⚙ Rev - ☁️ Cloud Mechanic 🛠️
banner
manuelberrueta.bsky.social
⚙ Rev - ☁️ Cloud Mechanic 🛠️
@manuelberrueta.bsky.social
Offensive Security Engineer 🐍 #RedTeam + #AppSec @MSFT
Marine, Husband, Father, N00b, Hacker⁉ 🤔
My ramblings == my own 😁
Everything is a string! #ChangeMyMind

🛠 github.com/ManuelBerrueta
Just dropped Hacking Buddy MCP 🧠💥
A proof-of-concept #MCP server exploring how #AI can help in offensive #security + ops.

It's a PoC & light in tools, but built to share now, not wait for perfection.

🛠️ Try it out: github.com/ManuelBerrue...
#infosec #redteam #AI #hackertools #cybersecurity
GitHub - ManuelBerrueta/hacking-buddy-mcp: Hacking Buddy MCP is a proof-of-concept MCP Server on how AI can be leveraged in security operations/engagements.
Hacking Buddy MCP is a proof-of-concept MCP Server on how AI can be leveraged in security operations/engagements. - ManuelBerrueta/hacking-buddy-mcp
github.com
June 18, 2025 at 12:43 PM
Who has what access to what in Azure DevOps (ADO)? 🤔

Understanding Azure DevOps permissions is critical for security.

🔍 I walk through how to analyze permissions.

manuelberrueta.github.io/supply_chain...

#AzureDevOps #DevSecOps #RedTeam #Pentesting
Azure DevOps Permission Analysis
Investigating ADO Permissions For querying permissions in ADO we are going to be using the following two APIs: Security Namespaces - Query Access Control Lists - Query
manuelberrueta.github.io
March 15, 2025 at 1:29 AM
🚀 Task Groups in ADO make automation easy, but what happens when they’re misused?

From efficiency to exploitation, I break down Task Groups here: [https://manuelberrueta.github.io/supply_chain_security/2025/03/14/ADO_Task_Groups-index.html]

#AzureDevOps #RedTeam #Security #Pentesting
March 14, 2025 at 10:45 PM
Last post(s) of the year:

- Exploring "Scripting in Bruno" for #API Hacking
lnkd.in/gX9-s-3d
- Unveiling the outcomes of the initial execution of Connect-MsGraph⁉:
lnkd.in/gp89aNKY

Wishing everyone a joyful Christmas 🎄🎅❄, festive Holidays, and a prosperous New Year 🎆🎇🥂🍻!
LinkedIn
This link will take you to a page that’s not on LinkedIn
lnkd.in
December 27, 2024 at 12:50 AM
I just donated to support the Bischoff family after their heartbreaking loss. Every little bit helps during this tough time. Please consider sharing or donating if you can. Thank you. We miss you Zion 🙏

gofund.me/7ac27a7e
Donate to Help the Bischoff Family in Their Time of Loss, organized by Paige Wieser
We invite you to bless the Bischoff family. The expense that follows trag… Paige Wieser needs your support for Help the Bischoff Family in Their Time of Loss
gofund.me
November 19, 2024 at 3:54 AM
Reposted by ⚙ Rev - ☁️ Cloud Mechanic 🛠️
All the videos from BlueHat are up. www.youtube.com/playlist?lis...

One of the topics that came up at BlueHat last week was around apps. Lots of good information was covered that will be posted at www.microsoft.com/bluehat/. Until then here are some resources for you to check out. /1
BlueHat | Microsoft
Microsoft BlueHat - Bringing offensive and defensive cyber security professionals together to address modern threats.
www.microsoft.com
November 11, 2024 at 10:24 PM
Happy birthday #Marines!
November 10, 2024 at 8:30 PM
Great advice:
⚠ "DON'T ROLL YOUR OWN CRYPTO...AND AUTH!" ⚠
There are great libraries available for this!
Don't make this 👆 mistake ❌!
It's very ⬆ high risk, ⬇ low reward with expensive 💰💸 consequences 📉!

#appsec #security #infosec #cybersecurity #cloud #cloudsecurity
November 15, 2023 at 3:16 PM
October 30, 2023 at 8:43 PM