<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Home on camel4.dev</title>
    <link>https://camel4.dev/</link>
    <description>Recent content in Home on camel4.dev</description>
    <generator>Hugo</generator>
    <language>en</language>
    <lastBuildDate>Mon, 27 Jul 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://camel4.dev/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>AI Is Killing the Zero-Day and Stalking You Instead</title>
      <link>https://camel4.dev/posts/the-ai-arms-race/</link>
      <pubDate>Mon, 27 Jul 2026 00:00:00 +0000</pubDate>
      <guid>https://camel4.dev/posts/the-ai-arms-race/</guid>
      <description>&lt;h2 id=&#34;ai-code-security&#34;&gt;AI Code Security&lt;/h2&gt;&#xA;&lt;p&gt;According to &lt;a href=&#34;https://www.cve.org/about/Metrics&#34;&gt;CVE.org&lt;/a&gt;, there have been 35,872 new CVEs published so far in 2026. Comparing that to 48,244 for all of 2025, we can do some advanced statistical analysis and determine that if this trend holds there will be roughly 415,146 new CVEs published in 2027. I&amp;rsquo;ve made a graph of my analysis:&lt;/p&gt;&#xA;&lt;p&gt;&lt;img src=&#34;https://camel4.dev/images/graph-1.png&#34; alt=&#34;A bad graph&#34;&gt;&lt;/p&gt;&#xA;&lt;p&gt;Now, obviously that&amp;rsquo;s not going to happen. Anyone who has spent time in the security industry knows that graphs and metrics like this are great at raising shareholder value, but not actually how the world works. This graph is a little better, and is closer to what will actually happen:&lt;/p&gt;</description>
    </item>
    <item>
      <title>camel4.dev</title>
      <link>https://camel4.dev/projects/camel4.dev/</link>
      <pubDate>Sun, 07 Jun 2026 00:00:00 +0000</pubDate>
      <guid>https://camel4.dev/projects/camel4.dev/</guid>
      <description>&lt;p&gt;This is my personal site and blog. I write about cybersecurity, CTFs, programming, and whatever else I feel like. The design is very human.&lt;/p&gt;&#xA;&lt;h2 id=&#34;stack&#34;&gt;Stack&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;&lt;a href=&#34;https://gohugo.io/&#34;&gt;Hugo&lt;/a&gt;&lt;/strong&gt; - static site generator. Go-based, fast, with no runtime dependencies. Originally tried to roll my own but uh, that was a bad idea.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Markdown + TOML&lt;/strong&gt; - all content is plain markdown with TOML front matter. I think needing a database for your blog that gets 10 readers a month is way overkill.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Custom CSS&lt;/strong&gt; - hand-rolled dark theme. IBM Plex Mono is my favorite font, so I&amp;rsquo;m locally hosting it for my code blocks to avoid additional fetching.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;&lt;a href=&#34;https://umami.is/&#34;&gt;Umami&lt;/a&gt;&lt;/strong&gt; - self-hosted analytics. No cookies or tracking. I like Umami.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Hetzner VPS&lt;/strong&gt; - I&amp;rsquo;ve had a Hetzner VPS (or many) for a few years now. I migrated over there a long time ago and never looked back. The value is crazy, and Hetzner is a great organization.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;why-hugo&#34;&gt;Why Hugo&lt;/h2&gt;&#xA;&lt;p&gt;I&amp;rsquo;ve tried a few different static site generators, and even tried to make my own, and wasn&amp;rsquo;t a super big fan of any of them. Hugo has been good though. It&amp;rsquo;s a single binary with no dependencies, and it&amp;rsquo;s been the same single binary for years. The templating is occasionally frustrating, but the tradeoff is worth it in my opinion. My hot take is that if your personal website or blog needs a runtime like Node or a framework like Vue just to function, you are making WAY too much work for yourself. Its also nice for your site to just load instantly on any device that visits it.&lt;/p&gt;</description>
    </item>
    <item>
      <title>We Had to Ban 65 Teams to Get a Top 10 Leaderboard</title>
      <link>https://camel4.dev/posts/byuctf-2026/</link>
      <pubDate>Sun, 07 Jun 2026 00:00:00 +0000</pubDate>
      <guid>https://camel4.dev/posts/byuctf-2026/</guid>
      <description>&lt;p&gt;&lt;img src=&#34;https://camel4.dev/images/BYUCTF2026.png&#34; alt=&#34;BYUCTF 2026 participation certificate&#34;&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;em&gt;official BYUCTF 2026 participation certificate (self-issued)&lt;/em&gt;&lt;br&gt;&#xA;Every year we hand out the same participation cert. Made it in MS Paint in 2024. Just felt like a waste to not reuse it.&lt;/p&gt;&#xA;&lt;p&gt;This year marks the third year I&amp;rsquo;ve been helping run BYUCTF and the BYU Cyberia &lt;a href=&#34;https://en.wikipedia.org/wiki/Capture_the_flag_(cybersecurity)&#34;&gt;CTF&lt;/a&gt; team. Over the last few years, I&amp;rsquo;ve built dozens of challenges, hosted 10+ CTFs, and competed in dozens more both alone and as part of BYU Cyberia. I&amp;rsquo;ve written most of the OSINT challenges for BYUCTF during that time, which means I get to enjoy watching people crash out over things I built. It&amp;rsquo;s great.&lt;/p&gt;</description>
    </item>
    <item>
      <title>About</title>
      <link>https://camel4.dev/about/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://camel4.dev/about/</guid>
      <description>&lt;p&gt;I&amp;rsquo;m Cameron. I study cybersecurity at BYU, work as a Linux sysadmin, and write challenges for (and compete in) CTFs with BYU Cyberia. There are other things I do, but honestly I&amp;rsquo;ve rewritten this like three times because it was too cringey. Stop reading please.&lt;/p&gt;&#xA;&lt;h2 id=&#34;currently&#34;&gt;Currently&lt;/h2&gt;&#xA;&lt;p&gt;Finishing my degree right now. Spending a lot of time working on personal projects. Mostly Linux, homelab stuff, and whatever security topic interests me at the moment. I&amp;rsquo;ll make this more descriptive in the future, but right now this is low on my priority list.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Privacy</title>
      <link>https://camel4.dev/privacy/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://camel4.dev/privacy/</guid>
      <description>&lt;p&gt;This site uses &lt;a href=&#34;https://umami.is&#34;&gt;Umami&lt;/a&gt; for analytics. Umami is open-source, self-hostable, and designed to be privacy-respecting by default.&lt;/p&gt;&#xA;&lt;h2 id=&#34;what-is-collected&#34;&gt;What is collected&lt;/h2&gt;&#xA;&lt;p&gt;When you visit a page, Umami records:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;The URL you visited&lt;/li&gt;&#xA;&lt;li&gt;The referring URL (where you came from)&lt;/li&gt;&#xA;&lt;li&gt;Your browser name and version&lt;/li&gt;&#xA;&lt;li&gt;Your operating system&lt;/li&gt;&#xA;&lt;li&gt;Your device type (desktop, mobile, tablet)&lt;/li&gt;&#xA;&lt;li&gt;Your country, derived from your IP address at request time&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;what-is-not-collected&#34;&gt;What is not collected&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Your IP address is never stored&lt;/li&gt;&#xA;&lt;li&gt;No cookies are set&lt;/li&gt;&#xA;&lt;li&gt;No cross-site tracking&lt;/li&gt;&#xA;&lt;li&gt;No fingerprinting&lt;/li&gt;&#xA;&lt;li&gt;No personal information of any kind&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;why&#34;&gt;Why?&lt;/h2&gt;&#xA;&lt;p&gt;I want to know which posts people find useful and roughly where readers come from. That&amp;rsquo;s it. The data stays with me and is not shared with or sold to anyone.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
