Archive

Blog

Reverse engineering, forensics, CTF walkthroughs, and investigation notes.

1 July 2026

CyberDefenders Zerologon Write-up

DFIR write-up covering phishing delivery, Defender tampering, C2 beaconing, PowerShell discovery, persistence, lateral movement, AnyDesk, credential access, and collection.

DFIRWindows ForensicsActive DirectoryLateral Movement

Read more

7 June 2025

Windows Theme Spoofing

Analysis of CVE-2024-21320 Windows theme spoofing vulnerability using DFIR methods with Wireshark and MFT Viewer.

forensicswindowsntlmsecurity

Read more

11 Jan 2020

picoCTF Vault Door Challenges

Walkthrough of the picoCTF Vault Door series challenges, demonstrating reverse engineering techniques on Java applications.

ctfpicoctfreverse-engineeringjava

Read more