security 7
- systemd service hardening: sandboxing what you already run
- fail2ban: automating the lockouts iptables doesn't
- iptables: building rules that actually make sense
- hardening SSH: the low-hanging fruit most people skip
- passive OSINT: mapping an attack surface before you touch anything
- capturing and reading traffic with tcpdump
- rootless, immutable, and open: rethinking the modern tech stack