Skip to content
Sedat Özdemir
Sedat Özdemir

I work on security engineering. Everything I learn ends up here.

I have spent close to a decade on the offensive side: offensive AI development, web, internal network, mobile and API penetration testing, red team work and DevSecOps. Everything here is based on public vulnerability reports and experiments in my own lab — these are personal notes. Enjoy the read.

Writing

165 posts · page 6 / 14

Handing Over Your K8s Cluster on a Silver Platter: Config Errors and Cold Hard Truths

Ever wondered how a single YAML line can turn your infrastructure into a public playground? Let's dive into common Kubernetes misconfigurations from a Red Team perspective and look at how to actually secure them.

May 26, 2026·4 dk readcontainer-securitydevsecopsk8s-security

Betrayal of the Dependencies: The Art of Supply Chain Attacks and Defense

Ever wondered how a single typo in your package.json could compromise your entire infrastructure? Let's dive into the world of Software Supply Chain security and learn how to defend your fortress from the inside out.

May 25, 2026·4 dk readdependency-confusiondevsecopsred-team

The False Peace of the Sandbox: Why Automation Won't Save You in Mobile Security

Automated scans like MobSF aren't a silver bullet. True mobile security requires looking beyond the sandbox and understanding how real attackers bypass 'secure' local storage and SSL pinning.

May 24, 2026·4 dk readandroid-securityfridaios-pentest

Fighting an Invisible Enemy: The Zero-Day Paradox and the Art of Defense

A deep dive into the world of Zero-Day vulnerabilities, why patching isn't always enough, and how we can defend against what we can't see.

May 23, 2026·5 dk readcyber-securitydefense-in-depthexploit-development

Opening the Black Box: Anatomy of Malware and Those Critical Decisions in the Analysis Lab

It's 3:15 AM, a high-severity alert pops up, and you're staring at a file named invoice_9928.pdf.exe. Join me as I walk through a digital autopsy of a 'Fully Undetectable' threat in a controlled sandbox environment.

May 22, 2026·3 dk readcybersecurityincident-responsemalware-analysis

Leaving the API Doors Unlocked: Did You Really Think a JWT Was Enough?

Have you ever felt that cold sweat down your neck when you realize your API is serving your entire database to the internet? Let's talk about the most common 'invisible' vulnerability: BOLA.

May 21, 2026·4 dk readapi-securitybolacybersecurity

Getting Lost in YAML: The High Cost of Leaving Kubernetes Security to 'Default' Settings

Think your K8s cluster is secure because it's 'running'? Think again. From RBAC nightmares to privileged pod escapes, let's look at why default settings are a Red Teamer's best friend.

May 20, 2026·4 dk readcontainer-securitydevsecopsk8s-security

Spy in Your Pocket: Did You Hand Over the Keys to Your Mobile App's Backdoor?

Think your compiled mobile app is a secure black box? Think again. We're diving into binary security illusions and the pitfalls of local data storage from a Red Team perspective.

May 19, 2026·4 dk readandroid-securityappsecmobile-security

Smart Homes or Digital Minefields? The Invisible Backdoors of the IoT World

Standard vulnerability scanners aren't enough for the world of ARM processors and unpatched BusyBox versions. Let's talk about why you need to dig into the hardware and firmware to truly secure IoT devices.

May 18, 2026·4 dk readfirmwarehardware-hackingiot

Smart Home, Dumb Holes: The Art of Becoming Root in the IoT World

IoT devices are often built for speed, not security. From default passwords to unencrypted MQTT traffic, let's explore why these 'smart' gadgets are a Red Teamer's favorite playground and how to lock them down.

May 17, 2026·4 dk readfirmwarehackinghardware-security

A Tale of Isolation and Container Chaos: Where Do We Go Wrong While Getting 'Dockerized'?

Think containers are inherently secure? Think again. From bloated base images to secret leaks in layers, let's explore how 'dockerized' applications actually fall apart and how to fix them.

May 16, 2026·4 dk readcontainer-securitydevsecopsdocker

The Spy in Your Pocket: A Night Shift in the Dark Corridors of Mobile Apps

Ever wonder what's actually happening behind your mobile screen at 3 AM? Let's talk about debug logs, deep link vulnerabilities, and why your SSL pinning might not be as bulletproof as you think.

May 15, 2026·4 dk readandroidfridaios