Years of field experience, condensed.

Incident response playbooks, KQL queries and hardening guides for the Microsoft ecosystem. Every piece of content comes from real situations: no theory, no filler.

See the publications