Blog:

On 2026-09-04
by Clara Chalumeau, Cyber Incident Responder
Cybersecurity

Performing Linux Dead Disk Forensic Analysis with Velociraptor

Dead disk analysis with Velociraptor
What is Velociraptor? Velociraptor is an open source digital forensic and incident response tool that supports several deployment models depending on the investigation scenario. While the most common approach is the client-server model, where agents are deployed on endpoints and communicate with a central server, Velociraptor can also operate through offline collectors or virtual clients [...]
  • Share

Discover all the latest releases

Beyond the alert: Engineering true resilience through a unified, AI-enhanced SOC Cybersecurity

Beyond the alert: Engineering true resilience through a unified, AI-enhanced SOC

Navigating the modern threat landscape is an ongoing challenge for UK Critical National Infrastructure (CNI) and Government organisations. As cyber threats grow more sophisticated and regulations tighten, the limitations of traditional, isolated "black box" monitoring become more apparent. When a complex incident occurs, a flood of automated notifications is rarely enough to ensure continuity; teams [...]

Read more
The human factor in security architecture Cybersecurity

The human factor in security architecture: Designing for usability without compromising security

In cybersecurity, conversations often focus on advanced threats and complex algorithms. Yet, a crucial element is frequently overlooked: the human factor. No matter how robust a security system, its effectiveness depends on how well it works with the people who use it. This highlights a fundamental challenge: designing for usability without compromising security. The inherent […]

Read more
Cybersecurity

The 120-Hour Threat: the timeline of a Devman 2.0 intrusion from VPN to Domain Admin

Key points Initial Access via Vulnerable Perimeter: The intrusion began with a compromised VPN appliance. While logging deficiencies obscured the exact entry mechanism, strong evidence suggests the Devman 2.0 operators leveraged a Remote Code Execution (RCE) exploit to hijack a valid account.  Living Off the Land & Open-Source Tooling: The attackers maintained a low profile [...]

Read more
Table mythos or mirage Cybersecurity

Mythos or mirage: The hidden burden of agentic security

The recent arrival of Claude Mythos Preview has been met with the usual industry fanfare, promising a new era of agentic security where AI finally moves from being a passive observer to an active defender. However, as we have seen with every previous iteration of machine learning in this space, unbridled enthusiasm usually precedes a [...]

Read more
product security Cybersecurity

What is Product Security?

Product Security: The invisible Shield.  In the era of modern and interconnected world, Product Security acts as an unseen defense whose tangible effects are clearly observed and felt in our daily lives. While Product Security and Cybersecurity are intrinsically linked, however, they diverge in their priorities especially within the Operational Technology and Critical infrastructure. Cybersecurity, [...]

Read more
embed resilience into the DNA of all critical operations and functions Cybersecurity

It’s time to embed resilience into the DNA of all critical operations and functions

We have begun to live in a world where unpredictability is a part of daily life; where geopolitical tensions are more frequent, recovery timeframes are shorter, keeping economic balance is harder, and trajectories are switchbacked. In a competitive environment overwhelmed by transformation and restructuring, the defining requirement for organisations is no longer speed, quality, or […]

Read more