Writing

75 posts since 2020. Notes on blue teaming, detection engineering, SIEM/SOAR and incident response.

Featured

  1. 01Developing Sigma Rules1. What Is a Sigma Rule? A Sigma rule is an open-source language and rule-set format used to detect and investigate security events and threats.…13 min read
  2. 02What Is This Log4j RCE (Log4Shell)?In my new article, I'll be talking about a vulnerability that has been heavily discussed over the past few days. I hope it's useful. :) The vulnerability…10 min read
  3. 03Microsoft Outlook Forensic AnalysisTechniques and Tools for Detecting Malicious Activities Microsoft Outlook is a popular email client used by millions of people worldwide. However, it has also become a…8 min read

20242

20236

202210

202138

202019