Blog

You’ll find posts here on cloud security, solution architectures and architecture patterns, security research, zero-day vulnerabilities, and broader technical explorations.

AWS Network Traffic Inspection Series: #2 Intra-VPC East-West Inspection

Deep dive into intra-VPC traffic inspection patterns for east-west flows. Learn how to implement subnet-to-subnet inspection with Gateway Load Balancer and AWS Network Firewall, maintain symmetry, and avoid common pitfalls in single and multi-AZ deployments.

AWS Network Traffic Inspection Series: #1 Overview & Deployment Models

Practical guide to AWS network traffic inspection patterns that scale. Learn deployment models, routing mechanics, and common pitfalls for east-west and north-south traffic inspection across VPCs, regions, and hybrid environments.

Root Cause and Patch Analysis: AWS SAM CLI Vulnerabilities

A detailed analysis of two security vulnerabilities found in the AWS Serverless Application Model CLI (AWS SAM CLI) – CVE-2025-3047 and CVE-2025-3048 – along with the code-level issues and fixes.

Vulnerability Analysis: AWS Tough Library Multiple CVEs

Comprehensive analysis of four critical security vulnerabilities discovered in the AWS Tough Library, including detailed root cause analysis, impact assessment, and remediation strategies.