<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Ruqaya Allami — Journal</title><link>https://ruqayaallami.com/blogs</link><description>A personal journal on operational technology, industrial cybersecurity, and understanding what happens on the wire.</description><language>en</language><atom:link href="https://ruqayaallami.com/rss.xml" rel="self" type="application/rss+xml"/><item><title>When Valid OT Commands Become Attacks</title><link>https://ruqayaallami.com/blogs/when-valid-ot-commands-become-attacks</link><guid isPermaLink="true">https://ruqayaallami.com/blogs/when-valid-ot-commands-become-attacks</guid><description>Sample article. A well-formed packet can still carry the wrong intent. Looking beyond protocol validity to understand industrial command abuse.</description><pubDate>Sat, 12 Sep 2026 12:00:00 GMT</pubDate><category>OT Exploits</category><category>Industrial Protocols</category><category>PCAP Analysis</category></item><item><title>Before You Write the Detection Rule</title><link>https://ruqayaallami.com/blogs/before-you-write-the-detection-rule</link><guid isPermaLink="true">https://ruqayaallami.com/blogs/before-you-write-the-detection-rule</guid><description>Sample article. Good detection starts with a better question. Notes on baselines, evidence, and the distance between an alert and a safe control.</description><pubDate>Thu, 10 Sep 2026 12:00:00 GMT</pubDate><category>Detection Engineering</category><category>Virtual Patching</category><category>PCAP Analysis</category></item></channel></rss>
