❯ whoami
I am Alexander Moch, an Incident Analyst & IT Security Consultant at ERNW Research in Heidelberg, Germany, and a cryptographer by training.
Background
I studied and worked at the University of Mannheim throughout my academic career: mathematics, then business informatics, then a PhD in cryptography at the Chair of Theoretical Computer Science under Prof. Dr. Matthias Krause. My research covered provable security for lightweight message authentication codes and stream ciphers, including the DRACO stream cipher. I also taught cryptography, algorithms, and theoretical computer science.
After my dissertation I worked as an Embedded Systems Architect in the defence industry, then joined ERNW Research in mid-2025.
Current work
At ERNW Research I work on incident analysis, penetration testing, trainings, and open-source work.
Interests
The blog is my technical notebook. It covers the things I run: Gentoo, ZFS with native encryption, YubiKey-backed unlocking, Secure Boot, Sway on Wayland, and network-wide WireGuard.
In open source I maintain the sys-fs/zfs package for Gentoo, contribute build fixes to OpenZFS (mostly for musl), and occasionally send patches upstream to projects like zstd.
Contact
I sign my email with S/MIME. My public keys are available on GitHub.
Elsewhere
- Blog — the technical notebook
- LinkedIn — the professional summary
- GitLab — most of my public code
- Doctoral dissertation — the cryptography in full