Manuel Boll
I’m a Threat Hunter who loves digging into logs and exploring raw data. My go-to tools depends on the use case are Kusto, Kibana, MISP, Yara, Ghidra, SleuthKid, Bulk Extraktor, Plaso & WSL2. I also work as a freelancer, offering consulting in Threat Hunting and Image Forensics. I have experience with DAX companies, medium-sized businesses, and small businesses, providing customized solutions to fit their needs.
Outside of work, I enjoy participating in Capture the Flag (CTF) competitions, trying out new cocktail recipes, and spending time outdoors—whether it’s mountain biking in the summer or snowboarding in the winter.
If you’re interested in collaborating, feel free to reach out!
news
| Oct 30, 2025 | Ping Me Maybe - When SubCrawl Started Talking to Teams |
|---|---|
| Sep 01, 2025 | One IP, 500 Suspects |
| Aug 30, 2025 | Volt Typhoon – Constructed Intelligence or Defeated Adversary? |
| Aug 05, 2025 | Plague in Your PAM – Silent, Stealthy, Persistent |
| Aug 03, 2025 | LameHug - Russians Let GPT Do the Dirty Work |
| Jul 15, 2025 | A Promptly Bad Idea - Malware Meets AI |
| Jun 15, 2025 | Brilliant and Simple - Filename-Based Sandbox Evasion |
| Jun 02, 2025 | Slices of Suspicion – The Pentagon Pizza Theory |
| May 15, 2025 | From Obfuscated Garbage to Clarity |