Cybersecurity research by Jason Achkar Diab
Cybersecurity research, labs, and scripts.
Evidence-aware security architecture, threat models, runnable labs, and source implementations across cloud security, application security, DevSecOps, and threat intelligence.
Start here
Browse all researchSecure CI/CD
Workflow identity, untrusted validation, protected build, and attestation policy.
Partially tested Application Security · 9 minMulti-tenant SaaS isolation
Authorization across API, database, pool, cache, queue, storage, and telemetry boundaries.
Partially tested Application Security · 27 minAI-agent authorization
External authorization, action-bound approval, concurrent local consumption, and bounded tool execution.
Partially tested Cloud Security · 10 minIAM and workload federation
Issuer, audience, subject, delegation, PassRole, and permission-boundary decisions.
Partially testedBrowse research by domain
Cloud Security
Identity, network, platform, detection, and cloud control-plane architecture.
6 articlesApplication Security
Authorization, tenant isolation, identity protocols, APIs, and runtime boundaries.
5 articlesDevSecOps
CI/CD trust, infrastructure policy, software supply chain, and secrets engineering.
5 articlesThreat Intelligence
Evidence-backed attack paths, incident chronology, and defensive lessons.
2 articles