Indexed collection
Research Logs
Articles, experiments, architectures, implementation notes, and observations from security engineering work.
LOG-0001 · PUBLISHED
Using eBPF as Behavioural Ground Truth for Threat Research and Detection Engineering
A container-scoped eBPF sensor for observing malware behaviour, probing telemetry coverage, and automating detection validation.
LOG-0002 · PUBLISHED
Detection Quality Indicators: A Structured Approach to Better Detections
A practical framework for evaluating detection intent, resilience, operational cost, and production outcomes.
LOG-0003 · PUBLISHED
Detection-as-Code: Building Systems, Not Just Rules
A practical approach to treating detections as software: explicit contracts, testable logic, controlled delivery, and feedback from production.
No logs matched the selected telemetry filters.