Field Notes
From the work.
Written by Elena and Tobias. Not editorial content, not vendor material — notes on things we encounter in actual engagements and find worth documenting.
Architecture
Zero trust is not a product. Notes on what it actually requires.
Process
What actually happens after a pentest report lands. Observations on remediation.
Social Engineering
Phishing still works. Why training alone does not solve it.
Compliance
GDPR and security audits: what Article 32 actually asks of your organisation.
Incident Response