Daniel Jesus

I've always been passionate about technology. For years I have been producing electronic music themes, developing websites and growing professionally. I evolved! I raised the bar in the area of development. I went from programmer to webmaster! I have learned new technologies, I have improved on several.
Today I am Full Stack Developer.

I had the opportunity to be present in some of the best projects in the world. I developed systems, improved online stores, contributed to a faster web and better navigation.

Over time, I run complete web systems. I built networks, systems in the cloud, and solved problems. I integrated SIEM systems. I have perfected myself in Security and I have obtained a Masters Degree in Cyber Security. I became Pen Tester, Ethical Hacker, Reverse Engineer and I have perfected myself in Security Researcher ...

Today, I develop and protect systems, but mostly, I help my clients grow.

What I Do

Ecommerce

I develop online stores, being my main focus. It's in ecommerce that I feel good. Developing systems based on performance and usability.

Web Design

While Full Stack Developer, I apply my knowledge of each area to the design and usability of the websites. I am meticulous about development.

Performance Optimization

Performance optimization is one of the best performing factors in SEO and UX. Optimize your project in either the code or the minimum system requirements.

SysAdmin

I manage servers and databases. I update and configure servers, cloud systems and systems in AWS. Implement network design, load balancers and multi-server solutions.

CyberSec

I am Pen Tester, Ethical Hacker and Security Researcher. I took a Masters degree in CyberSecurity. I apply secure development systems to my projects.

SDLC

SDLC or Software Development Life Cycle is the life cycle of a project. The cycle must be well defined and structured primarily in terms of safety.

Resume

16 Anos de Experiência

Formação

2016 - 2018
Universidade Camilo José Cela + Deloitte CyberSOC

Master in Cybersecurity

I started my Master's degree in Cyber Security at this educational institution, in partnership with Deloitte CyberSOC Academy.The areas of study included Ethical Hacking, Pen Testing, Reverse Engineering, Forensic Analysis, SIEM Technologies, Mobile Sec, Secure Development, among other topics in the area of security.The work / thesis required for the completion of the course, guaranteed me a mention of honor for being a work of prominence in the area of physical intrusion.

2017-02 - 2017-08
Social27

Ethical Hacker and Penetration Tester

https://www.cybertraining365.com/CV/1C0B97253F

2017-02 - 2017-04
Social27

Certified Security Analyst

http://www.cybertraining365.com/CV/765DBCA3E7

2017-02
Social27

Kali 101

https://www.cybertraining365.com/CV/CA3F23D28D

2016-11 - 2017-02
Social27

Certified Application Code Defender

https://www.cybertraining365.com/CV/38CADF19E3

2016
University of Camilo José Cela

Validation of Competences

I did validation of competences and respective examinations of aptitude, which gave me an equivalence to a degree in Computer Engineering.

2002 - 2003
CIDEC

Multimedia and Webdesign

Multimedia and Webdesign course, finalized in 2003 with a use of 18 values.

1999 - 2002
Marques de Castilho

High School

I finished secondary education in 2002 in the area of Technologies.

1996 - 1999
Marques de Castilho

Third Cycle

1994 - 1996
Fernando Cadeira

Segundo Ciclo

1990 - 1994
Chãs

Primeiro Ciclo

Professional Experience

2015 - Today
Brazilian Bikini Shop

Full Stack Developer

I became Full Stack Developer at Brazilian Bikini Shop. Currently, the whole code part, whether backend or frontend is in my charge.I integrate the system with commercial partners, develop API clients and integrate in external systems.I deal with databases, optimize performance and manage domains and backups.I develop micro-services and integrate background tasks.

2014 - Today
Loja de Biquini

Full Stack Developer

I develop the whole system and integrations indispensable to the business. I create 99% of custom code to optimize the daily tasks of management and sales teams.

2014 - 2015
Brazilian Bikini Shop

Webmaster

I entered as webmaster in what would be the company with whom I developed and improved my work and knowledge.The diversity of services, techniques and internationalization made it possible to create external integration skills, APIs, programming languages and geo-localization.

2009 - 2014
4 PERFECT BODY

Webmaster / PHP Developer

During my time in 4 PERFECT BODY, I developed much of the knowledge I have today. I developed e-commerce systems based on InterSpire Shopping Cart, PrestaShop, Open Cart and Magento.At this point I developed the first Multibanco payment modules with LIVE Notification, either for InterSpire Shopping Cart or PrestaShop using the IfthenPay system.I helped the PrestaShop team improve and expand the Open Source system since version 0.9. My mods to the system were the most prominent in the forums. I provided development assistance to more than 100 different projects.

2006 - 2010
TUSP

Night Club DJ

During the TUSP project (The Underground Soul Project) I had the chance to play in some of the best national clubs. At this time, I produced themes by the publishers: Aveiro Underground, Tanira Rec., Beat & Soul Music Group, FireBeat Rec. Among others.

2005 - 2011

Music Producer

In this period of time, I produced music by some publishers such as Aveiro Underground, Tanira Rec., Beat & Soul Music Group, FireBeat Rec. Among others.This phase of my life made me be in touch with studio hardware and software. Developed skills with production software (Ableton Live, Reason, Cubase and multiple add-ons).I mastered and mixed sounds. I learned to use synthesizers, keyboards, compressors.

2004 - 2008
HAW Agency

Webmaster / Print Designer

Development and maintenance of website for the presentation of services related to the agency of artists. Produced the graphic of flyers or press prints of the company.At this point, I developed the ability to use design software, PhotoShop, Fireworks, Corel Draw.I have developed content in Adobe Flash, animations, intros, music players ...

2003 - 2008
HAW Agency

Night Club DJ

For years I was a club DJ. I played some of the best national nightclubs alongside some of the best national and international dance scene artists.

Skills

Full Stack Developer

100%

SysAdmin

90%

Pen Testing

85%

Ethical Hacking

90%

ITIL, Cobit, SDC

90%

Performance Optimizer

100%

Code Debugger

88%

API Integration

80%

Bug Tracker

90%

Coding Skills

JavaScript

85%

PHP

90%

Python

70%

HTML / CSS

100%

Smarty / Twig

80%

C / C++

55%

Frameworks - Open Source

PrestaShop

95%

Symfony Framework

86%

Smarty / Twig

80%

Wordpress

92%

OpenCart

82%

Interspire Shopping Cart [Big Commerce]

98%

Magento

68%

SysAdmin

Apache

90%

nGinx

75%

MySQL

80%

Kubernetes

60%

Docker

70%

PHP-FPM

90%

Server Operating Systems

Win. Server

55%

Centos 5, 6, 7

90%

Debian

80%

Portfolio

My Works
Hacking Box + Social Engineering

Hacking Box + Social Engineering

Administração de Sistemas, Desenvolvimento, Micro-Serviços, Performance Optimization
Brazilian Bikini Shop

Brazilian Bikini Shop

Desenvolvimento, Micro-Serviços, Performance Optimization
Loja de Biquini

Loja de Biquini

Desenvolvimento, Micro-Serviços, Performance Optimization
HáTudo

HáTudo

Administração de Sistemas, Micro-Serviços, Performance Optimization
Mundilar Airguns

Mundilar Airguns

Administração de Sistemas, Desenvolvimento
Moreira & Duarte, Lda

Moreira & Duarte, Lda

Administração de Sistemas, Desenvolvimento, Micro-Serviços
Pit-Shop

Pit-Shop

Development
BiciArca Team

BiciArca Team

Development
King Pin Books

King Pin Books

Administração de Sistemas, Desenvolvimento, Micro-Serviços

Blog

O meu diário
image

Vários ataques do ransomware BitPaymer está a ter como alvo empresas MSSP (Managed Security Services Providers) espanholas.

O ataque está a ser efectuado utilizando sites comprometidos e recorrendo a vários outros tipos de malware até que a rede completa das empresas seja comprometida.



Full Stack Developer | Security Researcher

Today, it's steganography talk day. For those who do not know steganography is a technique for hiding content within other content.

In the past, the technique was used in pictures, letters, etc. Texts were hidden in images so that the original content could not be identified by anyone.

Steganography (from the Greek "hidden writing") is the study and use of techniques to conceal the existence of one message within another, a form of security by obscurantism. Steganography is the particular branch of cryptology that consists in having one written form camouflaged in another in order to mask its true meaning. It is important to stress the difference between cryptography and steganography. While the first conceals the meaning of the message, the second conceals the existence of the message.

To test the technique we will use any image. In this example, I will use a Mickey Mouse image, named "mickeymouse.jpg", which you can see below:

Mickey Mouse
Mickey Mouse

 

This is a normal picture without any hidden content. Now, to hide a zip file inside the image, let's do the following:

1 - Create a .txt file and write anything on it. In my case, I create a file with the name hidden.txt and put it inside: "https://danieljesus.pt/2019/03/24/esteganografia-esconder-zip-numa-imagem/". Now I have 2 files in the folder: "mickeymouse.jpg" and "hidden.txt":

P340 - 1
P340 – 1

 

2 - By the command line, we will compress the file "hidden.txt" and we will call it "steganographyp340.zip":

  1. $ zip steganographyp340.zip hidden.txt
$ zip steganographyp340.zip hidden.txt
P340 - 2
P340 – 2

 

3 - Now that we have our "zipped" hidden.txt, with the name "steganographyp340.zip", we take the image "mickeymouse.jpg" and merge the files and call it "stegano_out.png". Then, from the command line, execute:

  1. $ cat ./mickeymouse.jpg ./steganographyp340.zip > stegano_out.png
$ cat ./mickeymouse.jpg ./steganographyp340.zip > stegano_out.png
P340 - 3
P340 – 3

 

At the moment, we have our file hidden in the image stegano_out.png, which as you can see in the previous print, the PC detects as normal image ...

Now, in order to see the hidden content of the image, simply do the reverse process, that is, as simple as decompressing the image.

  1. $ unzip ./stegano_out.png
$ unzip ./stegano_out.png

O resultado será algo assim:

P340 - 4
P340 – 4

 

Of course, if the site where they are going to upload re-creates the image in the upload, the zip file is lost in the process, however, several places do not make the image recreation process, thus keeping the hidden.zip inside.

Stegano Out
Stegano Out

 

To test the process, just save the image above and do the "unzip".



Full Stack Developer | Security Researcher

Contacts

Get in Touch

Águeda - Aveiro

Freelancing Available

How can I help?

en_USEN
pt_PTPT en_USEN