Cybersecurity & Secure HW
Networking/OS security, cryptography/PKI, hardware security, embedded/IoT security, pentest, and threat intelligence.
280 topics · 0 with articles
Intern Engineer· 40
- 802.1X: EAP-TLS and PEAP Authentication
- ARP Spoofing and MAC Flooding Mitigation
- Air-Gap Security and Data Diode Concepts
- Audit Logging: auditd Rules and Analysis
- BGP Hijacking and RPKI Mitigation
- Bluetooth Security: KNOB, BIAS, BLESA Attacks
- CVE and CPE: Vulnerability Naming Conventions
- Cellular Security: 5G NR Security Architecture
- Certificate Validation: Chain of Trust, OCSP, CRL
- Container Security: Docker Escape, Namespace
- DDoS Mitigation: BGP Blackholing, Anycast
- DNS Security: DNSSEC, DoH, DoT, RPKI
- DNS Tunneling Attack and Detection
- Encrypted C2 (Command and Control) Detection
- Firewall Types: Stateless, Stateful, NGFW
- HSTS, HPKP, and Certificate Pinning
- IPv6 Security: NDP Attack Mitigations
- Kernel Hardening: ASLR, DEP, SMEP, SMAP
- Kubernetes Network Policy and PodSecurity
- Linux File Permissions: chmod, ACL, setuid
- Linux Privilege Escalation: SUID, sudo
- NAT and PAT: Security Implications
- NIDS: Snort and Suricata Rule Basics
- Network Segmentation: DMZ, VLAN, Micro-Segment
- Network Traffic Analysis with Wireshark
- OSI Model: 7 Layers and Security at Each
- PAM (Pluggable Authentication Modules)
- SIEM Integration: Linux Logs to Splunk/ELK
- SSH Hardening: Key-Only, Fail2ban, 2FA
- Software-Defined Perimeter (SDP)
- TCP/IP Protocol Stack: Headers and Flags
- TLS 1.3 Handshake: Phases and Key Exchange
- VLAN Hopping and Double-Tagging Attack
- VPN Protocols: IKEv2/IPSec, WireGuard, OpenVPN
- WAF (Web Application Firewall) Configuration
- Wi-Fi Security: WPA3, Enterprise Mode
- Windows AD: Kerberos, NTLM, Pass-the-Hash
- Windows Privilege Escalation: Token Impersonation
- Zero Trust Network Architecture (ZTNA)
- eBPF for Runtime Security (Falco, Tetragon)
Junior Engineer· 40
- ACME Protocol (Let Encrypt) Automation
- AES-GCM: Authenticated Encryption (AEAD)
- BLAKE2 and BLAKE3: Fast Cryptographic Hash
- Blockchain and Distributed Ledger for Identity
- CA Hierarchy: Root, Intermediate, Issuing CA
- CMP (Certificate Management Protocol)
- Certificate Transparency (CT) Logs
- ChaCha20-Poly1305 for Performance Contexts
- Commitment Schemes and Hash-Based Signatures
- Cryptographic Agility Design Pattern
- Diffie-Hellman Key Exchange: DH and ECDH
- Digital Certificate: X.509 Fields (Subject, SAN)
- ECDSA: Signing and Verification Process
- EdDSA (Ed25519) for High-Performance Signatures
- Elliptic Curve Cryptography (ECC): P-256
- Format-Preserving Encryption (FPE)
- Forward Secrecy: Ephemeral ECDHE
- HKDF: HMAC-based Key Derivation Function
- HMAC: Construction and Security Proof
- Hash Functions: SHA-256, SHA-384, SHA-512
- Homomorphic Encryption: BFV, CKKS Schemes
- Hybrid Classical + PQC Cryptography Transition
- NIST PQC Standardization: FIPS 203, 204, 205
- OCSP Stapling for Certificate Revocation
- PBKDF2, bcrypt, scrypt, Argon2 for Passwords
- PKI Design for Enterprise and IoT Devices
- Post-Quantum Cryptography: CRYSTALS-Dilithium
- Post-Quantum Cryptography: CRYSTALS-Kyber
- Post-Quantum Cryptography: SPHINCS+, FALCON
- Quantum Key Distribution (QKD): BB84 Protocol
- Quantum-Safe TLS 1.3 with PQC
- RSA Key Exchange and OAEP Padding
- SHA-3 (Keccak): Sponge Construction
- Secure Multi-Party Computation (SMPC)
- Side-Channel Resistant Implementation (Masking)
- Symmetric Encryption: AES-128/256 Modes
- Threshold Cryptography and Secret Sharing
- Verifiable Random Function (VRF)
- X25519 and X448 for Key Agreement
- Zero-Knowledge Proofs: zk-SNARKs, zk-STARKs
Middle Engineer· 80
- 5G Modem Security for IoT (SIM Swap Prevention)
- AMD SEV-SNP: VM Memory Encryption
- ATECC608: ECC, SHA, and RNG in HW
- AUTOSAR E2E Protection Profile
- AUTOSAR SecOC: Message Authentication Code
- Anti-Tamper: Mesh Sensor, Environmental Monitor
- AppArmor and SELinux for Embedded Linux
- Arm TrustZone-A: Normal vs. Secure World
- Automotive Ethernet Security (MACsec 802.1AE)
- BLE MITM Attack and Mitigation
- BLE Security: Pairing Modes and LE Secure Connections
- BLE Sniffing with Ubertooth One
- Backdoor Detection in Embedded Firmware
- CAN Bus Intrusion Detection System (IDS)
- CHERI Capability Hardware Architecture
- Clock Glitching Attack on MCU
- CoAP DTLS for Secure IoT Communication
- Correlation Power Analysis (CPA) Attack
- Debug Port Security: TrustZone-M DAP Control
- Differential Power Analysis (DPA) Attack
- EU Cyber Resilience Act (CRA) for Embedded
- Electromagnetic (EM) Side-Channel Analysis
- Embedded Linux Security Hardening (CIS)
- Fault Injection: Voltage Glitching Attack
- File System Analysis: SquashFS, JFFS2, UBIFS
- Firmware Reverse Engineering with Ghidra
- Hardware Formal Verification for Security
- Hardware Isolation for Multi-Domain Systems
- Hardware Root of Trust: ROM, eFuse, OTP
- Hardware Security Module (HSM) Types and API
- Hardware Trojan: Types and Detection
- IC Anti-Counterfeiting: PUF and On-Chip ID
- IEC 62443-4-2 Component Security Level
- ISO 15118: V2G TLS Communication Security
- ISO/SAE 21434: Automotive Cybersecurity Eng.
- Industrial Protocol Security: Modbus, DNP3
- Intel SGX: Enclave Memory Encryption
- Intel TDX: Trusted Domain Architecture
- IoT Firmware Extraction: JTAG, UART, SPI Flash
- JTAG Disabling and Debug Lock Mechanisms
- Kernel Lockdown and Integrity Measurement
- LPWAN Security: LoRaWAN JoinServer, Root Keys
- Laser Fault Injection: Optical Attack
- Lightweight Cryptography: ASCON, GIFT-COFB
- MQTT Security: TLS, ACL, Authentication
- Matter / Thread PKI and Device Attestation
- Matter Protocol Security: PASE, CASE, NOC
- Memory Protection: MPU Region Lock
- Microprobing and FIB (Focused Ion Beam) Attack
- NB-IoT and LTE-M Security Features
- NXP SE050 and Infineon OPTIGA Integration
- OBD-II Port Attack Surface and Protection
- OT Protocol Anomaly Detection (Claroty, Nozomi)
- Open Titan: Open-Source Root of Trust
- PKCS#11 API for HSM Integration
- PUF Challenge-Response Protocol
- PUF: SRAM PUF and Ring Oscillator PUF
- Physically Unclonable Function (PUF) Design
- Post-Quantum on MCU: Kyber-512 on Cortex-M4
- RISC-V Security Extensions
- Replay Attack on PKES (Keyless Entry)
- Root of Trust (RoT): Design and Boot Chain
- SBOM for Embedded: CycloneDX Format
- Secure Boot on Embedded Linux: U-Boot + IMA
- Secure Boot: Chain of Trust from ROM to App
- Secure Element: ISO 7816, GlobalPlatform API
- Secure Enclave: Apple SEP, Samsung eSE
- Secure OTA Update: TLS + Code Signing + Anti-Rollback
- Side-Channel: Simple Power Analysis (SPA)
- Supply Chain Hardware Integrity
- TPM 2.0: PCR Registers, Attestation, Sealed Storage
- TPMS Wireless Attack and Countermeasures
- Template Attack and Profiling Methods
- Thread Network Security: DTLS, MLE, MAC
- Trusted Platform Module (TPM 2.0) Architecture
- UDS Security Access: Seed-Key Algorithm
- Yocto Security: meta-security Layer
- Zigbee 3.0 Security: CCM* Encryption
- Zigbee Coordinator Trust Center Security
- eFuse and OTP Burning for Device Identity
Senior Engineer· 40
- Active Directory Attacks: Kerberoasting
- Adversary Emulation: MITRE ATT&CK Plans
- Azure AD Privilege Escalation Techniques
- BloodHound for AD Attack Path Enumeration
- Broken Authentication: JWT Attacks, Session Fix
- Buffer Overflow Exploitation: Stack Smashing
- CSRF Exploitation and SameSite Cookie Fix
- Cloud Penetration: AWS Privilege Escalation
- Container Escape: Docker runc CVE Exploits
- Cross-Site Scripting (XSS): Reflected, Stored, DOM
- DCSync Attack and Golden Ticket Forgery
- Directory Traversal and LFI/RFI Exploitation
- Full-Scope Red Team Engagement Planning
- Heap Exploitation: Use-After-Free, Heap Spray
- Insecure Deserialization Exploitation
- Kubernetes Cluster Pentest: RBAC Abuse
- Lateral Movement: PsExec, WMI, SMB Relay
- Linux Privilege Escalation: SUID, Cron, PATH
- Network Scanning with Nmap: Host Discovery
- OWASP API Security Top 10 (2023)
- OWASP Top 10 Web Vulnerabilities 2021
- Offensive Security Certified Professional (OSCP)
- Password Cracking: Hashcat, John the Ripper
- Password Spraying and Credential Stuffing
- Physical Pentest: Tailgating, Lock Picking
- Purple Team Exercise Planning and Execution
- ROP Chain Construction for Stack Exploitation
- Red Team: Cobalt Strike and Brute Ratel C2
- SQL Injection Exploitation with SQLMap
- SQL Injection: Error-Based, Blind, Time-Based
- SSRF Attack and Mitigation Techniques
- Service and Version Detection with Nmap
- Silver Ticket and Pass-the-Ticket Attack
- Social Engineering Simulation: Phishing
- Vulnerability Scanning: Nessus, OpenVAS, Qualys
- Web Application Scanning: Burp Suite Pro
- Web Fuzzing with ffuf and wfuzz
- Windows PE: AlwaysInstallElevated, DLL Hijack
- Wireless Pentest: Aircrack-ng, WPA2 PMKID
- XXE (XML External Entity) Injection
Staff Engineer· 40
- Abuse Cases and Misuse Cases in Requirements
- CMMC Level 3: DoD Cybersecurity Maturity
- CRA (Cyber Resilience Act) for Connected Products
- Container Image Scanning: Trivy, Grype, Clair
- DAST Tools: OWASP ZAP, Burp Suite Automated
- DO-326A: Airworthiness Security Process (Aviation)
- DORA Financial Regulation Compliance
- ETSI EN 303 645 IoT Security Baseline
- EU AI Act: Risk Classification for AI Systems
- GDPR Article 25: Data Protection by Design
- HIPAA Security Rule: Technical Safeguards
- IAST (Interactive Application Security Testing)
- IEC 62443-3-3: System Security Requirements
- IEC 62443-4-2: Component Requirements
- IEC 62443: Industrial Cybersecurity Standard Series
- ISO/IEC 27001 ISMS Implementation
- ISO/SAE 21434: Road Vehicle Cybersecurity
- IaC Security Scanning: Checkov, tfsec
- In-Toto Framework: Build Step Attestation
- LINDDUN Privacy Threat Modeling
- Microsoft SDL (Secure Development Lifecycle)
- NERC CIP: Critical Infrastructure for Power Grid
- NIST CSF 2.0: Six Functions Mapping
- NIST SP 800-160: Systems Security Engineering
- NIST SP 800-53 Rev 5: Security Controls Catalog
- NIST SP 800-82 Rev 3: ICS Security Guide
- OWASP SAMM (Software Assurance Maturity Model)
- PASTA (Process for Attack Simulation and Threat)
- PCI DSS v4.0: Payment Card Security
- SAE J3061: Automotive Cybersecurity Guidebook
- SAST Tools: Semgrep, CodeQL, Fortify, Checkmarx
- SBOM Generation: Syft (CycloneDX), SPDX Format
- SCA (Software Composition Analysis): Snyk
- SLSA Framework: Build Provenance and Integrity
- SOC 2 Type II: Trust Service Criteria
- Secret Detection: GitLeaks, TruffleHog
- Secure Coding Guidelines: CERT C, CERT Java
- Sigstore: Cosign, Fulcio, Rekor
- Supply Chain Security: SLSA, Sigstore
- Threat Modeling: STRIDE Categories
Distinguished Engineer· 40
- AI-Powered Threat Hunting Platforms
- AI/ML for Anomaly Detection in SOC (UEBA)
- APT Group Attribution and Tracking
- Cognitive Warfare and Information Operations
- Cyber Deception: Fake Credential, Breadcrumb
- Cyber Kill Chain Model (Lockheed Martin)
- Deception Technology: Honeypots, Honeytokens
- Diamond Model of Intrusion Analysis
- Digital Forensics: Disk Imaging with FTK Imager
- EDR Solutions: CrowdStrike Falcon, SentinelOne
- Elastic Stack (ELK): Kibana Dashboard for SOC
- Fluentd / Logstash Log Ingestion Pipeline
- ICS Threat Intelligence (Dragos, Claroty)
- IOC Types: IP, Domain, Hash, URL, Email
- Incident Detection: Alert Triage Process
- Incident Response Plan: Preparation to Lessons Learned
- Log Aggregation Pipeline: syslog to ELK
- MISP Platform: Threat Sharing Community
- MITRE ATT&CK Framework: Techniques and TTPs
- MITRE ATT&CK Navigator for Coverage Visualization
- MITRE D3FEND: Defensive Countermeasure Ontology
- Malware Analysis: Dynamic (Procmon, Cuckoo)
- Malware Analysis: Static (Strings, PE Headers)
- Memory Forensics: Volatility3 Framework
- Nation-State Threat Actor Profiling
- Network Forensics: Packet Capture Analysis
- OSINT (Open Source Intelligence) Techniques
- OpenCTI Threat Intelligence Platform
- Ransomware Analysis and Decryption Techniques
- SIEM Correlation Rule Development
- SIEM Platforms: Splunk, IBM QRadar, Sentinel
- SOC Tier Structure: L1 Triage, L2 Analysis, L3 Hunt
- STIX 2.1: Structured Threat Intelligence Format
- Sigma Rules for Log-Based Detection
- Snort and Suricata IDS Rule Writing
- TAXII 2.1: Threat Intelligence Sharing Protocol
- Threat Intelligence Feed Aggregation and Scoring
- Threat Intelligence Types: Strategic, Tactical, Operational
- XDR (Extended Detection and Response) Platform
- YARA Rules for Malware Pattern Matching
