jason
cd ~ cd posts_ man jason_

visitor@thefish.nz:~$ grep -r threat-actors

#threat-actors

all account-compromise analyst-methodology authentication beginner betrayal blue-team career ctf dark-waters dark-web detection detection-engineering dfir dkim dmarc email-security entra-id field-guide google-dorking http-server identity incident-response interview investigation kase-scenarios kql lolbins microsoft-365 networking orkla osi-model osint phishing physical-security powershell proxmark3 qilin ransomware research rfid siem skills soc social-media socmint spf spiderfoot splunk threat-actors threat-hunting tools trace-labs try-hack-me verification windows windows-event-logs
  • Ransomware Before the Ransomware: What the SOC Should See Before Encryption Starts 20 September 2026 socransomwareincident-responseinvestigationdetection-engineeringthreat-actorsqilindfirfield-guide

← all posts

The Fish has probably gone down another rabbit hole.

© 2026 Jason Hill. Built with Eleventy.