Taking AI-Assisted SOC Investigations To Multi-User
My Claude Code SOC workflow worked great for one person. pyAgent makes it a team tool: AD/LDAP sign-in, group-based RBAC, approval gates, usage bars, live preview and a full audit log…
Read more →// essentialexploit.com
Hacker, Bug Hunter, and all round Geek/Nerd. Documenting exploits, CTF write-ups, and security research.
My Claude Code SOC workflow worked great for one person. pyAgent makes it a team tool: AD/LDAP sign-in, group-based RBAC, approval gates, usage bars, live preview and a full audit log…
Read more →I just published SketchyBrowserExt, a curated list of 7,569 suspicious browser extension IDs that I use to fuel a weekly CrowdStrike dashboard…
Read more →I've started using VS Code and Claude Code in a way I didn't expect — instead of building an app, I turned it into one: sub-agents, MCP servers in Docker, and read-only workflows across CrowdStrike and Qualys…
Read more →I've taken the first step toward something that will either be a disaster or change everything. RabbidLabs is now real, and I'm building it from Alberta…
Read more →I had an HP Z840 Workstation sitting around collecting dust and decided it was the perfect candidate to become a dedicated AI development machine. Debian 13, OhMyDebn, Claude Code, opencode, and VS Code — this is the full build log.
Read more →Scams and phishing are continually getting more creative, and today I came across one phishing attack that really kinda amazed me. The attack uses a legitimate Microsoft login pag…
Read more →A few months ago registration for BlackHat USA19 kicked off, and for the third year in a row I just missed getting into Offensive Security’s Advanced Web Attacks and Exploitation (…
Read more →So I have never done write-ups for CtF's before but I am taking the information that I have and putting it all together in some posts. This post and CtF posts before this date are…
Read more →SANS puts on KringleCon and I have to say not only was it fun but some of it really made me think. I made it to the end of this one but yet once again … I am writing this way, way…
Read more →This was the first CtF that I participated in that I actually kept files for. This was don back in late 2018 and here I am almost 4 months later trying to write about it ... yeah …
Read more →Hacker0x01 has a great CtF series that is just perfect for practicing. Although it would not be fair to release findings as there are h1 private invites being awarded for the comp…
Read more →Recent news of the Verizon data leak http://www.darkreading.com/cloud/verizon-suffers-cloud-data-leak-exposing-data-on-millions-of-customers/ and a similar scenario concerning Dow …
Read more →RTL-SDR is a dirt cheap way to start playing with radio using the RTL2832U chipset. I like to do things right when I start a project so I decided to purchase a nice SDR hardware tr…
Read more →Well this is another old trick that still works today. It still gets past all edge security and antivirus … well that is until you pull the executable out again. I find myself us…
Read more →Let’s start off on the right foot shall we? I don’t want to be rude but – I am a computer geek, my writing skills are not so great. So if you don’t like the way I write just quit…
Read more →