Adrian Puente Z.
Subscribe
Visitors
Buy me a coffee!
If you like the information I share consider donating to maintain this blog online.
Categories
- AI (2)
- AppSec (1)
- Articles (9)
- Capture the Flag (1)
- Claude Code (1)
- Code (12)
- Conferences (3)
- Databases (1)
- DevOps (1)
- Docker (2)
- Events (4)
- Experiences and Stories (11)
- Exploits (1)
- Hacking (13)
- HackTwitts (9)
- Inphographic (3)
- Phishing (1)
- Postgres (1)
- Presentations (4)
- Random (1)
- SAST (2)
- Security (23)
- Semgrep (1)
- VibeSecurityPatching (2)
Tags
- ai
- AppSec
- backtrack
- born2pwn
- bugcon
- c4an
- Claude
- Claude Code
- Claude Security
- Conferencias
- ctf
- David Llorens
- DevSecOps
- exploit
- fdisk
- geminicli
- hackarandas
- hacker
- hacking
- infographic
- infosec
- llm
- malware
- metasploit
- pentest
- poem
- privilege_escallation
- random
- remote shell
- remote_exec
- RiskPrioritization
- root
- sast
- security
- Security Automation
- seguridad
- seguridad informatica
- semgrep
- SemgrepMemories
- spam
- SSH
- unix
- vibecoding
- Vibe Coding
- wordpress
Archives
- April 2026 (1)
- March 2026 (1)
- September 2025 (1)
- April 2020 (1)
- March 2020 (2)
- August 2011 (1)
- March 2011 (1)
- November 2010 (1)
- October 2010 (1)
- August 2010 (3)
- June 2010 (5)
- May 2010 (3)
- April 2010 (4)
- March 2010 (2)
- January 2010 (1)
- October 2009 (1)
- April 2009 (2)
- June 2008 (1)
- May 2008 (1)
- April 2007 (3)
- March 2007 (2)
- February 2007 (6)
- January 2007 (3)
License
Hackarandas - Where the ideas disperse in bytes... by Adrián Puente Z. has the following license: Attribution-NonCommercial-ShareAlike 4.0 International
Author Archives: ch0ks
Beyond the Chatbot: How Claude Code Is Turning Security Audits Into a One-Command Workflow
Beyond the Chatbot: How Claude Code Is Turning Security Audits Into a One-Command Workflow Repository: https://github.com/ch0ks/hackarandas-claude-toolbelt Every seasoned DevSecOps lead knows the “security tax”: the grinding friction between a high-velocity engineering team and a security team buried under vulnerability fatigue. … Continue reading
Posted in AI, AppSec, Claude Code, Code, SAST, Security, Semgrep, VibeSecurityPatching
Tagged AppSec, Claude, Claude Code, Claude Security, DevSecOps, sast, Security Automation, semgrep, Vibe Coding
Leave a comment
From Noise to Notes: Orchestrating SAST with Developers through AI-Driven Remediation
From Noise to Notes: Orchestrating SAST with Developers through AI-Driven Remediation I recently had the incredible honor of presenting my talk, “From Noise to Notes: Orchestrating SAST with Developers through AI-Driven Remediation,” at BSidesSF 2026. It was an amazing experience, … Continue reading
Posted in AI, Conferences, Inphographic, Presentations, SAST, Security, VibeSecurityPatching
Tagged AI-DrivenRemediation, AppSec, BSidesSF, BSidesSF2026, DeveloperExperience, FalsePositives, MTTR, RiskPrioritization, sast, SecurityAutomation, SecurityMetrics, semgrep, SemgrepAssistant, SemgrepMemories, SemgrepPro, ShiftingLeft, VibeSecurityPatching
Leave a comment
Modernizing Security Patching with Vibe Security Patching and AI Assistance
Modernizing SAST with Vibe Security Patching and AI Assistance When joining a fintech role, one priority was building a SAST program that could scale with the business. SAST (Static Application Security Testing) analyzes source code, bytecode, or binaries without running … Continue reading
Secure by Default Postgres Docker Container for Development
In this post I will explain how to provide a secure postgres server docker container. This is useful when developing certain applications, for example a Django application. You can only run a this script and it will automatically detect if … Continue reading
Hacking Docker Remotely
The following is a write up for a challenge given during a Docker security workshop in the company I work for. It was a lot of fun and ironically I managed to complete the challenge not exactly how they were … Continue reading
Posted in Capture the Flag, Code, Docker, Hacking
Tagged ctf, docker, hacking, privilege_escallation, remote_exec
Leave a comment
Updating your WordPress Blog in a blink!
I know, I know… WordPress already has an option to update your blog with one click… but I love to use my SSH and I don’t trust FTP connections, so here is my manual solution for this. I hope you … Continue reading
Reunión CUM 2010
Hace poco el buen Nitrous me comentó que se iba a armar una reunión del CUM (Comunidad Underground Mexico, no piensen mal) y despues el buen HKM autor del sitio Hakim me comentó que podÃa difundirlo. Bueno, les hago extensiva … Continue reading
Posted in Conferences, Events, Hacking
Tagged comunidad underground, cum, hackarandas, hacker, hacking, hakim, hkm, infosec, nitrous, security, seguridad, seguridad informatica
Leave a comment
Conferencia HUM – BugCon2010
Quiero invitarlos a mi conferencia de HUM – Homemade Undetectable Malware que voy a dar en la BugCon2010 este viernes 29 de octubre del 2010. Es parte de lo que dà en la conferencia del ITESM pero voy a agregarle … Continue reading
Posted in Conferences, Events, Hacking, Presentations, Security
Tagged bugcon, Conferencias, hackarandas, hacking, malware, seguridad, seguridad informatica
2 Comments


