Skip to content
Sedat Özdemir
Sedat Özdemir

I work on security engineering. Everything I learn ends up here.

I have spent close to a decade on the offensive side: offensive AI development, web, internal network, mobile and API penetration testing, red team work and DevSecOps. Everything here is based on public vulnerability reports and experiments in my own lab — these are personal notes. Enjoy the read.

Writing

161 posts · page 6 / 14

Opening the Black Box: Anatomy of Malware and Those Critical Decisions in the Analysis Lab

It's 3:15 AM, a high-severity alert pops up, and you're staring at a file named invoice_9928.pdf.exe. Join me as I walk through a digital autopsy of a 'Fully Undetectable' threat in a controlled sandbox environment.

May 22, 2026·3 dk readcybersecurityincident-responsemalware-analysis

Leaving the API Doors Unlocked: Did You Really Think a JWT Was Enough?

Have you ever felt that cold sweat down your neck when you realize your API is serving your entire database to the internet? Let's talk about the most common 'invisible' vulnerability: BOLA.

May 21, 2026·4 dk readapi-securitybolacybersecurity

Getting Lost in YAML: The High Cost of Leaving Kubernetes Security to 'Default' Settings

Think your K8s cluster is secure because it's 'running'? Think again. From RBAC nightmares to privileged pod escapes, let's look at why default settings are a Red Teamer's best friend.

May 20, 2026·4 dk readcontainer-securitydevsecopsk8s-security

Spy in Your Pocket: Did You Hand Over the Keys to Your Mobile App's Backdoor?

Think your compiled mobile app is a secure black box? Think again. We're diving into binary security illusions and the pitfalls of local data storage from a Red Team perspective.

May 19, 2026·4 dk readandroid-securityappsecmobile-security

Smart Homes or Digital Minefields? The Invisible Backdoors of the IoT World

Standard vulnerability scanners aren't enough for the world of ARM processors and unpatched BusyBox versions. Let's talk about why you need to dig into the hardware and firmware to truly secure IoT devices.

May 18, 2026·4 dk readfirmwarehardware-hackingiot

Smart Home, Dumb Holes: The Art of Becoming Root in the IoT World

IoT devices are often built for speed, not security. From default passwords to unencrypted MQTT traffic, let's explore why these 'smart' gadgets are a Red Teamer's favorite playground and how to lock them down.

May 17, 2026·4 dk readfirmwarehackinghardware-security

A Tale of Isolation and Container Chaos: Where Do We Go Wrong While Getting 'Dockerized'?

Think containers are inherently secure? Think again. From bloated base images to secret leaks in layers, let's explore how 'dockerized' applications actually fall apart and how to fix them.

May 16, 2026·4 dk readcontainer-securitydevsecopsdocker

The Spy in Your Pocket: A Night Shift in the Dark Corridors of Mobile Apps

Ever wonder what's actually happening behind your mobile screen at 3 AM? Let's talk about debug logs, deep link vulnerabilities, and why your SSL pinning might not be as bulletproof as you think.

May 15, 2026·4 dk readandroidfridaios

What’s Inside the Box? Shedding Light into Darkness with Malware Analysis

A deep dive into why relying on file hashes is no longer enough and how to safely dissect modern threats using static and dynamic analysis techniques.

May 14, 2026·3 dk readdefensive-securitymalware-analysisred-team

Smart Devices, Dumb Mistakes: The Dark Backdoors of the IoT World

Relying on Shodan scans for IoT security is the laziest approach in the industry. Let's talk about the missing 'S' in IoT, why MQTT acts like a gossiping neighbor, and what's actually hiding inside that firmware.

May 13, 2026·4 dk readfirmware-analysishardware-hackingiot-security

From Streetlights to Server Rooms: The Mystery of the Letter 'S' in IoT Security

Think that smart sensor is harmless? Think again. From UART shells to hardcoded cloud keys, let's look at how IoT devices become the weakest link in your infrastructure.

May 12, 2026·4 dk readembedded-securityfirmwarehardware-hacking

Cebimizdeki Casuslar: Mobil Güvenliğin Görünmeyen Yüzü ve Tersine Mühendislik Maceraları

Mobil uygulamalarda 'güvenli' sandığımız o alanların aslında ne kadar kırılgan olduğunu, kendi yaptığım hatalardan yola çıkarak anlatıyorum. Tersine mühendislikten SSL pinning'e kadar sahada karşılaştığımız gerçekleri konuşalım.

May 11, 2026·4 dk readandroid-securityios-securitymobile-security