// Security
Magatama Security Architecture Open Source TypeScript Fastify Monorepo Platform Engineering Decision Log

Building Magatama: The Architecture Decisions That Hurt

Magatama is a unified security platform with six pillars. The architecture looks clean now. Three decisions made it painful to get here — two I'd make again, one I'd reverse.

Rene Fichtmueller / 2026-05-28 / ~2 min read min read
ADHD Diary No-Travel-Day Magatama Building Neurodivergent Security Personal Vision Open Source

ADHD Diary #005: When the Vision Finally Clicks

No-Travel-Day. The week Magatama stopped being a collection of security tools and became a platform. What happens inside an ADHD brain when 18 months of fragmented work suddenly makes sense.

Rene Fichtmueller / 2026-05-26 / ~2 min read min read
AI Security Open Source ShieldX ShieldY LLM Prompt Injection Security MITRE ATLAS Red Team TypeScript

The Open Source AI Security Stack That Actually Exists

Vendor solutions for LLM security cost $50,000/year and scan for yesterday's attacks. The open source stack is fragmented but works. Here's what actually exists — and what's still missing.

Rene Fichtmueller / 2026-05-23 / ~2 min read min read
MCP Security LLM AI Security Prompt Injection ShieldX MITRE ATLAS Tool Poisoning Claude Open Source

MCP Security: The Attack Surface Nobody Is Auditing

Model Context Protocol gives AI systems tool access. It also creates a new attack surface: tool poisoning, indirect prompt injection, and privilege escalation through tool chaining. Almost nobody is scanning for it.

Rene Fichtmueller / 2026-05-19 / ~2 min read min read
Open Source Apache 2.0 Licensing Software Engineering Legal Security Patents Developer Tools Community

Why I Licensed Everything Apache 2.0

License choice is a product decision, not just a legal formality. Apache 2.0 over MIT isn't paranoia — it's the patent protection clause, which matters specifically for security software.

Rene Fichtmueller / 2026-05-15 / ~2 min read min read
Infrastructure Security Network The Glass Network cybersecurity infrastructure-warfare critical-infrastructure

The Invisible Battlefield — Infrastructure, Data, and the War Most People Don't See

In this post, I explore the reality of warfare targeting data centers and critical infrastructure, a shift that has been long predicted but is now becoming a harsh reality.

Rene Fichtmueller / 2026-04-07 / ~7 min read min read
Networking BGP Security RPKI ASPA Route Leaks Internet Infrastructure Routing Security RFC 9234 Path Validation BGPsec

RPKI Didn't Fix Routing.

We validated who is allowed to announce a prefix. We never validated how it gets there.

Rene Fichtmueller / 2026-04-05 / ~2 min read min read
Open Source Security Claude Code DevOps Git Hooks Secret Scanning Pre-commit Developer Tools AWS Credential Leak

Claude-Code-Hardened: The Security Hooks That Saved My Public Repos

I almost pushed AWS credentials to GitHub. Twice. Then I built a system that makes it impossible.

Rene Fichtmueller / 2026-04-05 / ~2 min read min read
Open Source Security AI LLM ShieldX Prompt Injection Self-Learning Kill Chain MITRE ATLAS MCP Guard TypeScript

ShieldX: Why Prompt Injection Defense Needs to Evolve Itself

500+ detection patterns. 10-layer pipeline. Kill chain mapping. And it learns from every attack it sees.

Rene Fichtmueller / 2026-04-05 / ~2 min read min read