Available for engagements Warsaw, PL · UTC+2

Karol Budzyn

Researching post-quantum cryptography and zero-knowledge proof systems. Building and securing cyber-physical infrastructure. Warsaw University of Technology.

2+ yrs OT field
4 certifications
3 industrial protocols
WUT Warsaw Tech student
AZ-500 Azure Security Engineer AZ-900 Azure Fundamentals CompTIA Security+ Niebezpiecznik CyberSec

Algorithm Overview

NIST-standardised post-quantum algorithms (FIPS 203–206) and how their key sizes compare to classical equivalents.

Classical Lattice-based (ML-KEM / ML-DSA) Hash-based (SLH-DSA) NTRU-lattice (FN-DSA)

All sizes in bytes. Bars are proportional within each category.

Key Encapsulation (KEM)

X25519 Classical
pk
32 B
ct
32 B
ML-KEM-512 FIPS 203
pk
800 B
ct
768 B
ML-KEM-768 FIPS 203
pk
1184 B
ct
1088 B
ML-KEM-1024 FIPS 203
pk
1568 B
ct
1568 B

Digital Signatures

Ed25519 Classical
pk
32 B
sig
64 B
ECDSA P-256 Classical
pk
64 B
sig
72 B
ML-DSA-44 FIPS 204
pk
1312 B
sig
2420 B
ML-DSA-65 FIPS 204
pk
1952 B
sig
3293 B
ML-DSA-87 FIPS 204
pk
2592 B
sig
4595 B
SLH-DSA-128s FIPS 205
pk
32 B
sig
7856 B
FN-DSA-512 FIPS 206
pk
897 B
sig
666 B

Recent Articles

zero-knowledge-proofs.md 01
CryptographyZKPZero-Knowledgezk-SNARKsPrivacyResearch

Zero-Knowledge Proofs: How to Convince Someone Without Saying Anything

ZKPs let you convince a verifier that a statement is true while revealing zero information beyond that fact. Not an approximation, a strict mathematical guarantee. Here is how it actually works.

14 min read →
agentic-ai-llm-security.md 02
AI SecurityLLMAgentic AIPrompt InjectionRed TeamingSupply Chain

Agentic AI and LLM Security: What Changes When the Model Can Act

LLMs that browse the web, write code, and call APIs are a fundamentally different threat surface than chatbots. This post breaks down the attack classes unique to agentic systems and what defenders actually need to think about.

12 min read →
banking-cybersecurity-standards.md 03
Banking SecurityDORAFFIECSWIFTComplianceFinancial Services

Cyber Resilience in Banking: DORA, FFIEC, and SWIFT's Security Controls

A practitioner's guide to the major cybersecurity frameworks governing financial institutions - DORA in the EU, the FFIEC guidelines in the US, and the SWIFT Customer Security Programme worldwide.

9 min read →

Featured Projects

in dev

SentinelCPP

Lightweight EDR agent for Windows written in C++17. Performs real-time process monitoring via the Toolhelp32 API (500 ms snapshots), extracts executable paths and PPID metadata, and applies path-based heuristics to detect masqueraded system binaries - e.g. svchost.exe or lsass.exe spawned outside System32. Suspicious processes are automatically terminated and all security events are written to a structured incident log with INFO / WARN / CRITICAL severity levels.

C++WindowsEDRBlue TeamThreat DetectionWin32 API
View on GitHub →
active

TL-WR841N Hardware Exploitation

Full hardware security audit of the TP-Link TL-WR841N consumer router. Root shell obtained via UART (FT232 adapter, 115200 baud), WPA2 passphrases recovered from RAM-disk files, MTD flash partitions dumped via /dev/mtdblock, and active listeners decoded from /proc/net/tcp hex descriptors. Reference for embedded Linux attack surface analysis on MIPS/BusyBox IoT devices.

Hardware HackingIoTUARTEmbedded LinuxMIPSRed Team
View on GitHub →

Let's work together

Open to research collaboration, OT security consulting, cryptographic architecture reviews, and freelance engineering engagements.

Available now · Responds within 24h · Warsaw, PL · Remote friendly
Send a message