Blog

Notes on cybersecurity, networks, embedded systems, and whatever I'm tinkering with.

2025

Darwin & XNU: Inside the macOS Kernel

Mach microkernel, BSD monolith, IOKit drivers, and the hybrid architecture of macOS.

3 min

GrapheneOS: The Fort Knox of Mobile

Hardening Android with Verified Boot, Sandboxed Play Services, and the Auditor App.

2 min

Hyprland: The Ultimate Wayland Experience

Ricing Linux with smooth animations, rounded corners, and the Dwindle layout.

2 min

Rosetta 2 Internals: Magic of M1

How Apple mapped x86 to ARM64: AOT translation, TSO memory ordering, and hardware secrets.

3 min

Windows API Internals: User to Kernel

A deep dive into Syscalls, NTDLL, the PE Format, and API Hooking techniques.

3 min

Yabai: Tiling on macOS

Turning macOS into a tiling window manager. SIP configuration, skhd hotkeys, and scripting.

2 min

Welcome to My Tech Blog

Introduction to the blog - what to expect: cybersecurity, embedded systems, radio, and networking.

1 min

Advanced OPSEC: Beyond the VPN

Compartmentalization (Qubes OS), Hardware Security, Identity Management, and Anti-Forensics.

3 min

The Digital Transmission Chain

From Bits to RF: Source Coding, Channel Coding, Modulation Mapping (IQ), and SDR Implementation.

3 min

Building a Custom FPV Drone

Custom drone build with modified firmware for ultra-low latency, PCB design, and PID tuning.

1 min

Linux Hardening: Kernel & Network

Advanced server hardening: Sysctl tuning, AppArmor/SELinux, Auditd, and SSH defense.

2 min

Tart: macOS Virtualization on Apple Silicon

A comprehensive guide to running macOS VMs using Cirrus Labs' Tart. Installation, networking, and CI/CD integration.

3 min

Docker: The Definitive Guide for Engineers

Deep dive into Docker architecture, Dockerfiles, Compose stacks, and networking best practices.

3 min

Pi-hole: Network-Wide Ad Blocking

Deploying Pi-hole via Docker with Unbound for recursive DNS and maximum privacy.

3 min

WireGuard: Modern High-Performance VPN

Setting up a secure, low-latency VPN tunnel using WireGuard. Server and client configuration.

3 min

Nginx Proxy Manager: SSL Termination

Simplifying reverse proxy management and SSL certificates with Nginx Proxy Manager.

3 min

Portainer: Visual Docker Management

Managing containers, stacks, and volumes with a powerful GUI. Deployment and security best practices.

2 min

Home Assistant: Ultimate Automation Hub

Getting started with Home Assistant Container. Integrations, automations, and Lovelace dashboards.

2 min