Dectrax Research
Security research from the systems we build and the threats we study.
Technical notes, threat research, vulnerability analysis, and empirical work from Dectrax.
Latest Publication
All publicationsDentiGrid: From Distributed Cyber Deception to Automated Threat Intelligence and Enforcement
DentiGrid is a distributed cyber-deception and threat-intelligence platform designed to transform interactions with intentionally deployed deception assets into actionable security intelligence. The platform combines distributed honeypot sensors, authenticated telemetry ingestion, edge-native processing, persistent storage, threat-intelligence enrichment, and External Dynamic List (EDL) generation for downstream security controls. The current architecture consists of Python-based honeypot sensors, an edge-based honeypot implemented using Cloudflare Workers, a Hono-based API gateway, Cloudflare Queues and D1 databases, a threat-intelligence processing pipeline, and a Next.js-based operational dashboard. Sensor telemetry is authenticated using an HMAC-SHA256 mechanism with timestamp validation and replay protection before entering the processing pipeline. DentiGrid is designed around a continuous pipeline in which attacker interaction with deception infrastructure produces telemetry that can be processed, enriched, correlated, stored, and transformed into machine-consumable threat intelligence. Generated intelligence can subsequently be exposed through EDL interfaces for integration with downstream security enforcement systems. This technical report documents the architecture, implementation, data flow, telemetry ingestion model, storage architecture, threat-intelligence pipeline, EDL mechanism, and integration model of the current DentiGrid system.
Threat Research
All advisoriesAPT28 Weaponizes Microsoft Office CVE-2026-21509
Technical breakdown of RTF document parsing bypass and WebDAV loader staging observed in regional cyber-espionage activity.
Critical n8n Flaw CVE-2026-25049: RCE via Workflow Manipulation
Analysis of sandbox sanitization escapes arising from TypeScript type checking mismatches and runtime AST evaluation vectors.
Research Lead
MD Sadman Shovik
Founder & Chief Cybersecurity Researcher, Dectrax
Founder and Chief Cybersecurity Researcher at Dectrax. Specializes in active threat deception, distributed honeypot architecture, edge API proxies, and automated threat intelligence enforcement.
Publication Policy
All Dectrax research publications are designed for reproducibility: we include verifiable architecture models, abstract state diagrams, and empirical latency benchmarks where applicable.
Vulnerability research and disclosure follow ISO 29147 responsible disclosure standards. Technical notes and research artifacts are archived with persistent DataCite DOIs on Zenodo.
Public research intentionally excludes proprietary DentiGrid source code, trade secrets, and customer data. The boundary between public research and commercial IP is documented and maintained.
