Copywriting Portfolio

Strategic content and technical writing that converts, educates, and establishes thought leadership in the cybersecurity space.

All Content

Professional copywriting and content creation across multiple categories and publications.

Federal judiciary cyber breach: How SolarWinds and Legacy Systems left US courts exposed
Technical Hack The Box

Federal judiciary cyber breach: How SolarWinds and Legacy Systems left US courts exposed

A technical breakdown of the 2020 and 2025 cyberattacks on US federal judiciary systems, including SolarWinds, PACER vulnerabilities, and key defensive lessons.

Jan 2026 Read Article ↗
Graph & cybersecurity: Using networks to outpace modern threats
Strategic Linkurious

Graph & cybersecurity: Using networks to outpace modern threats

Whitepaper detailing the use of graph technology for attack chain modeling

Dec 2025 Read Article ↗
The Brickstorm breach: Anatomy of UNC5221’s 12-month espionage operation
Technical Hack The Box

The Brickstorm breach: Anatomy of UNC5221’s 12-month espionage operation

F5 Networks was breached for over a year by China-linked APT UNC5221. Learn how Brickstorm malware enabled source code theft and supply chain attack risks—and how to defend.

Nov 2025 Read Article ↗
BianLian’s silent breach: How 1 exploit hit Nippon Steel’s supply chain
Technical Hack The Box

BianLian’s silent breach: How 1 exploit hit Nippon Steel’s supply chain

A deep dive into the Nippon Steel breach and BianLian’s growing focus on supply chain data theft. Learn how to defend your network.

Oct 2025 Read Article ↗
Beware the Cozy Bear: Dissecting APT29's obfuscated JavaScript watering hole campaign
Technical Hack The Box

Beware the Cozy Bear: Dissecting APT29's obfuscated JavaScript watering hole campaign

Cozy Bear’s watering-hole attack on Microsoft device code auth used obfuscated JS and redirects to compromise 10% of visitors. Learn how to defend against it.

Sep 2025 Read Article ↗
Inside FireAnt: How UNC3886 used 15+ exploits to breach VMware ESXi and avoid detection
Technical Hack The Box

Inside FireAnt: How UNC3886 used 15+ exploits to breach VMware ESXi and avoid detection

Discover how Chinese APT UNC3886 used 20+ MITRE techniques in the FireAnt campaign to exploit VMware ESXi hypervisors and evade detection.

Sep 2025 Read Article ↗
Inside Salt Typhoon: How Chinese APTs breached US telecoms (and stayed hidden for years)
Technical Hack The Box

Inside Salt Typhoon: How Chinese APTs breached US telecoms (and stayed hidden for years)

Call recordings from US presidential campaigns. Wiretaps hijacked. No less than nine telecoms infiltrated—completely undetected—for years. Salt Typhoon didn't just spy, they embedded.

Jun 2025 Read Article ↗
£300m gone: How Scattered Spider hit the UK's biggest retailers
Technical Hack The Box

£300m gone: How Scattered Spider hit the UK's biggest retailers

Scattered Spider expands its campaign from retail to the insurance sector, using social engineering to breach networks. Learn how the threat group operates and how to defend against it.

Jun 2025 Read Article ↗
The Value of GenAI Hallucinations
Strategic The Array

The Value of GenAI Hallucinations

To harness GenAI's potential, we need it to be both accurate and creative — but is that possible?

Apr 2025 Read Article ↗
The big 6: essential financial regulations security leaders should know
Strategic Hack The Box

The big 6: essential financial regulations security leaders should know

In this blog, we cover the biggest international laws and standards security leaders should know about in 2025.

Feb 2025 Read Article ↗
EU Cyber Resilience Act: What does it mean for security & dev teams?
Strategic Hack The Box

EU Cyber Resilience Act: What does it mean for security & dev teams?

A guide to understanding the security-related implications of the EU Cyber Resilience Act.

Feb 2025 Read Article ↗
Mustang Panda deploys evasive, multi-stage malware for intelligence gathering
Technical Hack The Box

Mustang Panda deploys evasive, multi-stage malware for intelligence gathering

The APT group designated Mustang Panda has targeted governments around the world, including the U.S., Mongolia, Myanmar, Hong Kong, Japan, and Thailand.

Jan 2025 Read Article ↗
How Volt Typhoon targeted US ISPs with the zero-day Versa exploit
Technical Hack The Box

How Volt Typhoon targeted US ISPs with the zero-day Versa exploit

During the Summer of 2024, several internet service providers (ISPs) & managed service providers (MSPs) were the target of a zero-day vulnerability being used by Volt Typhoon.

Nov 2024 Read Article ↗
Strong IR capabilities are key to meeting new incident reporting deadlines
Strategic Hack The Box

Strong IR capabilities are key to meeting new incident reporting deadlines

New requirements give organizations little time to investigate and triage breaches before reporting.

Oct 2024 Read Article ↗
5 Steps for proactive AI risk management
Strategic Hack The Box

5 Steps for proactive AI risk management

A guide to approaching AI risk exposure by laying the 'rules of the road' with an accurate AI risk management policy.

Aug 2024 Read Article ↗
Exploring the Snowflake Breach
Technical Hack The Box

Exploring the Snowflake Breach

We dissect the Snowflake Breach through the lens of the MITRE ATT&CK framework.

Jul 2024 Read Article ↗
How CISO roles have evolved with GRC
Strategic Hack The Box

How CISO roles have evolved with GRC

As cyberattacks become a top-of-mind concern CISOs are having to step up their c-suite presence, prepare for strict reporting requirements, and deal with rising stakes.

Jun 2024 Read Article ↗
Dissecting Cuttlefish Malware
Technical Hack The Box

Dissecting Cuttlefish Malware

Deep dive analysis of Cuttlefish malware, examining its attack vectors, persistence mechanisms, and defensive strategies.

Jun 2024 Read Article ↗
Building new skill sets for NIST CSF 2.0
Strategic Hack The Box

Building new skill sets for NIST CSF 2.0

Learn what's new with the recent NIST CSF 2.0 update and how to build your team's capabilities to stay compliant with new standards.

Jun 2024 Read Article ↗
How to apply the MITRE ATT&CK framework to your cybersecurity strategy
Strategic Hack The Box

How to apply the MITRE ATT&CK framework to your cybersecurity strategy

The MITRE ATT&CK framework is a knowledge base of cyber attacks based on real-world attack scenarios. Learn how to apply this to your cybersecurity strategy in this guide.

Apr 2024 Read Article ↗