/konular

Arşivi değil, sistemi seç.

Bu rotalar, test edilen sisteme göre pratik yazıları ve CVE analizlerini bir araya getirir. Her biri önerilen bir dosyayla başlar ve planlı bir sırayla devam eder.

Amaca göre başla

Önce sonucu seç.

Sistem adını biliyorsanız tüm rotalara geçin. Bilmiyorsanız, yapmak istediğiniz işe en yakın başlangıç yolunu seçin.

Tüm uzmanlık rotaları

Sistemi seç.

On dört düzenlenmiş rota; saha notlarını, araştırma dosyalarını ve planlı okuma sırasını birbirine bağlar.

01APP → LINK → DESTINATION

Mobile security

Deep links, application boundaries, browser handoffs, and platform behavior that only becomes dangerous when several valid decisions are chained together.

2 saha notu1 CVE analiziRotayı aç ↗
02CLAIM → POLICY → ACCESS

Identity and access

OAuth, JWT, workload identity, Active Directory, and the difference between a valid credential and an authorized action.

27 saha notu0 CVE analiziRotayı aç ↗
03RF → CAPTURE → PROOF

Wireless security

Wi-Fi assessment methodology built around capture quality, controlled validation, evidence continuity, and defender-ready conclusions.

1 saha notu0 CVE analiziRotayı aç ↗
04PATCH → CAUSE → EVIDENCE

Vulnerability research

Patch changes, failed security decisions, safe reproduction, and explicit evidence limits for named vulnerabilities.

5 saha notu8 CVE analiziRotayı aç ↗
05ENTRY → IDENTITY → AUTHORITY

Cloud security

Server-side reachability, workload identity, effective IAM permissions, and the paths that connect them.

6 saha notu0 CVE analiziRotayı aç ↗
06REQUEST → POLICY → ACTION

Web application security

Routing, OAuth, token verification, and the difference between technically valid input and an authorized action.

6 saha notu3 CVE analiziRotayı aç ↗
07DATA → MODEL → TOOL → IMPACT

AI and agent security

Production AI systems assessed through their data, deployment identities, tools, and real-world authority—not prompt lists alone.

4 saha notu0 CVE analiziRotayı aç ↗
08BASELINE → CHANGE → PROOF

Linux security

Server hardening, service isolation, privilege boundaries, release integrity, and the evidence required to show that a control changed a real attack path.

2 saha notu4 CVE analiziRotayı aç ↗
09ACCESS → TEMPO → RECOVERY

Ransomware readiness

The intrusion an affiliate actually runs, tested stage by stage: credentialed entry, enumeration nobody saw, the escalation path that was already there, measured blast radius, and whether recovery survives the domain.

12 saha notu0 CVE analiziRotayı aç ↗
10ENTITY → SURFACE → TRUST → PROOF

External pentest

Organisation intelligence, attributed asset discovery, trust-boundary mapping, change monitoring, and the narrow active checks that turn perimeter observations into defensible evidence.

5 saha notu0 CVE analiziRotayı aç ↗
11MACOS · IOS · WEBKIT · RUNTIME BOUNDARIES

Apple & macOS security

App Sandbox, TCC, entitlements, XPC, Endpoint Security, and shared container boundaries across macOS, iOS, and WebKit.

6 saha notu2 CVE analiziRotayı aç ↗
12OBJECTIVE → AUTHORITY → ACTION → SIGNAL → RECOVERY

Red team operations

Authorized adversary operations measured through their business objective, runtime authority, technical actions, defender signals, response decisions, evidence, and verified recovery—not access alone.

1 saha notu0 CVE analiziRotayı aç ↗
13PLATFORM → DEVICE → FLEET → RECOVERY

ATM security

ATM assessment methodology across transaction trust, firmware and boot, kiosk execution, financial-device middleware, remote management, containment, and recovery.

5 saha notu0 CVE analiziRotayı aç ↗
14PAGE → RELAY → RELEASE → POLICY → EFFECT

Browser security

Extension isolation, page messaging, native hosts, release provenance, update pipelines, runtime configuration, and the exact point where web-controlled intent or new code becomes a privileged effect.

3 saha notu0 CVE analiziRotayı aç ↗