Prince Baruwala

I write and edit Root Notes, from India. The site covers security — breaches, exploited vulnerabilities, the tooling attackers use — alongside AI, infrastructure and the companies building both.

How I work

Every piece starts at the primary source: the vendor advisory, the research write-up, the regulator's document, the filing. Where reporting is the only source, it is named as such. Quotations are kept short and few, and the rest is paraphrased with attribution, so a reader can tell what a company said from what I concluded.

Each article ends with what is not established — the attribution nobody has confirmed, the number two sources disagree about, the question the research leaves open. That section exists because a story that only lists what is known reads as more certain than it is. The full method is in the editorial policy.

Corrections and contact

If something here is wrong, tell me and I will fix it: hello@rootnotes.in. How corrections are handled is set out in the editorial policy.

Recent articles

The rest are in the archive.