Adversarial Infrastructure & Global Systems
Browse series · RSS · Atom
Start here: first entry.
BGP and Routing Attacks: Engineering for the Internet We Have
Engineering notebook entry (January 2024): BGP and Routing Attacks: Engineering for the Internet We Have.
DDoS at Scale: Adaptive Defense and Cost Asymmetry
Spec-driven research note (February 2024): DDoS at Scale: Adaptive Defense and Cost Asymmetry.
Supply Chain Attacks: Dependency Poisoning and Maintainer Compromise
Adversarial-first deep dive (March 2024): Supply Chain Attacks: Dependency Poisoning and Maintainer Compromise.
Sandbox Escapes: Isolation Boundaries as a Design Input
Spec-driven research note (April 2024): Sandbox Escapes: Isolation Boundaries as a Design Input.
Time-Based Attacks: NTP Manipulation, Expiration, and Replay
Adversarial-first deep dive (May 2024): Time-Based Attacks: NTP Manipulation, Expiration, and Replay.
Consensus Under Attack: Adaptive Adversaries and Network Control
Spec-driven research note (June 2024): Consensus Under Attack: Adaptive Adversaries and Network Control.
Byzantine Fault Injection: Testing Protocols Like an Attacker
Adversarial-first deep dive (July 2024): Byzantine Fault Injection: Testing Protocols Like an Attacker.
Metadata and Privacy: The Hard Part Isn’t Encryption
Threat-model-first analysis (August 2024): Metadata and Privacy: The Hard Part Isn’t Encryption.
Secure Enclaves in Distributed Systems: Remote Attestation and Trust
Spec-driven research note (September 2024): Secure Enclaves in Distributed Systems: Remote Attestation and Trust.
Formal Verification of Crypto Protocols: Models, Gaps, and Pain
Spec-driven research note (October 2024): Formal Verification of Crypto Protocols: Models, Gaps, and Pain.
ZKP Systems Engineering: Provers, Verifiers, and Operational Cost
Threat-model-first analysis (November 2024): ZKP Systems Engineering: Provers, Verifiers, and Operational Cost.
Designing for Catastrophic Failure: Compartmentalization and Recovery
Spec-driven research note (December 2024): Designing for Catastrophic Failure: Compartmentalization and Recovery.
The KelpDAO Exploit Was Not a Bug
Incident memo (April 2026): the 116,500 rsETH release via LayerZero EndpointV2 was a semantic guard failure. Signatures are not truth unless they bind to a unique, finalized source-chain debit.