
I work on security engineering. Everything I learn ends up here.
I have spent close to a decade on the offensive side: offensive AI development, web, internal network, mobile and API penetration testing, red team work and DevSecOps. Everything here is based on public vulnerability reports and experiments in my own lab — these are personal notes. Enjoy the read.
Writing
161 posts · page 6 / 14Opening the Black Box: Anatomy of Malware and Those Critical Decisions in the Analysis Lab
It's 3:15 AM, a high-severity alert pops up, and you're staring at a file named invoice_9928.pdf.exe. Join me as I walk through a digital autopsy of a 'Fully Undetectable' threat in a controlled sandbox environment.
Leaving the API Doors Unlocked: Did You Really Think a JWT Was Enough?
Have you ever felt that cold sweat down your neck when you realize your API is serving your entire database to the internet? Let's talk about the most common 'invisible' vulnerability: BOLA.
Getting Lost in YAML: The High Cost of Leaving Kubernetes Security to 'Default' Settings
Think your K8s cluster is secure because it's 'running'? Think again. From RBAC nightmares to privileged pod escapes, let's look at why default settings are a Red Teamer's best friend.
Spy in Your Pocket: Did You Hand Over the Keys to Your Mobile App's Backdoor?
Think your compiled mobile app is a secure black box? Think again. We're diving into binary security illusions and the pitfalls of local data storage from a Red Team perspective.
Smart Homes or Digital Minefields? The Invisible Backdoors of the IoT World
Standard vulnerability scanners aren't enough for the world of ARM processors and unpatched BusyBox versions. Let's talk about why you need to dig into the hardware and firmware to truly secure IoT devices.
Smart Home, Dumb Holes: The Art of Becoming Root in the IoT World
IoT devices are often built for speed, not security. From default passwords to unencrypted MQTT traffic, let's explore why these 'smart' gadgets are a Red Teamer's favorite playground and how to lock them down.
A Tale of Isolation and Container Chaos: Where Do We Go Wrong While Getting 'Dockerized'?
Think containers are inherently secure? Think again. From bloated base images to secret leaks in layers, let's explore how 'dockerized' applications actually fall apart and how to fix them.
The Spy in Your Pocket: A Night Shift in the Dark Corridors of Mobile Apps
Ever wonder what's actually happening behind your mobile screen at 3 AM? Let's talk about debug logs, deep link vulnerabilities, and why your SSL pinning might not be as bulletproof as you think.
What’s Inside the Box? Shedding Light into Darkness with Malware Analysis
A deep dive into why relying on file hashes is no longer enough and how to safely dissect modern threats using static and dynamic analysis techniques.
Smart Devices, Dumb Mistakes: The Dark Backdoors of the IoT World
Relying on Shodan scans for IoT security is the laziest approach in the industry. Let's talk about the missing 'S' in IoT, why MQTT acts like a gossiping neighbor, and what's actually hiding inside that firmware.
From Streetlights to Server Rooms: The Mystery of the Letter 'S' in IoT Security
Think that smart sensor is harmless? Think again. From UART shells to hardcoded cloud keys, let's look at how IoT devices become the weakest link in your infrastructure.
Cebimizdeki Casuslar: Mobil Güvenliğin Görünmeyen Yüzü ve Tersine Mühendislik Maceraları
Mobil uygulamalarda 'güvenli' sandığımız o alanların aslında ne kadar kırılgan olduğunu, kendi yaptığım hatalardan yola çıkarak anlatıyorum. Tersine mühendislikten SSL pinning'e kadar sahada karşılaştığımız gerçekleri konuşalım.