<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel>
  <title>Mohit Sharma — Security field notes</title>
  <link>https://rinz0x0cruz.github.io/blog/</link>
  <description>Methods, tooling, and evidence from Mohit Sharma's applied security research.</description>
  <language>en</language>
  <item>
    <title>The benchmark said 85. Accuracy said zero.</title>
    <link>https://rinz0x0cruz.github.io/blog/benchmark-before-you-debate/</link>
    <guid isPermaLink="true">https://rinz0x0cruz.github.io/blog/benchmark-before-you-debate/</guid>
    <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
    <description>A mock Quorum run produced a handsome judge score and no correct answers. That contradiction became the evaluation design.</description>
  </item><item>
    <title>8,218 CVEs, 411 seats</title>
    <link>https://rinz0x0cruz.github.io/blog/fixed-budget-vulnerability-triage/</link>
    <guid isPermaLink="true">https://rinz0x0cruz.github.io/blog/fixed-budget-vulnerability-triage/</guid>
    <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
    <description>The arithmetic behind ExploitRank&#39;s fixed review queue is simple. The hard part is refusing to make the queue mean more than it does.</description>
  </item><item>
    <title>The TLP label that stopped this post</title>
    <link>https://rinz0x0cruz.github.io/blog/publishing-malware-analysis-evidence/</link>
    <guid isPermaLink="true">https://rinz0x0cruz.github.io/blog/publishing-malware-analysis-evidence/</guid>
    <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
    <description>I was documenting Malscope&#39;s public release boundary when its own fixture data proved the boundary was not enforced yet.</description>
  </item><item>
    <title>Field notes, not victory laps</title>
    <link>https://rinz0x0cruz.github.io/blog/welcome-to-the-field-notes/</link>
    <guid isPermaLink="true">https://rinz0x0cruz.github.io/blog/welcome-to-the-field-notes/</guid>
    <pubDate>Sun, 02 Aug 2026 00:00:00 GMT</pubDate>
    <description>The first version of this blog promised transparent methods in 175 tidy words. The useful version has to show the awkward parts too.</description>
  </item>
</channel></rss>
