Now

What I'm currently focused on and building. Last updated: December 2024

Current Focus
  • Detection engineering for emerging threats
  • Improving PowerShell-Hunter capabilities
  • Writing more technical content for Field Notes
  • Contributing to open source security projects

Currently Building

active

PowerShell-Hunter updates

Adding new detection modules and improving existing ones

active

Sysmon configuration updates

Refining rules based on new threat intelligence

experimental

New hunting queries

Building queries for detecting novel attack techniques

Learning

📖 Advanced threat hunting methodologies
📖 Detection-as-code practices
📖 Cloud security tooling
📖 Kubernetes security monitoring

Recently Shipped

2024-12 PowerShell-Hunter v2.0 release
2024-11 New Sysmon configuration templates
2024-10 CBR query collection update
2024-09 Field notes on threat hunting workflows

This is a now page. It's a snapshot of what I'm currently working on and focused on, updated periodically.