Eduardo Barbosa

Eduardo barbosa

bookmark on deepenrich
Followers of Eduardo Barbosa4000 followers
  • Timeline

  • About me

    Offensive Security Specialist at CISS S.A - Gestão para o Varejo

  • Education

    • Saint leo university

      2024 - 2028
      Bachelor's degree in cybersecurity

      The field of cybersecurity is concerned with protecting computers, networks, programs, data or personal information from unauthorized access, theft, or destruction. Professional careers in cybersecurity are evolving rapidly as new risks and threats to information and information networks emerge. The demand for skilled cybersecurity professionals is high, and is projected to continue growing as more companies and industries work to safeguard their information assets and computer networks.

    • City college of san francisco

      2023 - 2024
      Hacking mobile devices information technology

      Activities and Societies: Schedule - Motivation - The Worst Mobile Apps (DEF CON 28, 2020) - Introduction - Mobile Application (In)security - Analyzing Android Applications Part 1 - Attacking Android Applications Part 1 - Identifying and Exploiting - Android Implementation Issues Part - Writing Secure Android Applications - Analyzing iOS Applications Part 1 - Attacking iOS Applications Part 1 Mobile devices such as smartphones and tablets are now used for making purchases, emails, social networking, and many other risky activities. These devices run specialized operating systems have many security problems. This class will cover how mobile operating systems and apps work, how to find and exploit vulnerabilities in them, and how to defend them. Topics will include phone call, voicemail, and SMS intrusion, jailbreaking, rooting, NFC attacks, malware, browser exploitation, and… Show more Mobile devices such as smartphones and tablets are now used for making purchases, emails, social networking, and many other risky activities. These devices run specialized operating systems have many security problems. This class will cover how mobile operating systems and apps work, how to find and exploit vulnerabilities in them, and how to defend them. Topics will include phone call, voicemail, and SMS intrusion, jailbreaking, rooting, NFC attacks, malware, browser exploitation, and application vulnerabilities. Hands-on projects will include as many of these activities as are practical and legal. Show less

  • Experience

    • Hackerone

      Jan 2020 - now
      Vulnerability researcher

      I perform tests daily on several systems written in different programming languages and I was able to find critical vulnerabilities in systems with great impact on several large companies that are present on HackerOne.

    • Ciss s.a - gestão para o varejo

      Aug 2021 - now
      Offensive security specialist

      Responsibilities:- Vulnerability Assessment and Penetration Testing (VAPT)- Exploitation and post-exploitation- Development of penetration testing tools- Cloud security assessments- Threat hunting and threat intelligence- Security research and tool development- Social engineering and phishing- IoT and embedded system testing- Advanced threat emulation- Malware testing and study- Reporting and documentation- Security and automation tools- Collaboration with the DevSecOps team- Collaboration with the Blue Team to improve our monitoring and alerting rules- Understanding critical flows and identifying security best practices- Validation and provision of recommendations for security vulnerabilities- Interact with different teams to prioritize actions and mitigate risks- Wireless and physical network exploration and Active Directory- Development of security training and processes- Investigate compliance and security standards- Incident response support Show less

    • Bugcrowd

      Feb 2022 - now
      Vulnerability researcher

      perform tests daily on several systems written in different programming languages and I was able to find critical vulnerabilities in systems with great impact on several large companies that are present on Bugcrowd.

    • Owasp® foundation

      Jan 2024 - now
      Community member and security project researcher

      I joined the Project Security as a volunteer.- Security architecture- Vulnerability analysis- Modeling of trees- Security by Design- Security in Applications- Cyber Threat Intelligence

    • Blackarch linux

      Feb 2024 - now
      Community member and pkgbuild developer

      Package Development (PKGBUILDs):Create and maintain PKGBUILD scripts to package and install software on BlackArchLinux.Regularly update existing packages to ensure compatibility, security fixes, and performance improvements.Community Collaboration:Actively engage with the user community to understand their needs and requests for new packages.Respond to package-related queries and issues, providing technical support and solutions.Testing and Verification:Perform quality testing on new and existing packages to ensure their proper functionality and integration with the BlackArchLinux system.Verify the security and stability of packages to ensure they meet distribution standards.Contribution to Project Development:Participate in discussions and decisions related to the development and direction of BlackArchLinux.Collaborate with other developers to improve processes, tools and documentation. Show less

  • Licenses & Certifications

  • Honors & Awards

    • Awarded to Eduardo Barbosa
      Vulnerability Researcher NASA - National Aeronautics and Space Administration Feb 2024 Nasa's letter of recognition for reporting vulnerability
  • Volunteer Experience

    • (NASA) - Vulnerability Disclosure Program

      Issued by NASA - National Aeronautics and Space Administration
      NASA - National Aeronautics and Space AdministrationAssociated with Eduardo Barbosa
    • Apple Security Bounty

      Issued by Apple
      AppleAssociated with Eduardo Barbosa
    • Microsoft Bug Bounty Program | MSRC

      Issued by Microsoft
      MicrosoftAssociated with Eduardo Barbosa
    • Google Vulnerability Reward Program

      Issued by Google
      GoogleAssociated with Eduardo Barbosa
    • Bug bounty Program

      Issued by Discord
      DiscordAssociated with Eduardo Barbosa
    • Meta Bug Bounty Program

      Issued by Meta
      MetaAssociated with Eduardo Barbosa
    • Github Collaborator

      Issued by BlackArch Linux
      BlackArch LinuxAssociated with Eduardo Barbosa