Ryan S.
Ryan S.
Security engineer | Blockchain Developer

Blog specialized on Security, Crypto and blockchain.

Social
  • Twitter
  • GitHub
  • LinkedIn
  • bsky
    Bluesky

2026 © Ryan S.

    Windows Domain Persistence - Golden Tickets and the Skeleton Key

    Windows Domain Persistence - Golden Tickets and the Skeleton Key

    How an attacker who already controls a Domain Controller keeps coming back - the Golden Ticket forged from the krbtgt key and the Skeleton Key LSASS backdoor, with detection and mitigation.

    2026, Jun 30   —  9 minute read
    Windows Credentials Protection - LAPS, WDigest, LSA Protection, Credential Guard and Protected Users

    Windows Credentials Protection - LAPS, WDigest, LSA Protection, Credential Guard and Protected Users

    How Windows protects credentials at rest and in memory - password policy, LAPS, logon types, disabling WDigest, LSA Protection (RunAsPPL), Credential Guard (VBS), and the Protected Users group.

    2026, Jun 30   —  11 minute read
    Windows Advanced Authentication - Smartcards, Virtual Smartcards and Hello for Business

    Windows Advanced Authentication - Smartcards, Virtual Smartcards and Hello for Business

    How Windows replaces passwords with smartcards, TPM-backed virtual smartcards and Windows Hello for Business, the Kerberos PKINIT flow behind them, and why NTLM and ticket theft still apply.

    2026, Jun 30   —  10 minute read
    SLH-DSA — The Stateless Hash-Based Signature Standard (FIPS 205)

    SLH-DSA — The Stateless Hash-Based Signature Standard (FIPS 205)

    How SLH-DSA (FIPS 205) builds a stateless post-quantum signature from hash functions alone, layering WOTS+, XMSS, a hypertree, and FORS, with the twelve parameter sets and the small/fast trade-off.

    2026, Jun 29   —  14 minute read
    ML-KEM — The Module-Lattice Key-Encapsulation Standard (FIPS 203)

    ML-KEM — The Module-Lattice Key-Encapsulation Standard (FIPS 203)

    How ML-KEM (FIPS 203) builds a post-quantum key-encapsulation mechanism from module lattices, the K-PKE component, the Fujisaki-Okamoto transform with implicit rejection, and the three parameter sets.

    2026, Jun 29   —  13 minute read
    ML-DSA — The Module-Lattice Digital Signature Standard (FIPS 204)

    ML-DSA — The Module-Lattice Digital Signature Standard (FIPS 204)

    How ML-DSA (FIPS 204) builds a post-quantum digital signature from module lattices, the Fiat-Shamir with Aborts construction, rejection sampling, and the three NIST parameter sets.

    2026, Jun 29   —  17 minute read
    Linux Isolation Primitives - Defense in Depth Beyond the Castle Model

    Linux Isolation Primitives - Defense in Depth Beyond the Castle Model

    A technical survey of Linux isolation primitives (mount options, chroot, netfilter, cgroups, namespaces) and how they compose into containers, hypervisors, and Qubes OS as defense in depth.

    2026, Jun 29   —  14 minute read
    • View all

      ISO20022

      25 Posts

    • View all

      ZKP

      40 Posts

    • View all

      ai

      15 Posts

    • View all

      blockchain

      170 Posts

    • View all

      blockchainBestOf

      12 Posts

    • View all

      cryptography

      74 Posts

    • View all

      defi

      38 Posts

    • View all

      eli10

      9 Posts

    • View all

      ethereum

      67 Posts

    • View all

      finance

      5 Posts

    • View all

      linux

      18 Posts

    • View all

      network

      46 Posts

    • View all

      oracle

      3 Posts

    • View all

      programmation

      52 Posts

    • View all

      regulation

      5 Posts

    • View all

      rfc

      3 Posts

    • View all

      security

      91 Posts

    • View all

      solana

      12 Posts

    • View all

      solidity

      43 Posts

    • View all

      tryhackme

      4 Posts

    • View all

      wallet

      15 Posts

    • View all

      web

      9 Posts

    • View all

      zama

      6 Posts