
Veeam ONE: Your Backup Watchdog Just Ate Its Own Key
An authentication bypass in Veeam ONE opens your entire backup infrastructure to unauthenticated admin access, turning your safety net into a launchpad.
Securing digital infrastructures and building robust web solutions. Specialized in SOC operations, Penetration Testing, and Full-stack Development.
A snapshot of recent work — security tools, marketplaces, and automation. Click a card to see the full development timeline.
Daily cybersecurity writing — incident analysis, vulnerability disclosures, and defensive playbooks.

An authentication bypass in Veeam ONE opens your entire backup infrastructure to unauthenticated admin access, turning your safety net into a launchpad.

Qakbot is back, weaponizing a Windows DWM Core Library RCE (CVE-2024-30046) and a Mark-of-the-Web bypass (CVE-2024-30050).

Adobe ColdFusion just got hit with two critical RCEs, making your web servers easy pickings for unauthenticated attackers.
Tools and technologies I use to secure and build systems.
A timeline of my journey in Cybersecurity and IT Operations.