<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Andrei Dodu — Blog</title><description>Security researcher and systems engineer. CVE disclosure, authorized web-app pentests, and Hugin — an intercepting proxy and scanner in a single Rust binary.</description><link>https://dodu.se/</link><language>en-us</language><item><title>JavaScript is the past</title><link>https://dodu.se/blog/javascript-is-the-past/</link><guid isPermaLink="true">https://dodu.se/blog/javascript-is-the-past/</guid><description>JavaScript won the browser, but the next edge in security tooling belongs closer to the machine: native binaries, memory-safe systems code, and tools that can keep up with the protocols.</description><pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate><category>Rust</category><category>JavaScript</category><category>systems</category><category>security tooling</category></item><item><title>Read the scope first</title><link>https://dodu.se/blog/read-the-scope-first/</link><guid isPermaLink="true">https://dodu.se/blog/read-the-scope-first/</guid><description>Most of the time I lose on a target is lost to my own setup and assumptions — not the target. A short note on the boring discipline that actually moves findings.</description><pubDate>Mon, 15 Jun 2026 00:00:00 GMT</pubDate><category>methodology</category><category>bug-bounty</category></item><item><title>Why I built Hugin</title><link>https://dodu.se/blog/why-i-built-hugin/</link><guid isPermaLink="true">https://dodu.se/blog/why-i-built-hugin/</guid><description>Every engine in Hugin is mine, written from scratch in Rust. The honest version of why it exists, before it ships.</description><pubDate>Wed, 10 Jun 2026 00:00:00 GMT</pubDate><category>Hugin</category><category>Rust</category><category>tooling</category></item></channel></rss>