Blog
-
2026-04-03
How to Check Any iOS App's Privacy Manifest
Step-by-step guide to check what data any iOS app really collects. We use the White House app as an example.
-
2026-03-30
We Intercepted the White House App's Network Traffic. Here's What It Sends.
We set up a MITM proxy and captured the decrypted HTTPS traffic from the official White House iOS app. On a single browsing session it contacts multiple Elfsight domains, sends your device fingerprint to OneSignal, and loads Google DoubleClick ad tracking. The privacy manifest says it collects nothing.
-
2026-03-27
Security Analysis of the Official White House iOS App
We reverse engineered the official White House iOS app (gov.whitehouse.app) and found concerning security and privacy issues, including a Russian-origin company executing live JavaScript, a false privacy manifest, and minimal security hardening.
-
2026-02-23
Case Study
Building a High-Performance WooCommerce Discount Engine
How we replaced a failing WooCommerce discount plugin with a custom engine handling 100+ rules and $10M+ in transactions at sub-second speeds.
-
2026-02-20
Case Study
90 Days to Insider Threat Detection: A Financial Services Engagement
How we built an AI-powered insider threat detection pipeline for a financial services company in 90 days using OCSF, Datadog, and Claude Code.
-
2026-02-18
Case Study
Cloud to Bare Metal Migration: Cut Your Hosting Costs by 90%
Migrate from cloud to bare metal and cut your infrastructure bill by 90%. Same automation, same reliability, a fraction of the cost.
-
2025-12-07
Case Study
Self-Hosting BTCPay Server on GCP with Terraform and Ansible
How we deployed a self-hosted BTCPay Server on Google Cloud Platform using Terraform, Packer, and Ansible for a WooCommerce store accepting Bitcoin payments.
-
2024-08-05
How Load Balancers Work - Explained with a Shopping Queue Analogy
A simple analogy explaining how load balancers distribute traffic across servers to keep your application fast and available.
-
2023-11-11
Creating a Security Program for Small to Medium Sized Businesses
A practical guide to building a security program for startups and small businesses. SSO, MFA, secrets management, vendor review, and more.
-
2023-11-10
DevOps Consulting: Kubernetes, CI/CD, Monitoring, and Cloud Infrastructure
Ship faster with fewer incidents. Kubernetes, Docker, CI/CD with security built in, Datadog monitoring, and infrastructure automation on AWS and GCP.
-
2023-11-10
Wordpress vs Static Site Generators
Discover why static site generators offer superior security and less maintenance, protecting your brand from potential risks.
-
2023-11-09
Cybersecurity Training: Security Awareness, Developer Training, and Executive Briefings
Build a team that recognizes and stops threats before they become incidents. Practical, hands-on training tailored to your environment.
-
2023-11-09
Shopify Development: Custom Themes, Apps, and Store Migration
Faster stores, higher conversions, and code you can maintain. Custom themes, app development, migrations, and Shopify Plus.
-
2023-11-09
WordPress Development: Custom Themes, Plugins, and WooCommerce
Fast, secure WordPress sites that are easy to maintain. Custom themes, plugins, WooCommerce, and performance optimization.
-
2023-11-08
Custom Web Development: Rails, Django, Golang, and Mobile Apps
Ship the right product, built to last. Custom web applications in Rails, Django, Golang, and PHP. Native iOS and Android.
-
2023-11-06
Cloud Security Consulting: Audits, Compliance, and Infrastructure Hardening
Security audits, SOC 2/HIPAA/PCI compliance, penetration testing, and cloud infrastructure hardening for AWS and GCP.