Blog

Technical writeups on cybersecurity, Linux hardening, cloud infrastructure, and everything in between.

$ ls | wc -l → 7 posts

ot-integration-security-reality.md 01
OT SecurityICSCommissioningIEC 62443PLCProfinetField Notes

OT Integration in the Field: What the Standards Don't Tell You

After commissioning industrial systems across multiple sites, I've seen firsthand how far the real world sits from IEC 62443. This is what poor OT security looks like when nobody's watching.

9 min read →
quantum-computing-and-security.md 02
QuantumCryptographyPost-QuantumNISTPKIOT Security

Quantum Computing and the Coming Cryptographic Reckoning

Quantum computers will break RSA-2048 and ECC-256 in hours once they're powerful enough. Here's what that means for the systems we secure today — and how to prepare before it's too late.

7 min read →
azure-security-az500-threats.md 03
AzureAZ-500Cloud SecurityIdentitySIEMThreat Intelligence

Azure Security in 2025: Real Threats and AZ-500 Defenses

A practical look at the most dangerous attack vectors targeting Azure environments right now, mapped to the AZ-500 control domains — identity, network, data, and detection.

5 min read →
hardening-linux-server.md 07
LinuxHardeningSSHUFWSecurity

Linux Server Hardening: A Practical Checklist

A step-by-step guide to hardening a fresh Ubuntu/Debian server — from SSH lockdown and firewall rules to kernel parameter tuning and audit logging.

3 min read →