Blog

Technical articles on cryptography, post-quantum standards, applied security, and systems engineering.

10 articles published

zero-knowledge-proofs.md 01
CryptographyZKPZero-Knowledgezk-SNARKsPrivacyResearch

Zero-Knowledge Proofs: How to Convince Someone Without Saying Anything

ZKPs let you convince a verifier that a statement is true while revealing zero information beyond that fact. Not an approximation, a strict mathematical guarantee. Here is how it actually works.

14 min read →
agentic-ai-llm-security.md 02
AI SecurityLLMAgentic AIPrompt InjectionRed TeamingSupply Chain

Agentic AI and LLM Security: What Changes When the Model Can Act

LLMs that browse the web, write code, and call APIs are a fundamentally different threat surface than chatbots. This post breaks down the attack classes unique to agentic systems and what defenders actually need to think about.

12 min read →
banking-cybersecurity-standards.md 03
Banking SecurityDORAFFIECSWIFTComplianceFinancial Services

Cyber Resilience in Banking: DORA, FFIEC, and SWIFT's Security Controls

A practitioner's guide to the major cybersecurity frameworks governing financial institutions - DORA in the EU, the FFIEC guidelines in the US, and the SWIFT Customer Security Programme worldwide.

9 min read →
pci-dss-deep-dive.md 04
PCI DSSCompliancePayment SecurityCryptographyPenetration Testing

PCI DSS 4.0: What the Standard Actually Demands

A practitioner's breakdown of PCI DSS v4.0 - its twelve requirements, the 2025 deadline for future-dated controls, and where organisations most commonly fall short.

7 min read →
quantum-computing-and-security.md 05
QuantumCryptographyPost-QuantumNISTPKI

Quantum Computing and the Coming Cryptographic Reckoning

Quantum computers will break RSA-2048 and ECC-256 in hours once they're powerful enough. Here's what that means for the systems we secure today - and how to prepare before it's too late.

7 min read →
azure-security-az500-threats.md 06
AzureAZ-500Cloud SecurityIdentitySIEMThreat Intelligence

Azure Security in 2025: Real Threats and AZ-500 Defenses

A practical look at the most dangerous attack vectors targeting Azure environments right now, mapped to the AZ-500 control domains - identity, network, data, and detection.

5 min read →
hardening-linux-server.md 10
LinuxHardeningSSHUFWSecurity

Linux Server Hardening: A Practical Checklist

A step-by-step guide to hardening a fresh Ubuntu/Debian server - from SSH lockdown and firewall rules to kernel parameter tuning and audit logging.

3 min read →