
FortiClientEMS RCE: When Your Control Plane Becomes a Launchpad
A critical SQL injection in FortiClientEMS is under active attack, turning your endpoint management server into a launchpad for bad actors.
Securing digital infrastructures and building robust web solutions. Specialized in SOC operations, Penetration Testing, and Full-stack Development.
A snapshot of recent work — security tools, marketplaces, and automation. Click a card to see the full development timeline.
Daily cybersecurity writing — incident analysis, vulnerability disclosures, and defensive playbooks.

A critical SQL injection in FortiClientEMS is under active attack, turning your endpoint management server into a launchpad for bad actors.

A new backdoor in XZ Utils, CVE-2024-3094, just showed us how fragile our software supply chain truly is, leading to RCE.

State-sponsored actors just reminded us that even your most trusted network defenses can be backdoored with zero-days.
Tools and technologies I use to secure and build systems.
A timeline of my journey in Cybersecurity and IT Operations.