
I work on security engineering. Everything I learn ends up here.
I have spent close to a decade on the offensive side: offensive AI development, web, internal network, mobile and API penetration testing, red team work and DevSecOps. Everything here is based on public vulnerability reports and experiments in my own lab — these are personal notes. Enjoy the read.
Writing
165 posts · page 6 / 14Handing Over Your K8s Cluster on a Silver Platter: Config Errors and Cold Hard Truths
Ever wondered how a single YAML line can turn your infrastructure into a public playground? Let's dive into common Kubernetes misconfigurations from a Red Team perspective and look at how to actually secure them.
Betrayal of the Dependencies: The Art of Supply Chain Attacks and Defense
Ever wondered how a single typo in your package.json could compromise your entire infrastructure? Let's dive into the world of Software Supply Chain security and learn how to defend your fortress from the inside out.
The False Peace of the Sandbox: Why Automation Won't Save You in Mobile Security
Automated scans like MobSF aren't a silver bullet. True mobile security requires looking beyond the sandbox and understanding how real attackers bypass 'secure' local storage and SSL pinning.
Fighting an Invisible Enemy: The Zero-Day Paradox and the Art of Defense
A deep dive into the world of Zero-Day vulnerabilities, why patching isn't always enough, and how we can defend against what we can't see.
Opening the Black Box: Anatomy of Malware and Those Critical Decisions in the Analysis Lab
It's 3:15 AM, a high-severity alert pops up, and you're staring at a file named invoice_9928.pdf.exe. Join me as I walk through a digital autopsy of a 'Fully Undetectable' threat in a controlled sandbox environment.
Leaving the API Doors Unlocked: Did You Really Think a JWT Was Enough?
Have you ever felt that cold sweat down your neck when you realize your API is serving your entire database to the internet? Let's talk about the most common 'invisible' vulnerability: BOLA.
Getting Lost in YAML: The High Cost of Leaving Kubernetes Security to 'Default' Settings
Think your K8s cluster is secure because it's 'running'? Think again. From RBAC nightmares to privileged pod escapes, let's look at why default settings are a Red Teamer's best friend.
Spy in Your Pocket: Did You Hand Over the Keys to Your Mobile App's Backdoor?
Think your compiled mobile app is a secure black box? Think again. We're diving into binary security illusions and the pitfalls of local data storage from a Red Team perspective.
Smart Homes or Digital Minefields? The Invisible Backdoors of the IoT World
Standard vulnerability scanners aren't enough for the world of ARM processors and unpatched BusyBox versions. Let's talk about why you need to dig into the hardware and firmware to truly secure IoT devices.
Smart Home, Dumb Holes: The Art of Becoming Root in the IoT World
IoT devices are often built for speed, not security. From default passwords to unencrypted MQTT traffic, let's explore why these 'smart' gadgets are a Red Teamer's favorite playground and how to lock them down.
A Tale of Isolation and Container Chaos: Where Do We Go Wrong While Getting 'Dockerized'?
Think containers are inherently secure? Think again. From bloated base images to secret leaks in layers, let's explore how 'dockerized' applications actually fall apart and how to fix them.
The Spy in Your Pocket: A Night Shift in the Dark Corridors of Mobile Apps
Ever wonder what's actually happening behind your mobile screen at 3 AM? Let's talk about debug logs, deep link vulnerabilities, and why your SSL pinning might not be as bulletproof as you think.