jason
cd ~ cd posts_ man jason_

visitor@thefish.nz:~$ grep -r siem

#siem

all account-compromise analyst-methodology authentication beginner betrayal blue-team career ctf dark-waters dark-web detection detection-engineering dfir dkim dmarc email-security entra-id field-guide google-dorking http-server identity incident-response interview investigation kase-scenarios kql lolbins microsoft-365 networking orkla osi-model osint phishing physical-security powershell proxmark3 qilin ransomware research rfid siem skills soc social-media socmint spf spiderfoot splunk threat-actors threat-hunting tools trace-labs try-hack-me verification windows windows-event-logs
  • Threat Hunting for SOC Analysts: Turning a Suspicion Into a Searchable Hypothesis 20 September 2026 socthreat-huntinginvestigationdetection-engineeringsiemsplunkkqldfirfield-guide

← all posts

The Fish has probably gone down another rabbit hole.

© 2026 Jason Hill. Built with Eleventy.