Blogroll
The internet is huge. These are the spots I keep coming back to. People I learn from, tools I actually use, and communities worth being part of. All worth your time.
Jürgen Löhel
If Juergen’s heart had a boot loader, it would chainload straight into open source. And somehow he still finds time to run CTFs with me. Deeply technical, and shares everything he knows. Definitely worth following.
cocomelonc
cocomelonc has been red-teaming for years and casually drops the kind of stuff you’d normally only hear in closed Signal groups. The write-ups are technical, dense, and occasionally make you wonder if this should really be public. Probably the best red-teaming blog on the open internet.
Ransom-ISAC
Think Michelin stars, but for ransomware researchers. Ransom-ISAC’s L.O.C.K. S.T.A.R. framework hands out real credit to the folks actually pushing back against ransomware. The blog is where the community drops fresh threat intel long before it hits the mainstream feeds. Community-driven and refreshingly not gatekept.
Malcat
Reverse engineering with Malcat feels a little bit like cheating. It does more than half the work statically before you even open a debugger. Watch your backs, IDA and Binary Ninja, Malcat is coming for you!
Inlyse
Back when nobody had heard of “AI” yet, the Inlyse folks were already bolting neural nets onto antivirus engines. One of the very few companies where AI isn’t just fluffy buzzword marketing, it’s the actual product. If you want to see what happens when AV veterans got their hands on machine learning years before everyone else jumped on the hype train, Inlyse is the place to go.