About
Hey – I’m Muqsit working as a Product Security Engineer, doing security architecture reviews, secure code reviews, threat modelling, handling SecDevOps (SAST, DAST and SCA) and more recently diving into integrating AI in security. I’ve also done penetration testing and a bit of bug bounty work on firmware, web, and mobile applications.
By day, I work doing everything described above. By night, I write here, run the Shift-Left Security newsletter, and post videos on YouTube.
What’s this blog about?
This blog isn’t polished or corporate. It’s just me documenting what I’m learning. Sometimes it means publishing short notes explaining a small concept. Other times it could be a big essay exploring a bigger topic or idea. Most of what I write and am passionate is about:
– Building security early by shifting to the very left – the earliest stages of the software development lifecycle (SDLC), such as planning and coding, rather than waiting until the testing or deployment phases.
– Getting better at Secure Code Reviews.
– Learning about the latest or the most novel security research in the community.
– Using AI to become a better security professional or bug bounty hunter, and to hack and defend more effectively.
“A blog that tears down vulnerabilities“
That’s the tagline of my website (also mentioned in the bottom left corner). Why did I pick this tagline? Well,
1. Because this theme allowed me to fill a tagline as my site identity.
2. To remind myself why I created this blog: dissect security problems.
I can vouch that when I have stuck to dissecting or tearing down security vulnerabilities or issues, I’ve ended up diving really deep on how they are introduced in the first place and how an adversary might end up attacking that tiny flaw.
And that’s exactly what I plan on doing on this website, my newsletter and also my YouTube channel. Breaking down what I learn to the core and sharing my learnings as notes or essays on either of these platforms. And maybe, just maybe – it may turn out to be helpful to some of you.
Some of the Companies I have helped Secure