NVD / ALERTS
CVE-2026-667862026-09-02CVSS 9.1 CVE-2026-667862026-09-02CVSS 9.1
CYBERSECURITY / INTELLIGENCE / SOFTWARE

Luis Diago de AguilarAKA H3ST4K3R

VULNERABILITY MANAGEMENT / THREAT INTELLIGENCE / OSINT / SECURITY RESEARCH / SOFTWARE ENGINEERING / ARTIFICIAL INTELLIGENCE

Logo h3st4k3r
IDENTITYH3ST4K3R NAMELUIS DIAGO DE AGUILAR BASEMADRID / SPAIN NETWORKH3SEC
01 / PROFILE

Who am I

IDENTITY RECORD / PROFESSIONAL PROFILE

My name is Luis Diago de Aguilar, a senior cybersecurity analyst and software engineer operating under the pseudonym h3st4k3r. My work focuses on the convergence between applied artificial intelligence and defensive cybersecurity.

I have consolidated my technical specialization around the orchestration of complex systems, integrating Artificial Intelligence architectures for process optimization and Intelligence Analysis for proactive prevention. My professional practice is grounded in vulnerability research and in building robust software solutions under high-availability standards.

24Public repos
61Articles
142Contribs
5Talks
02 / FIELD

Technical Expertise

CAPABILITIES / OPERATIONS / DEVELOPMENT

TECHNICAL DOMAIN

Vulnerability & Incident Management

Vulnerability lifecycle management and incident response. Alert analysis, severity classification and technical remediation.

OpenVASTenableCrowdStrikeProcess Handling
TECHNICAL DOMAIN

CTI Specialist & Intelligence

Threat intelligence production through OSINT and Deep Web monitoring. Threat actor TTP analysis and IOC enrichment.

VirusTotalOSINTThreat Actor Analysis
TECHNICAL DOMAIN

Scripting & Automation

Security workflow automation through custom scripts and third-party API integrations with management platforms.

PythonAPI IntegrationTicketing Platforms
TECHNICAL DOMAIN

AI Architectures

Design and implementation of machine-learning models for anomaly detection and cognitive automation in SOC environments.

Machine LearningAlert HandlingCognitive Auto
03 / H3SEC

H3SEC Ecosystem

OWN TECHNOLOGY / PUBLIC PROJECTS / TECHNICAL TOOLS

Products and projects

H3SEC.COM

Public tools

TOOLS.H3SEC.COM
ACTIVE DIRECTORY

AD Lab

Command generator for Active Directory labs: LDAP, SMB, Kerberos, WinRM, MSSQL and BloodHound.

ADLDAPKerberosBloodHound
HTTP

Request Lab

Parses raw HTTP requests, separates parameters, headers, cookies and body, and generates curl, requests and fetch equivalents.

HTTPBurpcurlRequests
FILE ANALYSIS

File Lab

Local static triage using magic bytes, hashes, entropy, strings and embedded signature detection.

FilesHashesEntropyStrings
OSINT

Domain analysis

Queries DNS, TLS, RDAP and ASN data and presents technical domain signals without proprietary persistence.

DNSTLSRDAPASN
ANALYSIS

Metadata

Inspects and removes metadata from images and PDFs with local processing whenever the format allows it.

EXIFPDFPrivacyMetadata
NETWORK INTEL

VPN detector

Cross-checks IP addresses against open VPN, datacenter and Tor sources and adds network context.

VPNTorASNIP
OSINT

Google Dorks

Builds advanced queries by domain, keywords, file types, paths and social networks.

GoogleDorksOSINTRecon
TEXT ANALYSIS

Text analyzer

Extracts indicators and artifacts such as IPs, domains, URLs, CVEs, SIDs, SPNs, JWTs and hashes.

IOCCVEJWTParser
CRYPTOGRAPHY

RSA Lab

Key generation, RSA-OAEP, hybrid AES-GCM encryption and RSA-PSS signatures directly in the browser.

RSAOAEPPSSAES-GCM
CRYPTOGRAPHY

Hashify

Calculates hashes, compares values and identifies common Hashcat and John formats.

HashHashcatJohnKerberos
STEGANOGRAPHY

Steganography

Hides and extracts text in PNG images through LSB processing locally in the browser.

PNGLSBStegoLocal
UTILITIES

Text transformer

Encodes and decodes Base64, Base64URL, hex, URL, HTML, binary, Unicode, JSON and other formats.

Base64HexURLUnicode
UTILITIES

Password generator

Generates passwords using local cryptographic randomness, configurable rules and entropy estimation.

PasswordCryptoEntropyLocal
04 / NVD

Vulnerability Alerts

NVD LIVE / LOCAL CACHE / FAIL-SAFE

CVE-2026-66786
2026-09-02
A flaw was found in submariner. In cert-auth mode, the connection configuration is built using free-form strings from the Custom Resource Definition (CRD) without proper validation. A malicious cluster can exploit this by publishing a CableName that includes n…
CVSS 9.1
NVD
05 / COMMS

Contact

Direct channels for professional contact, technical coordination and collaborations.