Welcome to my GitHub repository. Here, you'll find a curated collection of projects that I've worked on throughout my journey.
I am a Pentester with solid experience in Software Engineering. I actively participate in Bug Bounty Programs, VDPs and CTFs, where I develop my Offensive Security skills. In addition to developing open-source tools focused on penetration testing and Bug Bounty programs.
I'm a Post Graduate student in Offensive Cybersecurity in Acadi-TI University. Certified in Pentest and Red Team by Ine (EJPT) and CyberWarfare Labs (CRTA, API-RTA, WEB-RTA, MCRTA). With experience in Software Development and Offensive Security.
I hold a Bachelor’s degree in Engineering Physics from the State University of Mato Grosso do Sul (UEMS). Throughout this program, I developed a rigorous foundation in Physics, Electronics, Materials Science, and Control and Automation.
As part of my academic trajectory, I participated in an international exchange program at Óbuda University in Budapest, Hungary, focusing on Information Technology Engineering.
Additionally, I completed nine semesters of Electronics and Telecommunications Engineering, where I gained extensive academic experience in Networking, Telecommunications, and Advanced Control Systems.
I am the founder of Tyto Security, an initiative dedicated to developing specialized tools for Offensive Security and Bug Bounty programs.
Tyto Security is an open-source initiative dedicated to developing offensive security tools and materials designed to streamline CTFs, Bug Bounty hunting, and professional penetration testing workflows. Beyond tool development, we are committed to advancing cybersecurity knowledge and fostering a more secure digital ecosystem through community-driven education and collaboration.
A summarized list of my main projects is the following:
| Projects | Description | Language |
|---|---|---|
| Rotz | Modular recon and vulnerability automation framework | |
| HackerOneScraper | Scraping tool for HackerOne structured scopes. | |
| HackerOneCsvGrabber | Tool to extract in scope assets from Hacker One CSVs. | |
| BugcrowdScraper | Scraping tool for Bugcrowd engagement scopes. | |
| BugcrowdCsvGrabber | Tool to extract in scope assets from Bugcrowd CSVs. | |
| vibed-coded-web-tools | As the name says mostly vibed coded web tools. | |
| vibed-coded-ctf-exploits | As the name says mostly vibed coded ctf exploits. | |
| vibed-coded-red-team-tools | As the name says mostly vibed coded red team tools. |
| Role | Languages |
|---|---|
| Back End | |
| Front End | |
| Quality Assurance | |
| Data Engineering | |
| Scripting Languages | |
| Databases | |
| CI/CD | |
| DevOps | |
| Pentest |





