Notes from the work
Short pieces on IT leadership, security auditing and blockchain research. Written when there is something worth saying, not to a schedule.
-
The quantum risk to a blockchain is measured in seconds, not decades
Why the mempool window, not the key algorithm, decides how exposed a transaction is to a quantum attacker, and why migrating everything at once can make things worse.
-
Six checks a security audit should make that most audits skip
Lessons from auditing a whole estate: the findings that only appear when you cross-reference systems, and the ones that hide behind a clean-looking report.