VPC peering: six ways an attacker abuses it
Why I learn how a feature is enabled before I learn how to secure it. Lateral movement, permissive NACLs, DNS spoofing, exfiltration, privilege escalation and configuration abuse.
Cyber concepts
The ideas underneath the tooling. Once a concept clicks, the commands stop being something you memorise — and you can apply them to a system you have never seen before.
Why I learn how a feature is enabled before I learn how to secure it. Lateral movement, permissive NACLs, DNS spoofing, exfiltration, privilege escalation and configuration abuse.
Guidance for businesses adding AI to their workflow. What AI genuinely improves in threat detection, and the five security considerations that decide whether it helps or hurts.
A running series on where AWS security features pay for themselves — automated assessments, backup encryption, budget monitoring, and the total cost of getting the architecture right.
Day 1 of working through every AWS security lab. Running Docker Bench against a live server, picking a warning, fixing it with auditd, and proving the fix.