<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Security on Daniel &#39;f0o&#39; Preussker</title>
    <link>https://f0o.dev/tags/security/</link>
    <description>Recent content in Security on Daniel &#39;f0o&#39; Preussker</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en-us</language>
    <lastBuildDate>Fri, 17 Apr 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://f0o.dev/tags/security/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Oubliette: A Linerate eBPF/XDP DDoS Scrubber</title>
      <link>https://f0o.dev/posts/2026/04/oubliette-a-linerate-ebpf/xdp-ddos-scrubber/</link>
      <pubDate>Fri, 17 Apr 2026 00:00:00 +0000</pubDate>
      
      <guid>https://f0o.dev/posts/2026/04/oubliette-a-linerate-ebpf/xdp-ddos-scrubber/</guid>
      <description>&lt;p&gt;It&amp;rsquo;s been some time since I wrote something. Not because I got lazy but because I&amp;rsquo;ve been cooking something up in the lab that I just can&amp;rsquo;t wait to share.&lt;/p&gt;
&lt;p&gt;Late Q2, I&amp;rsquo;ll be publishing a new open-source project called &lt;code&gt;oubliette&lt;/code&gt;. It&amp;rsquo;s a linerate DDoS scrubber, and I promise you, it&amp;rsquo;s pretty neat.&lt;/p&gt;
&lt;p&gt;I&amp;rsquo;ve been dealing with DDoS attacks for what feels like a lifetime. The ones that always get me riled up are TCP SYN Floods with spoofed IPs.&lt;/p&gt;</description>
    </item>
    
    <item>
      <title>BGP Hijacking and other nuisances</title>
      <link>https://f0o.dev/posts/2024/06/bgp-hijacking-and-other-nuisances/</link>
      <pubDate>Thu, 27 Jun 2024 00:00:00 +0000</pubDate>
      
      <guid>https://f0o.dev/posts/2024/06/bgp-hijacking-and-other-nuisances/</guid>
      <description>&lt;p&gt;Honestly where to even begin&amp;hellip; All of my research runs on my own ASN and through 2-3 prefixes that I operate. Being my own ISP gives me the flexibility and mobility required to do possibly stupid things without upsetting or interrupting any potential upstream/provider.&lt;/p&gt;
&lt;p&gt;Now that we&amp;rsquo;re on the same page let&amp;rsquo;s go to the juicy stuff.&lt;/p&gt;
&lt;p&gt;The internet runs as a bunch of loosely connected independent networks, each identified by their ASN (Autonomous System Number - catchy right?). While there are many ways to exchange routes between two networks the one used by &amp;ldquo;The Internet&amp;rdquo; is BGP (Border Gateway Protocol); It really isn&amp;rsquo;t that important as ultimately all protocols rely on Trust alone.&lt;/p&gt;</description>
    </item>
    
    <item>
      <title>SafePal S1 Ramblings</title>
      <link>https://f0o.dev/posts/2021/06/safepal-s1-ramblings/</link>
      <pubDate>Mon, 14 Jun 2021 00:00:00 +0000</pubDate>
      
      <guid>https://f0o.dev/posts/2021/06/safepal-s1-ramblings/</guid>
      <description>&lt;p&gt;So I picked this relatively new cryptowallet &amp;ldquo;SafePal S1&amp;rdquo; for literally peanuts which immediately made me wonder how good it actually can be&amp;hellip;&lt;/p&gt;
&lt;p&gt;First of all I&amp;rsquo;m very happy to see that cryptowallets become more accessible and cheaper, this is generally a good trend but I&amp;rsquo;m ofc also concerned by the means on how they got the price so low (we&amp;rsquo;re talking about 50USD here).&lt;/p&gt;
&lt;p&gt;One thing I noticed immediately was that this wallet is extremely small and light. It&amp;rsquo;s the size of a credit-card and as wide as perhaps a stack of 5 cards.&lt;/p&gt;</description>
    </item>
    
  </channel>
</rss>
