• Deploying Wazuh SIEM/XDR: A Hands-On Walkthrough Using a Simulated Breach

    Deploying Wazuh SIEM/XDR: A Hands-On Walkthrough Using a Simulated Breach

    The evaluation of Wazuh, a free open-source security platform, involved deploying it in a mock breach scenario involving MedSecure Logistics. The hands-on approach highlighted Wazuh’s effectiveness in detecting vulnerabilities, monitoring file integrity, and mapping attacks against MITRE ATT&CK. Key learnings included the importance of configuration and prompt detection to minimize breach impact.

    Read more

  • How a Simple Email Led to Active Directory Compromise

    How a Simple Email Led to Active Directory Compromise

    The Call Comes In Every incident starts with a single thread. Pull it hard enough, and the whole thing unravels. In this case, the thread was a phishing email. What started as one user clicking on what looked like a PDF document turned into a full Active Directory compromise (Domain Admin access, stolen certificates, ransacked…

    Read more

  • AWS Networking Concepts Explained: VPC, Subnets, CIDR, Route 53, and CloudFront

    AWS Networking Concepts Explained: VPC, Subnets, CIDR, Route 53, and CloudFront

    This post simplifies critical AWS networking concepts for newcomers, focusing on CIDR, subnets, IP addresses, and VPC structure. It explains each term using straightforward language and diagrams. It serves as a companion to a lab on building a VPC and launching a web server, facilitating easier comprehension for AWS certification candidates.

    Read more

  • How to Build a VPC and Launch a Web Server on AWS

    How to Build a VPC and Launch a Web Server on AWS

    A step-by-step guide to building a custom Amazon VPC on AWS – covering subnet creation across multiple Availability Zones, route table configuration, security groups, and launching an EC2 web server instance. Part of the AWS Academy Cloud Foundations series.

    Read more

  • Setting Up Your Entra ID Lab Environment

    Setting Up Your Entra ID Lab Environment

    This post outlines a hands-on lab experience with Microsoft Entra ID, the cloud-based evolution of Active Directory. It details the setup process, including tenant creation, user role assignment, and group management, while highlighting key security practices and observations. The author emphasizes learning outcomes and future exploration possibilities within Azure.

    Read more