// security · infrastructure · ai

Finding what scanners miss

I'm Kevin. I've been taking software apart since 2012 — malware analysis first, then the web, now the whole stack. Today I review code and infrastructure, build my own tools, and run the servers this site lives on. The notes and the log are the anatomy of that work: what broke, what I found, and what it taught me.

fig. 00 — the stackcodegit → cioperatefindbuild · operate · find

status :: live homelab data lands here as a server island — until then, the log is the heartbeat

// fresh from the lab

Latest build

SHIPPED · v1.0.0

rostr

A CLI-first server inventory: one YAML file as the source of truth, everything else generated — SSH config, Ansible inventories, fuzzy host targeting, parallel OS audits. Built because hand-maintained SSH configs rot.

more projects →

fig. 01hosts.yamlsource of truthssh configansible inventoryos audit

// no adjectives, numbers

Proof

security
24 MINfirst find of a backdoor invisible to scanners for 1.5 years
security
<1 Hre-hack closed after the first find
infrastructure
0 BYTESlost when an NVMe died in the pool; backups already proven
migration
34 → 97PageSpeed after the Astro SSR migration, 1,818 records in 3 languages

Client work runs through Contegus, my studio for web, SEO and security.