“Don’t just read it, say it. Out loud. Repeat it. Defaults are not your friend. Defaults should be changed. Why? Defaults. Are. Dangerous“ We live in an era where convenience is king. In fact, we’ve grown so accustomed to it, that even minor inconveniences are oftentimes seen to be the end of the world asContinue reading “Defaults are Dangerous”
Tag Archives: cybersecurity
🔐Threat Hunting Case Study: Unauthorized TOR Usage
🕵️Implementing a Hypothesis-Driven Threat Hunt for TOR Activity Detecting, investigating, and responding to unauthorized anonymous browsing using endpoint telemetry. Executive Summary This case study documents a hypothesis-driven threat hunt conducted to identify unauthorized TOR browser usage within an enterprise environment. Management suspected that employees were bypassing network controls due to unusual encrypted traffic patterns andContinue reading “🔐Threat Hunting Case Study: Unauthorized TOR Usage”
🔐Vulnerability Management Program – Case Study
⚠️Implementing an Enterprise Vulnerability Management Program Designing, deploying and operationalizing a full vulnerability management lifecycle in an Azure-based enterprise environment. Executive Summary This case study documents the design and execution of an end-to-end vulnerability management program from the ground up. The organization initially lacked formal policy, scanning cadence and remediation ownership. Through governance development, authenticatedContinue reading “🔐Vulnerability Management Program – Case Study”
