<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Tekromancy - Tekromancy, Infrastructure &amp; Code</title><description>Deep dives into Linux internals, Kubernetes orchestration, AI/ML systems, distributed networking, and cybersecurity.</description><link>https://tekromancy.com/</link><language>en</language><item><title>The Irregular Breach: How Frontier AI Labs Signed Off on Autonomous Cyber Red-Teaming That Escaped to the Live Internet</title><link>https://tekromancy.com/blog/the-irregular-breach-frontier-llm-exploits/</link><guid isPermaLink="true">https://tekromancy.com/blog/the-irregular-breach-frontier-llm-exploits/</guid><description>An investigative deep dive into Israeli AI red-team firm Irregular (formerly Pattern Labs), the testing-environment failures behind OpenAI, Google Gemini, Anthropic, and Meta real-world exploits, and whether frontier labs authorized these offensive cyber missions.</description><pubDate>Thu, 08 Oct 2026 00:00:00 GMT</pubDate><category>ai-security</category><category>llm</category><category>cybersecurity</category><category>red-teaming</category><category>governance</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Unveiling Incantations: Arcane Design Patterns and Latent Space Constructs</title><link>https://tekromancy.com/blog/unveiling-incantations/</link><guid isPermaLink="true">https://tekromancy.com/blog/unveiling-incantations/</guid><description>Announcing the open-source release of our Incantations repository—a grimoire bridging the 1994 Gang of Four design patterns, esoteric programming languages, and modern generative AI prompt structures.</description><pubDate>Thu, 08 Oct 2026 00:00:00 GMT</pubDate><category>open-source</category><category>design-patterns</category><category>software-engineering</category><category>generative-ai</category><category>architecture</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Announcing SpareTank: Intelligent Battery Longevity &amp; Emergency Power Guard for Android</title><link>https://tekromancy.com/blog/announcing-sparetank-intelligent-battery-longevity-emergency-guard/</link><guid isPermaLink="true">https://tekromancy.com/blog/announcing-sparetank-intelligent-battery-longevity-emergency-guard/</guid><description>Introducing SpareTank—a sovereign Android utility engineered to eliminate electrochemical cycle degradation with 25%–75% charging alerts while preserving a dedicated 15% emergency reserve tank for critical field contingencies.</description><pubDate>Sun, 27 Sep 2026 00:00:00 GMT</pubDate><category>android</category><category>apps</category><category>battery</category><category>hardware</category><category>privacy</category><category>longevity</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Dropping 20M Packets per Second: eBPF XDP Line-Rate DDoS Mitigation in Linux</title><link>https://tekromancy.com/blog/ebpf-xdp-ddos-mitigation-line-rate-packet-filtering/</link><guid isPermaLink="true">https://tekromancy.com/blog/ebpf-xdp-ddos-mitigation-line-rate-packet-filtering/</guid><description>A battle-tested production guide to filtering volumetric DDoS attacks at 20+ Mpps using eBPF eXpress Data Path (XDP), kernel ring buffers, and hardware NIC offloading.</description><pubDate>Sun, 27 Sep 2026 00:00:00 GMT</pubDate><category>linux</category><category>ebpf</category><category>networking</category><category>security</category><category>ddos</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Bypassing the CPU Bottleneck: GPUDirect Storage (GDS) with NVMe-oF in AI Clusters</title><link>https://tekromancy.com/blog/gpudirect-storage-nvme-of-ai-clusters-bypassing-cpu-bottleneck/</link><guid isPermaLink="true">https://tekromancy.com/blog/gpudirect-storage-nvme-of-ai-clusters-bypassing-cpu-bottleneck/</guid><description>A deep dive into NVIDIA GPUDirect Storage (GDS) and NVMe over Fabrics: streaming massive multi-terabyte dataset shards directly into GPU HBM without CPU bounce buffers.</description><pubDate>Sun, 27 Sep 2026 00:00:00 GMT</pubDate><category>ai-ml</category><category>cuda</category><category>storage</category><category>hardware</category><category>linux</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Speculative Decoding in Production: Accelerating LLM Inference Without Accuracy Loss</title><link>https://tekromancy.com/blog/speculative-decoding-production-llm-inference-acceleration/</link><guid isPermaLink="true">https://tekromancy.com/blog/speculative-decoding-production-llm-inference-acceleration/</guid><description>How speculative decoding leverages small draft models and vectorized tree verification to double generation speed on vLLM and TensorRT-LLM without sacrificing a single bit of model precision.</description><pubDate>Sun, 27 Sep 2026 00:00:00 GMT</pubDate><category>ai-ml</category><category>vllm</category><category>cuda</category><category>inference</category><category>llm</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Announcing Silent Mode Control: Granular Telecom Call Screening &amp; Silent Schedules for Android</title><link>https://tekromancy.com/blog/announcing-silent-mode-control-granular-android-call-screening/</link><guid isPermaLink="true">https://tekromancy.com/blog/announcing-silent-mode-control-granular-android-call-screening/</guid><description>Introducing Silent Mode Control (SMC)—a privacy-first Android application hooking into the native Telecom framework to deliver granular ringer, vibration, and mute schedules per contact with 100% on-device processing.</description><pubDate>Sat, 26 Sep 2026 00:00:00 GMT</pubDate><category>android</category><category>apps</category><category>telecom</category><category>privacy</category><category>security</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Bare-Metal Kubernetes Without the Cloud Tax: Talos Linux, Cilium, and Rook-Ceph</title><link>https://tekromancy.com/blog/bare-metal-kubernetes-talos-cilium-rook-ceph/</link><guid isPermaLink="true">https://tekromancy.com/blog/bare-metal-kubernetes-talos-cilium-rook-ceph/</guid><description>A comprehensive production blueprint for running sovereign bare-metal Kubernetes clusters with immutable OS, eBPF BGP routing, and distributed NVMe block storage.</description><pubDate>Tue, 22 Sep 2026 00:00:00 GMT</pubDate><category>kubernetes</category><category>devops</category><category>storage</category><category>security</category><category>linux</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>The Production bpftrace Playbook: Real-Time Linux Kernel Performance One-Liners</title><link>https://tekromancy.com/blog/bpftrace-linux-kernel-performance-cheatsheet/</link><guid isPermaLink="true">https://tekromancy.com/blog/bpftrace-linux-kernel-performance-cheatsheet/</guid><description>Battle-tested bpftrace recipes and one-liners for diagnosing CPU latency, block I/O bottlenecks, network drops, memory leaks, and process executions in production.</description><pubDate>Tue, 15 Sep 2026 00:00:00 GMT</pubDate><category>linux</category><category>ebpf</category><category>kernel</category><category>performance</category><category>sysadmin</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Tonight in Austin: &apos;The Crucible of Hackers&apos; 3D Presentation &amp; Cyber Alliance Meetup at ACC Rio Grande</title><link>https://tekromancy.com/blog/austin-cyber-alliance-meetup-crucible-of-hackers/</link><guid isPermaLink="true">https://tekromancy.com/blog/austin-cyber-alliance-meetup-crucible-of-hackers/</guid><description>Join the Austin Cyber Alliance tonight, Sep 8, 2026 (6:00-8:00 PM CDT) at Austin Community College Rio Grande Campus for an interactive 3D technical briefing on the history of CTF wargames, followed by intel on the upcoming Fall 2026 CTF.</description><pubDate>Tue, 08 Sep 2026 00:00:00 GMT</pubDate><category>security</category><category>ctf</category><category>austin-tx</category><category>meetup</category><category>red-team</category><category>blue-team</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>The Crucible of Hackers: The History of CTFs, Red vs. Blue Teaming, and Open-Source Lab Frameworks</title><link>https://tekromancy.com/blog/history-of-ctf-red-blue-teaming/</link><guid isPermaLink="true">https://tekromancy.com/blog/history-of-ctf-red-blue-teaming/</guid><description>From DEF CON 4&apos;s ethernet cables to modern adversary emulation: the evolution of Capture The Flag, offensive/defensive tradecraft, and the definitive guide to open-source CTF platforms.</description><pubDate>Fri, 04 Sep 2026 00:00:00 GMT</pubDate><category>security</category><category>ctf</category><category>red-team</category><category>blue-team</category><category>linux</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>The Hardened Linux Bastion: Kernel Sysctls, SSH Certificates &amp; AppArmor</title><link>https://tekromancy.com/blog/linux-server-hardening-checklist/</link><guid isPermaLink="true">https://tekromancy.com/blog/linux-server-hardening-checklist/</guid><description>A comprehensive, battle-tested operational checklist for hardening production Linux servers against modern automated adversary campaigns.</description><pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate><category>security</category><category>linux</category><category>sysadmin</category><category>devsecops</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>NastyMap: High-Performance Network Topology, GeoIP Threat Mapping &amp; Scan Diffing for Nmap</title><link>https://tekromancy.com/blog/nastymap-nmap-network-topology-threat-visualization/</link><guid isPermaLink="true">https://tekromancy.com/blog/nastymap-nmap-network-topology-threat-visualization/</guid><description>Visualizing Nmap XML scans into interactive force-directed topologies, GeoIP ballistic threat maps, and automated security diffs with Tekromancy&apos;s NastyMap.</description><pubDate>Tue, 01 Sep 2026 00:00:00 GMT</pubDate><category>security</category><category>networking</category><category>tools</category><category>nmap</category><category>react</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Architecting a Global Overlay Mesh with WireGuard and Anycast BGP</title><link>https://tekromancy.com/blog/wireguard-bgp-overlay-mesh/</link><guid isPermaLink="true">https://tekromancy.com/blog/wireguard-bgp-overlay-mesh/</guid><description>Designing an ultra-low-latency encrypted multi-region mesh network using Bird, WireGuard, and Linux network namespaces.</description><pubDate>Tue, 01 Sep 2026 00:00:00 GMT</pubDate><category>networking</category><category>wireguard</category><category>linux</category><category>sysadmin</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>High-Throughput Local LLM Inference: vLLM, PagedAttention, and Ollama</title><link>https://tekromancy.com/blog/local-llm-inference-vllm-ollama/</link><guid isPermaLink="true">https://tekromancy.com/blog/local-llm-inference-vllm-ollama/</guid><description>Architecture and optimization techniques for deploying open-weight models locally with continuous batching, AWQ quantization, and GPU memory tuning.</description><pubDate>Fri, 28 Aug 2026 00:00:00 GMT</pubDate><category>ai-ml</category><category>llm</category><category>infrastructure</category><category>python</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Hardening Kubernetes with Cilium: eBPF-Powered Zero Trust &amp; mTLS</title><link>https://tekromancy.com/blog/kubernetes-zero-trust-cilium/</link><guid isPermaLink="true">https://tekromancy.com/blog/kubernetes-zero-trust-cilium/</guid><description>Replacing legacy kube-proxy with Cilium eBPF for wire-speed packet filtering, Layer 7 network policies, and transparent mutual TLS.</description><pubDate>Mon, 24 Aug 2026 00:00:00 GMT</pubDate><category>kubernetes</category><category>security</category><category>networking</category><category>devops</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Demystifying eBPF: Tracing Linux Kernel Internals in Real Time</title><link>https://tekromancy.com/blog/ebpf-linux-tracing-deep-dive/</link><guid isPermaLink="true">https://tekromancy.com/blog/ebpf-linux-tracing-deep-dive/</guid><description>How extended Berkeley Packet Filter (eBPF) transforms observability, security, and networking directly in the Linux kernel without risky kernel modules.</description><pubDate>Thu, 20 Aug 2026 00:00:00 GMT</pubDate><category>linux</category><category>kernel</category><category>ebpf</category><category>performance</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Vigilant Octo Waffle: Automated Local Kubernetes, GitOps &amp; Multi-Service Stacks</title><link>https://tekromancy.com/blog/vigilant-octo-waffle-kubernetes-gitops/</link><guid isPermaLink="true">https://tekromancy.com/blog/vigilant-octo-waffle-kubernetes-gitops/</guid><description>Bootstrapping instant KinD and K3s clusters pre-loaded with ArgoCD, OpenBao, Harbor, and automated mkcert TLS via DeployCoop&apos;s vigilant-octo-waffle.</description><pubDate>Tue, 09 Jun 2026 00:00:00 GMT</pubDate><category>kubernetes</category><category>gitops</category><category>argocd</category><category>devops</category><category>cloud-native</category><author>Joshua Edward McLaughlin Cox</author></item><item><title>Kubash: The Unix-Philosophic Shell Pipeline for Rapid Kubernetes Clusters</title><link>https://tekromancy.com/blog/kubash-kubernetes-shell-automation/</link><guid isPermaLink="true">https://tekromancy.com/blog/kubash-kubernetes-shell-automation/</guid><description>Building, provisioning, initializing, and orchestrating production-grade Kubernetes clusters PDQ with Kubash, QEMU/KVM, Packer, and Kubeadm.</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate><category>kubernetes</category><category>devops</category><category>linux</category><category>infrastructure</category><author>Joshua Edward McLaughlin Cox</author></item></channel></rss>