Detection-engineering walkthroughs, threat analysis, and mitigation guides. Sourced, reproducible, and defensive in scope. One published so far — this index grows as writeups ship.
On the bench: an OWASP LLM Top 10 explainer (prompt injection as a defensive class), a detection guide for a recent CISA KEV-listed CVE, and a writeup on detecting OAuth consent phishing. Want to suggest a topic or flag an error in what's published? Open an issue →