How and why I built GarudaEye — a single-binary AWS asset discovery and security analysis tool with an embedded dashboard, no API keys required, and a passive fingerprinting engine written entirely in Rust.
What I learned building, launching, and operating security platforms as a solo engineer. Product decisions, technical tradeoffs, and mistakes to avoid.
Organizations struggle to maintain visibility into their internet-facing assets. Here's why attack surface monitoring remains an unsolved problem and what it takes to build effective solutions.
Lessons learned building attack surface monitoring tools with AWS Lambda, API Gateway, and DynamoDB. How serverless architecture changes the security tooling landscape.