Fernando Lazzarin
Offensive Security Engineer
Attack Engineer | HackerOne
Summary
I build authorized offensive systems and hunt with them. Celeste is one.
Skills
offensive systems | penetration testing | web | API | authentication | access control | bug bounty | Python | Rust | Linux | nuclei | httpx | HackerOne
Spanish native | English professional
Experience
Offensive Security Engineer | Celeste
January 2026 - Present | Remote
- Built Celeste, an AI-powered offensive testing system. Live at celeste.md.
- Authorized tests of production systems.
- HackerOne as sud0. Web and API. Auth, access control, account takeover.
Founder | WAITDEAD
February 2026 - Present | Remote
- Systems and software boutique. Client systems in production. waitdead.com.
Freelance contractor
2025 | Remote
- CRM pipelines on HubSpot, Salesforce, Pipedrive, and Odoo.
Creative Director | Laboratorio de Ideas
2016 - 2019 | Mendoza
Open Source
llm-dark-patterns. Apache-2.0 hooks that stop fake-success closeouts in agent output.
Education
Universidad Juan Agustín Maza. Advertising, 2013 - 2019.