senior Engineers

El equipo senior combina certificaciones de ciberseguridad (OSCE, OSCP, GPEN, CISSP, ISO 27001 LA) con experiencia en desarrollo, integración e investigación aplicada. Publicamos research en Black Hat, DEF CON y OWASP LATAM.

@ lead_red_team
Carlos M.
Red Team Lead · 14 anos
OSCEOSCPCRTO
@ lead_soc
Ana R.
SOC Director · 11 anos
GCIHGCFACISSP
@ lead_ir
Pedro S.
Incident Response Lead · 9 anos
GCFAGNFAOSCP
@ lead_automation
David K.
Automation Engineering Lead · 10 anos
AWS SAAPythonn8n
@ lead_research
Jose T.
I+D+i / Threat Intel · 8 anos
OSCPGPENGXPN
@ lead_ai_ml
Sofia M.
AI/ML & Data Engineering Lead · 7 anos
TensorFlowPyTorchAWS ML
@ lead_compliance
Maria L.
Compliance Director · 12 anos
ISO 27001 LACISACISM
@ lead_appsec
Luis V.
AppSec Lead · 7 anos
OSWEBSCPCSSLP
./values --manifesto

Como trabajamos

# v/01

Offense informs defense

Probamos lo que predicamos. Nuestro equipo rojo se rota al azul y viceversa cada 6 meses.

# v/02

Evidencia > opinion

Todo lo que entregamos tiene PoC, captura, timestamp y linea de comando reproducible.

# v/03

Disclose responsibly

Coordinated disclosure. Nunca publicamos un hallazgo sin que el cliente tenga tiempo razonable para remediar.

# v/04

Automatizar antes de escalar

Antes de agregar mas personas, automatizamos. El conocimiento que se repite debe quedar en codigo ejecutable.

# v/05

Investigacion con proposito

Solo investigamos lo que tiene probabilidad real de llegar a produccion. Sin vanity research.

# v/06

Open source cuando se puede

Publicamos herramientas, integraciones y research en github.com/defconrd para contribuir a la comunidad.

CYBER ALERT
The Hacker News :: RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service The Hacker News :: Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots The Hacker News :: DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts The Hacker News :: Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data The Hacker News :: Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker The Hacker News :: Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants SANS ISC :: More Odd DNS Records: NIMLOC, (Tue, Jul 7th) The Hacker News :: What Changes When Your Software Supply Chain Includes AI Writing Your Code? InfoSecurity Magazine :: Suspected Chinese Threat Group Targets Universities via Vulnerable Roundcube Servers The Hacker News :: Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities InfoSecurity Magazine :: Scattered Spider’s Structure More Like a Cybercrime Collective Than a Unified Gang The Hacker News :: CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware The Hacker News :: BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA InfoSecurity Magazine :: UK Government Launches Cyber Resilience Pledge, Claiming 60+ Signatories InfoSecurity Magazine :: Hackers Exploit Maximum Severity Adobe ColdFusion Flaw InfoSecurity Magazine :: Phishing Attacks Targeted Facebook Users With Fake Verification Offer SANS ISC :: ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th) The Hacker News :: Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations The Hacker News :: 16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems The Hacker News :: Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure