Application security / offensive research

Jaime Cavero Sánchez

Security research, secure development, and evidence engineering.

Cybersecurity consultant · Madrid, Spain · Open to research collaborations

01Research

Selected research

Public vulnerability records and bounded research notes. Identifiers appear where they help retrieve the source.

jackson-databindPATCHED

Polymorphic type validation can be bypassed through an allow-listed generic container.

A denied class smuggled as a generic argument of an allow-listed container is instantiated with attacker-controlled properties, defeating the PTV allow-list and opening an unauthenticated RCE path.

GhidraPUBLIC

Opening a crafted Ghidra project can trigger unsafe deserialization.

Opening a malicious project instantiates attacker-specified classes. Reported responsibly to the National Security Agency.

WiresharkPATCHED

A malformed UDS packet can trap the Wireshark dissector in an infinite loop.

The issue is exploitable live on the wire or through a crafted PCAP, creating a denial-of-service hazard for packet-analysis and incident-response workflows.

ApktoolPATCHED

A decoding regression can let a crafted APK write files outside the output directory.

A path-sanitization call was removed in the decoding step, enabling arbitrary file write behavior through a crafted APK.

IoTAK0SCOORDINATED

Multiple MITRE-assigned issues were found in a single IoT device family.

A chain of unauthenticated remote code execution, denial-of-service, and authentication-bypass issues was reported responsibly through a MITRE partner.

Trace LabsPUBLIC

OSINT work supported missing-persons Search Party investigations.

Social media analysis, photo geolocation, and image comparison were submitted to organisers in support of law-enforcement leads.

02Experience

Experience

Reverse-chronological professional records with public detail bounded by client confidentiality.

Cybersecurity Consultant

Tarlogic, remote, Spain

CURRENT

Client work under NDA; public details omitted.

Delivery Analyst, Automated Application Testing

Deloitte, Madrid

  • Ran DAST and SAST across a portfolio of 300+ applications, wiring tooling into CI/CD pipelines so findings surface early.
  • Worked with development teams across member firms to triage vulnerabilities and raise the secure-coding baseline.
  • Built an internal CWE Top 25 reference platform that streamlines triage of complex findings.

Coordinator and Instructor, “Cybersecurity” summer course

ICAI, Madrid

  • Ran cybersecurity training for high-school students at ICAI's summer tech campus across two editions.
  • Designed a beginner CTF of forty challenges covering cryptography, OSINT, digital security, and ethical hacking.

Cyber Threat Intelligence Intern

Deloitte, Madrid

  • Produced threat intelligence reporting on malicious activity trends using CrowdStrike, Splunk, and Maltego.
  • Managed threat campaigns in ThreatConnect and refined internal workflows around them.
03Recognition

Recognition

Competition results and public recognition, kept compact for comparison.

YearResultEventContext
20241stHackTheBox, Deloitte Worldwide CTF27 of 29 challenges solved across ten categories.
2023MVPTrace Labs, Search Party GlobalMost Valuable OSINT, missing-persons investigation.
20233rdCTFTime, National, ESteam BASE64CTF.
20223rdCTFTime, National, ESteam BASE64CTF.
202212thNCL, Guardia Civilnational final, team BASE64CTF.
20216thNCL, Guardia Civilnational final, team BASE64CTF.
04Credentials

Credentials

Certifications, education, and affiliations.

Certifications

  • eWPTINE, Web Application Penetration Tester, 2026
  • Blue Team Level 1Security Blue Team, Gold Coin, 2023
  • Maltego AdvancedMaltego, 2023
  • eJPTeLearnSecurity Junior Penetration Tester, 2021

Education

  • Cybersecurity EngineeringUniversidad Rey Juan Carlos, 2025
  • High distinctionSecure Web Development, Final Degree Project
  • Top marksHacking Techniques, Algorithms and Data Structures, Scripting

Affiliations

  • IoTAK0SFormer member, IoT security research group
  • BASE64CTFCo-founder (former), 100+ national and international CTFs
  • Trace LabsVolunteer judge and participant, SearchParty
  • CISV InternationalVolunteer, 2016 to 2022
05Contact

Contact

Open to research collaborations and technically rigorous security work.

Base
Madrid, Spain
Morty Proxy This is a proxified and sanitized view of the page, visit original site.