Browse
Categories
Records are grouped by the kind of question they answer, so a reader can move from a symptom to the analysis that explains it.
Incident Analysis
Reconstructions of confirmed intrusions: entry point, dwell time, impact and the controls that would have changed the outcome.
Attack Techniques
How a single technique works in practice, where it shows up in telemetry, and what reliably detects it.
Vulnerability Research
Root-cause breakdowns of software weaknesses, exploitation conditions and realistic exposure windows.
Cloud Security
Identity, workload and storage failures specific to managed infrastructure and shared-responsibility gaps.
Identity & Access
Authentication bypasses, session abuse, privilege paths and the directory misconfigurations that enable them.
Defensive Playbooks
Detection logic, hardening sequences and response steps written to be implemented, not admired.