Ryan S.
Ryan S.
Security engineer | Blockchain Developer

Blog specialized on Security, Crypto and blockchain.

Social
  • Twitter
  • GitHub
  • LinkedIn
  • bsky
    Bluesky

2026 © Ryan S.

    Windows Credentials Protection - LAPS, WDigest, LSA Protection, Credential Guard and Protected Users

    Windows Credentials Protection - LAPS, WDigest, LSA Protection, Credential Guard and Protected Users

    How Windows protects credentials at rest and in memory - password policy, LAPS, logon types, disabling WDigest, LSA Protection (RunAsPPL), Credential Guard (VBS), and the Protected Users group.

    2026, Jun 30   —  11 minute read
    Windows Advanced Authentication - Smartcards, Virtual Smartcards and Hello for Business

    Windows Advanced Authentication - Smartcards, Virtual Smartcards and Hello for Business

    How Windows replaces passwords with smartcards, TPM-backed virtual smartcards and Windows Hello for Business, the Kerberos PKINIT flow behind them, and why NTLM and ticket theft still apply.

    2026, Jun 30   —  10 minute read
    SLH-DSA — The Stateless Hash-Based Signature Standard (FIPS 205)

    SLH-DSA — The Stateless Hash-Based Signature Standard (FIPS 205)

    How SLH-DSA (FIPS 205) builds a stateless post-quantum signature from hash functions alone, layering WOTS+, XMSS, a hypertree, and FORS, with the twelve parameter sets and the small/fast trade-off.

    2026, Jun 29   —  14 minute read
    ML-KEM — The Module-Lattice Key-Encapsulation Standard (FIPS 203)

    ML-KEM — The Module-Lattice Key-Encapsulation Standard (FIPS 203)

    How ML-KEM (FIPS 203) builds a post-quantum key-encapsulation mechanism from module lattices, the K-PKE component, the Fujisaki-Okamoto transform with implicit rejection, and the three parameter sets.

    2026, Jun 29   —  13 minute read
    ML-DSA — The Module-Lattice Digital Signature Standard (FIPS 204)

    ML-DSA — The Module-Lattice Digital Signature Standard (FIPS 204)

    How ML-DSA (FIPS 204) builds a post-quantum digital signature from module lattices, the Fiat-Shamir with Aborts construction, rejection sampling, and the three NIST parameter sets.

    2026, Jun 29   —  17 minute read
    Linux Isolation Primitives - Defense in Depth Beyond the Castle Model

    Linux Isolation Primitives - Defense in Depth Beyond the Castle Model

    A technical survey of Linux isolation primitives (mount options, chroot, netfilter, cgroups, namespaces) and how they compose into containers, hypervisors, and Qubes OS as defense in depth.

    2026, Jun 29   —  14 minute read
    GNU/Linux Base Security Primitives - Authentication, Permissions, ACLs, Attributes, Capabilities

    GNU/Linux Base Security Primitives - Authentication, Permissions, ACLs, Attributes, Capabilities

    A technical walkthrough of the base GNU/Linux security primitives - login and authentication, POSIX file permissions, ACLs, extended attributes, and capabilities - with their adversary models and trade-offs.

    2026, Jun 29   —  13 minute read
    • View all

      ISO20022

      25 Posts

    • View all

      ZKP

      21 Posts

    • View all

      ai

      14 Posts

    • View all

      blockchain

      138 Posts

    • View all

      blockchainBestOf

      12 Posts

    • View all

      cryptography

      63 Posts

    • View all

      defi

      32 Posts

    • View all

      eli10

      8 Posts

    • View all

      ethereum

      51 Posts

    • View all

      finance

      3 Posts

    • View all

      linux

      14 Posts

    • View all

      network

      46 Posts

    • View all

      oracle

      2 Posts

    • View all

      programmation

      48 Posts

    • View all

      rfc

      3 Posts

    • View all

      security

      81 Posts

    • View all

      solana

      10 Posts

    • View all

      solidity

      41 Posts

    • View all

      tryhackme

      4 Posts

    • View all

      web

      8 Posts