EvilTokens
Original inspiration for this from https://abnormal.ai/blog/eviltokens-oauth-device-codes-bec-operations EvilTokens Is Still Live: Three Months On, the PhaaS Platform Has
· Sovereign LLM
Original inspiration for this from https://abnormal.ai/blog/eviltokens-oauth-device-codes-bec-operations EvilTokens Is Still Live: Three Months On, the PhaaS Platform Has
Let me get the bias out of the way first, because it shapes everything that follows. I don't hold much weight in threat intel.
So I started down the path of building an automated DFIR pipeline. As mentioned previously, SANS announced an AI Hackathon, and my original idea was to
Or: how I spent twelve hours building a workaround for a flag that already existed I run a four-node DGX Spark cluster for local DFIR
SANS recently announced their first hackathon for autonomous incident response — open to the community, build something that uses AI to figure out what the bad guys
On 19 April 2026, Vercel disclosed a security incident. Within 48 hours, the public attack chain had resolved into something more interesting than the initial "
DORA came into force in January 2025. Financial entities across the EU are supposed to be compliant. Most aren't — at least not fully — and
So I have gotten into running my own local llm for privacy reasons, and like to use it to assist with incident response tasks and collecting