Research Archive

This archive contains long‑form research, whitepapers, and technical analysis focused on critical infrastructure, signal trust, RF‑layer dependencies, and defensive systems thinking.

Research Paper

When Software Updates Lie: The SolarWinds Supply Chain Attack

Author: Norris Cornell · Published: April 21, 2026

In December 2020, 18,000 organizations discovered they had been running Russian intelligence malware for nearly a year — delivered via a software update they explicitly trusted. This analysis examines how APT29 turned SolarWinds' own code-signing infrastructure into a weapon, why every security control failed, and what the "Inputs Lie" framework reveals about trust boundary failures across cybersecurity domains.