nevin shine

systems security researcher

// compiler, kernel & runtime security

t g l @

+ system identity loaded

exploring cross-layer runtime enforcement and hardware-assisted security architectures for reducing semantic drift between compiler intent and execution behavior.

* note: experimental research prototypes. implementation depth varies across subsystems.

+ sentinel stack

sentinel-stack — monorepo

experimental cross-layer security architecture integrating compiler verification, runtime mediation, and hardware-assisted enforcement primitives.

read specs

sentinel-smm — firmware

experimental smm boundary-monitoring research exploring firmware-level trap mediation and bitmap-based policy enforcement.

read specs

sentinel-vmi — hypervisor

testing. amd-v npt guard & aarch64 el2 drawbridge bare-metal hypervisor.

read specs

sentinel-runtime — kernel

active (m8.2). pure ebpf-lsm engine featuring recursive process bloodline tracking and atomic inheritance for real-time protection.

read specs

hyperion-xdp — wire

high-performance xdp datapath experimentation with zero-copy telemetry and ebpf packet filtering.

read specs

sentinel-cc — compile

llvm-based policy-carrying code featuring phase 2 deep cfi and aslr-aware enforcement for compile-time security guarantees.

read specs

telos-lang — compile

compiler experimentation with z3 smt constraints, intent-aware ir lowering, and bounded ifc analysis.

read specs

sentinel-kv — analysis

llvm ir analysis and smt-assisted constraint validation targeting stack-spill and inline assembly policy analysis.

read specs

new project: tbd — later 2026

adaptive kernel-level defense systems for space cybersecurity. research initiative for satellite communication security.

+ research domains

l languages

c, c++, rust, go, python, risc-v/aarch64/x86 asm, verilog

k low-level

ebpf, xdp, lsm, llvm pass dev, kernel hooking

u firmware

uefi dxe, edk ii, smi handlers, smm sandboxing, x86 msrs

h hardware

armv8 el2, stage 2 mmu, amd-v npt experimentation, risc-v tca

m formal

z3 smt, symbiyosys, ifc lattice, ltl constraints, hoare logic

f forensics

qemu bare-metal, gdb, bpftool, strace, pahole

+ /dev/random

~ afk status

tinkering with homelabs, deep sci-fi lore, and making terrible coffee

frequencies

bouncing between jeremias, brutalismus 3000, and pnb rock

* hardware

building custom split keyboards with way too many layers