Skip to content

Category

OPSEC

17 publications

Mobile Device Security and MDM Baselines for Defenders

Mobile Device Security and MDM Baselines for Defenders

A defensive guide to mobile security: MDM enrollment models, a hardening baseline, compliance-gated access, MDM and identity detection signals, and a rehearsed lost-device response.

Read →
Metadata Leakage: What Your Files Quietly Reveal
1 min read

Metadata Leakage: What Your Files Quietly Reveal

How hidden document and image metadata leaks reconnaissance to outsiders, how to detect it in published files with tools like exiftool, and how to strip and govern it by default.

Read →
Secure Remote Work: A Practical Defender's Playbook

Secure Remote Work: A Practical Defender's Playbook

A blue-team playbook for securing remote and hybrid work: zero trust, phishing-resistant MFA, endpoint hardening, and the identity and log signals that reveal trouble early.

Read →
Password Policy and Managers for Teams

Password Policy and Managers for Teams

A modern, defence-first guide to team password policy and password managers, aligned with current guidance, with detection signals and hardening controls.

Read →
Building a Security Awareness Program That Works

Building a Security Awareness Program That Works

How to design a security awareness program that measurably changes behaviour, with a reporting culture, detection metrics, and hardening steps.

Read →
Threat Modeling with STRIDE for Real Systems

Threat Modeling with STRIDE for Real Systems

A practical, defence-first guide to applying the STRIDE threat modeling framework to real production systems, with detection signals and hardening controls.

Read →
Digital Compartmentalization: Separate Identities Without Leaking Metadata

Digital Compartmentalization: Separate Identities Without Leaking Metadata

How to keep personas, browsers and devices actually isolated by closing the metadata leaks that destroy any separation within minutes.

Read →
Comms OPSEC: Signal, SimpleX and Session Technically Compared

Comms OPSEC: Signal, SimpleX and Session Technically Compared

Technical breakdown of protocols, metadata and threat models for Signal, SimpleX and Session, with practical selection criteria per scenario.

Read →
STRIDE Threat Modeling in Sprints: A Full Microservice Walkthrough

STRIDE Threat Modeling in Sprints: A Full Microservice Walkthrough

How to apply STRIDE to a real payments microservice inside a two-week sprint, with a clean DFD, prioritized threats, and actionable mitigations.

Read →
DFIR on Linux: Live Triage with UAC and Velociraptor

DFIR on Linux: Live Triage with UAC and Velociraptor

How the Basilisk team runs live triage on compromised Linux hosts using UAC and Velociraptor without destroying volatile evidence.

Read →
Tails, Whonix or Qubes OS: Which to Pick for Each OPSEC Scenario

Tails, Whonix or Qubes OS: Which to Pick for Each OPSEC Scenario

Technical comparison of Tails, Whonix and Qubes OS with objective criteria around threat model, compartmentalization and operational cost to pick the right OS.

Read →
OPSEC for Security Researchers: Building a Personal Threat Model

OPSEC for Security Researchers: Building a Personal Threat Model

Before you install Tails, Qubes or Signal, draw your individual threat model. Skip it and you are just stacking tools and burning effort in the wrong place.

Read →
Metadata Hygiene: Stripping EXIF, PDF and Office Before You Publish

Metadata Hygiene: Stripping EXIF, PDF and Office Before You Publish

How to remove metadata that leaks identity, GPS and authorship from images, PDFs and Office documents before publishing online.

Read →
Personal Security for High-Visibility Targets: Journalists, Activists, and Executives

Personal Security for High-Visibility Targets: Journalists, Activists, and Executives

Defensive playbook for people with public profiles: from threat modeling to digital hygiene, with tools battle-tested in the field.

Read →
Threat Hunting with Sigma and Elastic: From Indicator to Detection Rule

Threat Hunting with Sigma and Elastic: From Indicator to Detection Rule

How to turn attack hypotheses into Sigma rules tested in Elastic, with a reproducible lab validation pipeline.

Read →
Anti-Doxxing Personal Security: Removing Data from Brazilian Data Brokers

Anti-Doxxing Personal Security: Removing Data from Brazilian Data Brokers

Hands-on technical procedure to cut your exposure on Brazilian data brokers, social media and public records before a doxxer does it for you.

Read →
Real Anonymity with Tor: What Works and What is Myth in 2026

Real Anonymity with Tor: What Works and What is Myth in 2026

Tor is not an invisibility cloak. Where the network truly protects, where traffic correlation breaks anonymity, and how to use it sensibly in 2026.

Read →