Welcome to thoughts — a space where I bridge the gap between security research, engineering lessons, and the occasional deep dive into the systems that (hopefully) don’t break when I poke them.
The Payload (What to expect)
I aim to ship an entry every week or two. If I’m quiet for longer, I’ve either found a very interesting rabbit hole or I’ve accidentally rm -rf’d my motivation. The focus will primarily be:
- Security & Vulnerability Research — Tearing apart exploits, defensive architecture, and finding the “why” behind the “how.”
- AI/LLM Security — Exploring the frontier of prompt injection, securing agentic workflows, and making sure our new AI overlords are actually patched.
- Engineering & Systems — Patterns for building robust software, infrastructure lessons from the field, and technical deep dives into complex stacks.
Why “thoughts”?
Because not everything fits into a formal conference talk or a GitHub README. Some of the best insights come from the “debugging war stories”—those moments where a single line of code or a misunderstood protocol leads to a breakthrough. This is a place for those informal, high-signal observations.
A note to the curious
If you’re the type to view page source, inspect network requests, and poke at things that look interesting—you’re in the right place. I’ve left a few things here for you to find.
Happy hunting. 🖖