Digital Investigation
OSINT, digital footprint analysis, attribution and threat mapping — turning scattered public signals into a clear, defensible picture.
About // Operator
I break into systems for a living — legally, under contract, and with a paper trail. Penetration tests, red team operations, bug bounty hunting and OSINT-driven investigations, delivered as reproducible evidence: how it broke, what that means for you, and exactly what it takes to close the gap.
Active bug bounty researcher. I report vulnerabilities to live programs — the profile is the public track record, and it grows with every engagement.
hackerone.com/monge0x11 → INProfessional background, experience and the path into offensive security — the full history, first-hand.
in/heric-bz → GHOpen-source tooling, recon helpers and experiments — code you can read, run and check for yourself.
github.com/itsmemonge →OSINT, digital footprint analysis, attribution and threat mapping — turning scattered public signals into a clear, defensible picture.
Hands-on assessment of web apps, APIs, networks and mobile — from scoped engagements to public bug bounty programs, always with reproducible findings ranked by real-world impact.
End-to-end adversary simulation that tests detection and response against realistic attack paths — not checklists or assumptions.
Custom tooling and automation in Node.js and Python to scale recon, monitoring and reporting across engagements.
Penetration testing, bug bounty hunting and vulnerability assessment across web, API and infrastructure — delivered with clear reports and fixes ranked by exploitability.
Request a scope →OSINT and digital forensics for incident response, fraud and attribution — evidence collected and handled with a defensible chain of custody.
Open a case →Goal-based adversary simulation that measures how far an attacker reaches and how quickly your team detects and responds.
Plan an engagement →Written authorization, defined targets and rules of engagement — before a single packet moves.
Passive and active mapping of the attack surface — the system as an adversary actually sees it.
Controlled exploitation with minimal-impact PoCs. Every claim is demonstrated, never assumed.
Findings ranked by real exploitability, with evidence a developer can replay and fix directly.
Fixes verified against the original attack path — closed means proven closed, not assumed closed.
Nothing is touched without written authorization and a clearly defined boundary. The rules of engagement come before the engagement.
Every finding ships with reproducible proof and a real-world impact rating — not a scanner screenshot and a severity guess.
Engagements, data and findings stay between us. Discretion is part of the deliverable, not an upsell.
Vulnerabilities are reported so they get fixed. The same skill that finds a flaw is used to help close it.
Conversa no programa Entre Nós sobre segurança digital, privacidade de dados e os erros que expõem clientes sem que os próprios desenvolvedores percebam.
Watch on YouTube →Como atacantes operam na prática, onde nascem as vulnerabilidades e o que realmente fortalece a segurança — com técnicas de investigação online, OSINT e casos reais.
Watch on YouTube →A penetration test, a red team engagement, or a digital investigation — tell me what you're protecting and I'll come back with concrete next steps at contact@heric.bz.