log. — Writing on cybersecurity, AI, the inclusive web, and engineering leadership
Personal notes on cybersecurity, AI, the inclusive web, and engineering leadership. No fixed schedule. I write when there is actually something worth sharing.
all entries
- 2026.06.23
Identity Compromise: The SNS Case and the Credential Failure
The SNS Portal incident that circulated on social media is not, at its core, a story about infrastructure failure. A doctor's credentials were compromised and used to access patient records at scale.
Cybersecurity8 minread → - 2026.06.04
AI Made Software Estimation Harder, Not Easier
Two studies, the same tool, opposite results: +55.8% faster in one case, -19% in the other. The variance is the signal the industry keeps ignoring, and the reason software estimation models are broken in the LLM era.
AI Development8 minread → - 2026.06.03
Credential Theft: The Primary Attack Vector in Organizations
In 2025, more than 80% of web application attacks involved stolen credentials. They were not sophisticated exploits or zero-days: they were legitimate usernames and passwords, used by people who should not have access.
Cybersecurity7 minread → - 2026.05.14
MFA is not enough: what your customers still don't know
MFA solves a real problem, but it leaves open the space where modern attacks operate: authenticated sessions, hijacked tokens, and anomalous behaviour.
Cybersecurity8 minread → - 2023.09.14
5 tips for building a more inclusive website
Accessibility on the web is not an extra: it is the foundation that lets the Internet truly be universal.
Inclusive Web8 minread → - 2022.08.19
From IPS to the European Innovation Academy stage
As a final-year Computer Engineering student at IPS, I joined EIA in Cascais and our team PROCO was awarded a top 10 spot.
Recognition3 minread →
For collaborations or talks on security tooling, inclusive engineering, or AI in delivery, open a channel.