Recent blog posts

The Real Skill Gap in SOCs Isn’t Technical, It’s Judgement
Joanne Morley 07/01/2026

The Real Skill Gap in SOCs Isn’t Technical, It’s Judgement

Many of the challenges that slow investigations and increase escalations in SOCs are not caused by missing tools or technical skills. They stem from uneven judgement under uncertainty. This article explores why judgement is harder to build than knowledge, how it affects escalation and closure, and what SOC managers can...

5 Ways Ransomware Training Boosts Your Career
Tati Laskivska 05/01/2026

5 Ways Ransomware Training Boosts Your Career

Ransomware training helps cybersecurity professionals move beyond technical response to become trusted contributors during high-pressure incidents. By understanding attacker behavior, business impact, negotiation dynamics, and the full incident lifecycle, practitioners gain credibility across technical, legal, and executive teams. This practical, real-world knowledge builds confidence, expands career options across multiple security...

All posts

Security Blue Team at Black Hat USA: Our Roundup
Duncan Whitley 22/08/2024

Security Blue Team at Black Hat USA: Our Roundup

For the first time, we at Security Blue Team had the honor of sponsoring Black Hat USA in Las Vegas. The event, which ran 7-8 August, is one of the premier information security conferences globally, drawing in cybersecurity professionals, researchers, and enthusiasts from all over the world.

Steal ‘em Eggs: Golden Chicken Hatches More_eggs Backdoor
Renmarc Andrada 16/08/2024

Steal ‘em Eggs: Golden Chicken Hatches More_eggs Backdoor

"Why did the chicken cross the road?" This common riddle is typically answered with, "To get to the other side." Interestingly, this simple joke metaphorically aligns with the tactics, techniques, and procedures (TTPs) of the threat actor we will be discussing, specifically how they infiltrate their targets' environments to steal...

Day in the Life of a Content Engineer
Malik Girondin 09/08/2024

Day in the Life of a Content Engineer

We explore what it means to be a content engineer, an exciting career emerging within the cybersecurity industry. This piece is authored by our esteemed Defensive Content Engineer, Malik Girondin. With his experience as a cybersecurity instructor for various organizations and as a YouTuber, he has established numerous labs to...

Digging into Python's involvement in ransomware threats
Luis Suastegui 01/08/2024

Digging into Python's involvement in ransomware threats

This post will delve into Python's involvement in ransomware, focusing on Cryptonite ransomware. We will explore how Python's ease of use and versatility facilitate the development of this digital threat, examine its mechanics, and discuss how the relative ease of decompiling Python code introduces new risks.