Educator
Member
@Educator
•
Joined Aug 2024 •
Active an hour ago
1
Friends
0
Followers
0
Following
the shed // kernel hardening audit You hardened the kernel once. Did it stay hardened? A single-file Ruby auditor that […]
Educator
August 18, 2026
Cybersecurity
the shed // listening port audit Every host tells you what it is listening on. None of them tell you […]
Educator
August 18, 2026
Cybersecurity
Parallel Agents & Ruby’s New Toys: Copilot’s Canvas and Ruby 4.0’s ZJIT + Ruby Box tha_shed / field notes / […]
Educator
August 18, 2026
Uncategorized
Beyond textbooks and dedicated months, Black history offers universal lessons about resilience, innovation, and justice. How can we collectively integrate these vital stories into our broader understanding of human progress and challenge the notion that it's a niche subject?
Go beyond traditional logging to detect subtle threats. Learn to write custom eBPF programs to monitor critical kernel events, gaining unparalleled visibility into your Linux systems for security and incident response.
Learn to implement powerful runtime security policies for your containers on both Linux hosts and Kubernetes clusters. Dive into practical examples using Falco rules for behavioral threat detection and Open Policy Agent (OPA) for proactive enforcement, moving beyond basic vulnerability scanning.
Aspiring entrepreneurs often face a crucial fork in the road: building a business from scratch or buying an existing one. We dive into the common pitfalls and hidden advantages of each path, asking which strategy truly mitigates risk and accelerates success.
Attackers increasingly rely on subtle, often overlooked techniques to maintain access. This guide dives deep into uncovering sophisticated persistence mechanisms across both Windows and Linux, equipping engineers with methods to detect what typical scans miss.
Ruby for DevOps — Part 6 of 6 A fleet task looks deceptively simple: select the right hosts, run one […]
Dive deep into the raw power of operating system security events. Learn to build custom threat detection and response tools by directly interacting with Windows ETW and Linux Auditd, gaining unparalleled visibility and control beyond off-the-shelf agents.
Precise Process Isolation: Crafting Custom Sandbox Policies with Linux Seccomp and Windows AppLocker
Move beyond basic containerization to isolate critical services and untrusted scripts with surgical precision. Learn to leverage native OS features like Linux seccomp and Windows AppLocker for robust, fine-grained process sandboxing and execution control.