SecretCon 2026
Hack The Hacker (aka I’ve Been Pwned)
Jose Martinez
Abstract:
ven working in the industry we do, and being aware of the things we are, it is not out of the realm of possibility that we ourselves get hacked. Nothing is unhackable, no matter what the famous last words of any products with “unhackable [blank]” may say.
This is why proactive and not just reactive measures are so important in our organizations, and the way we carry our lives, with measures commensurate to our personal threat model. That being said, nobody is perfect, and we all make mistakes. This talk will focus on my personal websites getting hacked via my hosting provider, even though I myself am a web app pentester.
It will go over my discovery of the breach, recovery, hardening, and restoration. As well as juicy review of logs and files I copied from the incident. Come hear and learn from my dumb mistakes, the weak link that brought it all down, remediation, and other compromises by the same threat actor.
I will also share anecdotes about the first time someone tried to sim swap me when I was but a security newbie, and how I’ve changed and improved my response to security incidents since (and still are).
- CMS basics
- Indicators of compromise, how discovered attack
- Hosting Provider remediation
- Further IOCs and remediation
- Good and Bad Practices
- Log Review Basics
- Alternate Command Line Analysis
- Homographs – Why We Used Text CLI Analysis
- Threat Actor Name and Signature
- Threat Actor Malware, Malicious Files
- Threat Actor Social Media and other OSINT: facebook, telegram, youtube, pastebin
- More Remediation
- Reflection as security professional: how reacted to pseudo sim swap early in career before did anything compared to this attack now that more experienced. Anyone can get hacked.
- Questions

Jose Martinez
Security Delivery Specialist (Pentester) at a global tech consulting company
Owner of too many Pokemon games he still hasn’t played, born in Mexico but raised in Chicago, José loves guitars, books, cameras, and trying out new food. José worked in retail before making the transition to information security as an apprentice in a consulting firm, where he currently focuses on web application pentesting as a security delivery specialist.