Daniel Jesus

I've always been passionate about technology. For years I have been producing electronic music themes, developing websites and growing professionally. I evolved! I raised the bar in the area of development. I went from programmer to webmaster! I have learned new technologies, I have improved on several.
Today I am Full Stack Developer.

I had the opportunity to be present in some of the best projects in the world. I developed systems, improved online stores, contributed to a faster web and better navigation.

Over time, I run complete web systems. I built networks, systems in the cloud, and solved problems. I integrated SIEM systems. I have perfected myself in Security and I have obtained a Masters Degree in Cyber Security. I became Pen Tester, Ethical Hacker, Reverse Engineer and I have perfected myself in Security Researcher ...

Today, I develop and protect systems, but mostly, I help my clients grow.

What I Do

Ecommerce

I develop online stores, being my main focus. It's in ecommerce that I feel good. Developing systems based on performance and usability.

Web Design

While Full Stack Developer, I apply my knowledge of each area to the design and usability of the websites. I am meticulous about development.

Performance Optimization

Performance optimization is one of the best performing factors in SEO and UX. Optimize your project in either the code or the minimum system requirements.

SysAdmin

I manage servers and databases. I update and configure servers, cloud systems and systems in AWS. Implement network design, load balancers and multi-server solutions.

CyberSec

I am Pen Tester, Ethical Hacker and Security Researcher. I took a Masters degree in CyberSecurity. I apply secure development systems to my projects.

SDLC

SDLC or Software Development Life Cycle is the life cycle of a project. The cycle must be well defined and structured primarily in terms of safety.

Resume

15 Anos de Experiência

Formação

2016 - 2018
Universidade Camilo José Cela + Deloitte CyberSOC

Master in Cybersecurity

Iniciei o meu Mestrado em Cyber Security nesta instituição de ensino, em parceria com a Deloitte CyberSOC Academy.As áreas de estudo abrangeram Hacking Ético, Pen Testing, Engenharia Inversa, Análise Forense, Tecnologias SIEM, Mobile Sec, Desenvolvimento Seguro, entre outros temas na área da segurança.O trabalho/tese obrigatório para a finalização de curso, garantiu-me uma menção de honra por ser um trabalho de destaque na área da intrusão física.

2017-02 - 2017-08
Social27

Ethical Hacker and Penetration Tester

https://www.cybertraining365.com/CV/1C0B97253F

2017-02 - 2017-04
Social27

Certified Security Analyst

http://www.cybertraining365.com/CV/765DBCA3E7

2017-02
Social27

Kali 101

https://www.cybertraining365.com/CV/CA3F23D28D

2016-11 - 2017-02
Social27

Certified Application Code Defender

https://www.cybertraining365.com/CV/38CADF19E3

2016
University of Camilo José Cela

Validation of Competences

I did validation of competences and respective examinations of aptitude, which gave me an equivalence to a degree in Computer Engineering.

2002 - 2003
CIDEC

Multimedia and Webdesign

Multimedia and Webdesign course, finalized in 2003 with a use of 18 values.

1999 - 2002
Marques de Castilho

High School

I finished secondary education in 2002 in the area of Technologies.

1996 - 1999
Marques de Castilho

Third Cycle

1994 - 1996
Fernando Cadeira

Segundo Ciclo

1990 - 1994
Chãs

Primeiro Ciclo

Professional Experience

2015 - Today
Brazilian Bikini Shop

Full Stack Developer

Tornei-me Full Stack Developer na empresa Brazilian Bikini Shop. Actualmente, toda a parte de código, quer backend ou frontend está a meu cargo.Integro o sistema com parceiros comerciais, desenvolvo API de clientes e integro em sistemas externos.Trato das bases de dados, optimizo performance e faço a gestão de domínios e backups.Desenvolvo micro-serviços e integro tarefas de background.

2014 - Today
Loja de Biquini

Full Stack Developer

I develop the whole system and integrations indispensable to the business. I create 99% of custom code to optimize the daily tasks of management and sales teams.

2014 - 2015
Brazilian Bikini Shop

Webmaster

Entrei como webmaster naquela que seria a empresa com quem desenvolvi e aperfeiçoei o meu trabalho e conhecimentos.A diversidade de serviços, técnicas e a internacionalização fez com que criasse aptidões de integração externa, API's, linguagens de programação e geo-localização.

2009 - 2014
4 PERFECT BODY

Webmaster / PHP Developer

Durante o meu percurso na 4 PERFECT BODY, desenvolvi grande parte dos conhecimentos que tenho hoje. Desenvolvi sistemas de e-commerce com base em InterSpire Shopping Cart, PrestaShop, Open Cart e Magento.Nesta altura, desenvolvi os primeiros módulos de pagamento por Multibanco com LIVE Notification, quer para InterSpire Shopping Cart quer para PrestaShop utilizando o sistema IfthenPay.Ajudei a equipa do PrestaShop a melhorar e expandir o sistema Open Source, desde a versão 0.9. Os meus mods ao sistema foram dos mais destacados nos fóruns. Prestei ajuda ao desenvolvimento a mais de 100 projectos diferentes.

2006 - 2010
TUSP

Night Club DJ

During the TUSP project (The Underground Soul Project) I had the chance to play in some of the best national clubs. At this time, I produced themes by the publishers: Aveiro Underground, Tanira Rec., Beat & Soul Music Group, FireBeat Rec. Among others.

2005 - 2011

Music Producer

Neste período de tempo, produzi temas por algumas editoras como: Aveiro Underground, Tanira Rec., Beat & Soul Music Group, FireBeat Rec. entre outras.Esta fase da minha vida fez-me estar em contacto com hardware e software de estúdio. Desenvolvi aptidões com software de produção (Ableton Live, Reason, Cubase e múltiplos add-ons).Masterizei e misturei sons. Aprendi a utilizar sintetizadores, teclados, compressores.

2004 - 2008
HAW Agency

Webmaster / Print Designer

Desenvolvimento e manutenção de site de apresentação de serviços relacionado com o agenciamento de artistas. Produzi o grafismo de flyers ou press prints da empresa.Nesta altura, desenvolvi a capacidade de utilização de software de design, PhotoShop, FireWorks, Corel Draw.Desenvolvi conteúdos em Adobe Flash, animações, intros, music players...

2003 - 2008
HAW Agency

Night Club DJ

For years I was a club DJ. I played some of the best national nightclubs alongside some of the best national and international dance scene artists.

Skills

Full Stack Developer

100%

SysAdmin

90%

Pen Testing

85%

Ethical Hacking

90%

ITIL, Cobit, SDC

90%

Performance Optimizer

100%

Code Debugger

88%

API Integration

80%

Bug Tracker

90%

Coding Skills

JavaScript

85%

PHP

90%

Python

70%

HTML / CSS

100%

Smarty / Twig

80%

C / C++

55%

Frameworks - Open Source

PrestaShop

95%

Symfony Framework

86%

Smarty / Twig

80%

Wordpress

92%

OpenCart

82%

Interspire Shopping Cart [Big Commerce]

98%

Magento

68%

SysAdmin

Apache

90%

nGinx

75%

MySQL

80%

Kubernetes

60%

Docker

70%

PHP-FPM

90%

Server Operating Systems

Win. Server

55%

Centos 5, 6, 7

90%

Debian

80%

Portfolio

My Works
Hacking Box + Social Engineering

Hacking Box + Social Engineering

Administração de Sistemas, Desenvolvimento, Micro-Serviços, Performance Optimization
Brazilian Bikini Shop

Brazilian Bikini Shop

Desenvolvimento, Micro-Serviços, Performance Optimization
Loja de Biquini

Loja de Biquini

Desenvolvimento, Micro-Serviços, Performance Optimization
HáTudo

HáTudo

Administração de Sistemas, Micro-Serviços, Performance Optimization
Mundilar Airguns

Mundilar Airguns

Administração de Sistemas, Desenvolvimento
Moreira & Duarte, Lda

Moreira & Duarte, Lda

Administração de Sistemas, Desenvolvimento, Micro-Serviços
Pit-Shop

Pit-Shop

Development
BiciArca Team

BiciArca Team

Development
King Pin Books

King Pin Books

Administração de Sistemas, Desenvolvimento, Micro-Serviços

Blog

O meu diário
image

Vários ataques do ransomware BitPaymer está a ter como alvo empresas MSSP (Managed Security Services Providers) espanholas.

O ataque está a ser efectuado utilizando sites comprometidos e recorrendo a vários outros tipos de malware até que a rede completa das empresas seja comprometida.



Full Stack Developer | Security Researcher
Só existem dois tipos de empresas: As que foram "hackeadas" e as que serão!



Full Stack Developer | Security Researcher

Let's hear it in Brazilian Portuguese? A track with content!

...
Segura teu filho no colo
Sorria e abrace seus pais enquanto estão aqui
Que a vida é trem-bala parceiro
E a gente é só passageiro prestes a partir
...
Ana Vilela



Full Stack Developer | Security Researcher

E porque é uma das melhores faixas da actualidade do género em que se enquadra. Por aqui, não se ouve outra coisa!

... I'm far from good is true, still I find you, next to me...
Imagine Dragons



Full Stack Developer | Security Researcher

Today, it's steganography talk day. For those who do not know steganography is a technique for hiding content within other content.

In the past, the technique was used in pictures, letters, etc. Texts were hidden in images so that the original content could not be identified by anyone.

Steganography (from the Greek "hidden writing") is the study and use of techniques to conceal the existence of one message within another, a form of security by obscurantism. Steganography is the particular branch of cryptology that consists in having one written form camouflaged in another in order to mask its true meaning. It is important to stress the difference between cryptography and steganography. While the first conceals the meaning of the message, the second conceals the existence of the message.

To test the technique we will use any image. In this example, I will use a Mickey Mouse image, named "mickeymouse.jpg", which you can see below:

Mickey Mouse
Mickey Mouse

 

This is a normal picture without any hidden content. Now, to hide a zip file inside the image, let's do the following:

1 - Create a .txt file and write anything on it. In my case, I create a file with the name hidden.txt and put it inside: "https://danieljesus.pt/2019/03/24/esteganografia-esconder-zip-numa-imagem/". Now I have 2 files in the folder: "mickeymouse.jpg" and "hidden.txt":

P340 - 1
P340 – 1

 

2 - By the command line, we will compress the file "hidden.txt" and we will call it "steganographyp340.zip":

  1. $ zip steganographyp340.zip hidden.txt
$ zip steganographyp340.zip hidden.txt
P340 - 2
P340 – 2

 

3 - Now that we have our "zipped" hidden.txt, with the name "steganographyp340.zip", we take the image "mickeymouse.jpg" and merge the files and call it "stegano_out.png". Then, from the command line, execute:

  1. $ cat ./mickeymouse.jpg ./steganographyp340.zip > stegano_out.png
$ cat ./mickeymouse.jpg ./steganographyp340.zip > stegano_out.png
P340 - 3
P340 – 3

 

At the moment, we have our file hidden in the image stegano_out.png, which as you can see in the previous print, the PC detects as normal image ...

Now, in order to see the hidden content of the image, simply do the reverse process, that is, as simple as decompressing the image.

  1. $ unzip ./stegano_out.png
$ unzip ./stegano_out.png

O resultado será algo assim:

P340 - 4
P340 – 4

 

Of course, if the site where they are going to upload re-creates the image in the upload, the zip file is lost in the process, however, several places do not make the image recreation process, thus keeping the hidden.zip inside.

Stegano Out
Stegano Out

 

To test the process, just save the image above and do the "unzip".



Full Stack Developer | Security Researcher

Contacts

Get in Touch

Águeda - Aveiro

Freelancing Available

How can I help?

Viewing Highlight
Loading...
Highlight
Close
Login

Forgot password?
New to site? Create an Account
×
Signup

Already have an account? Login
×
Forgot Password

×
en_USEN
pt_PTPT en_USEN