Skip to content

Blog (64)

Expert insights, tutorials, and analysis from the frontlines of offensive security.

/ DATE
/ NAME
2026.5.22

Why SMS 2FA Is No Longer Safe: Secure Your App with FIDO2, Passkeys & Modern MFA in 2026

2026.5.22

Top 10 Cybersecurity Threats to Watch in 2026 and How to Defend Against Them

2026.4.17

Cloud Security Career Roadmap: Skills, Tools, Labs, and Growth

2026.4.11

Building a Personal Cybersecurity Lab: Pentesting, SIEM, Forensics, and Cloud Practice

2026.4.03

Malaysia Cybersecurity Career Plan: Skills, Labs, Roles, and Growth Path

2026.3.28

SOC-to-Pentest Career Path: How Blue Team Experience Builds Better Penetration Testers

2026.3.24

How to Write a Pentest Report: Structure, Evidence, CVSS, and Remediation

2026.3.19

Interpretable Random Forest for Phishing Detection: Behavioral and Linguistic Features

2026.3.15

Cloudflare Security Controls for Public Apps: WAF, DNS, Rate Limiting, and Access

2026.3.12

Docker Hardening for Security Labs: Safer Containers for Cybersecurity Practice

2026.3.08

GitHub Actions Security Checklist: CI/CD Hardening for Developers and Security Teams

2026.3.04

GCP Security Baseline: IAM, Logging, Network, and Storage Controls

2026.3.01

AWS IAM Misconfiguration Patterns: Practical Cloud Security Lessons

2026.2.25

Incident Response Playbook for Small Teams: Practical Steps Before a Breach

2026.2.21

SNORT Rule Tuning Guide: Reducing False Positives Without Losing Visibility

2026.2.16

Wireshark Incident Response Workflow: Packet Analysis for Security Triage

2026.2.13

ELK Threat Hunting Basics: How to Turn Logs into Security Investigations

2026.2.09

Splunk Detection Rules for Common Web Attacks: A Practical SOC Guide

2026.2.05

Exploit Validation Without Causing Damage: Safe Proof for Penetration Testing Reports

2026.2.02

CVSS Reporting for Real Security Findings: Turning Technical Bugs into Business Risk

2026.1.29

Burp Suite Testing Notes: Practical Web Application Security Workflow

2026.1.24

Recon Workflow with Nmap, Shodan, and Maltego for Authorized Security Assessments

2026.1.21

API Pentesting Checklist: OWASP API Security Testing for Real-World Applications

2025.12.10

Build Your Own Private VPN - The Ultimate WireGuard + VPS Guide

2025.11.05

When Code Becomes War: The Rise of Algorithmic Conflict

2025.11.03

The Next Cyber Pandemic: When Open-Source AI Falls Into the Wrong Hands

2025.6.03

How China Is Engineering a Global Hacker Army

2025.6.02

How Supervised Machine Learning Can Stop Spear-Phishing

2025.5.25

Ultimate Guide to Building a SOC and SIEM Career in 2026

2025.5.23

Building a 24/7 Tier-1 SOC in Malaysia: Architecture & Shift-Handover Playbooks

2025.5.20

How to Launch a Penetration Testing Career in Malaysia & Singapore (2026 Guide)

2025.4.15

Why It's Time to Retire SMS OTPs and Embrace Stronger Authentication

2025.4.11

Self-Hosting Lemmy: A Secure, Decentralized Social Media Platform

2025.4.10

A Beginner-Friendly Guide to Self-Hosting Threema in a Decentralized Environment

2025.3.08

Ultimate Home Web Server Guide to Securely Hosting Websites on Raspberry Pi 5 with aaPanel

2025.2.21

A Beginner's Guide to Penetration Testing: Tools, Techniques, and Best Practices

2025.2.21

SIEM vs. SOAR: Which One Do You Need for Your Business?

2025.2.18

Deploying a Secure Prosody XMPP Server on Docker with SSL & Firewall

2025.1.03

Setting Up Pydio Cells on Raspberry Pi 5/4/3 (Linux ARM64)

2025.1.01

How to Configure Any Router as a Wi-Fi Relay for Networks with Captive Portals

2024.12.24

The Holiday Cybersecurity Guide: Staying Safe Amid Festive Shopping Frenzy

2024.12.20

The Dark Side of Innovation: Why Cybercriminals Target New Domain Extensions

2024.7.07

Connect Your Home Network from Anywhere in the World with Raspberry Pi

2024.6.19

Vulnerability Assessment and Management in Large-Scale Enterprise Networks

2024.5.12

AI in Cybersecurity: Revolutionizing Threat Detection and Response

2024.4.12

Building a Pi-hole with Raspberry Pi for Enhanced Home Network Security

2023.6.14

Setting Up a Secure Samba Server on Linux: Hardening and Configuration Guide

2023.5.31

Cybersecurity Career Accelerator: Power Up Your Journey to Success

2023.5.31

Introduction to the Open-Source Operating System

2023.3.15

Gmail SMTP with Cloudflare Email Routing: A Security-First Guide

2023.2.13

Social Engineering: Understanding the Art and Science of Human Hacking

2023.2.13

WAF Solution: Complete Guide to Choose WAF

2023.2.12

Bypassing and Resetting Linux Passwords via the GRUB Bootloader: A Cybersecurity Perspective

2023.2.11

Bug Bounty Programs: A Complete Guide to Crowdsourced Security

2023.2.09

Linux File Permissions and Ownership Management

2023.2.07

Top Linux Distributions Across 5 Categories

2023.1.03

Guide to the Top 10 Virtual Machine Software: A Cybersecurity Perspective

2022.11.23

How to Secure Your SSH Server: The Definitive Hardening Guide

2022.9.26

Artifact Locations & The Digital Forensics Artifacts Repository

2022.9.24

Debian Lab Setup for Cyber-Security Enthusiasts

2022.4.19

SQLmap Tutorial: The Definitive Guide to Detecting and Exploiting SQL Injections

2022.4.11

macOS Device Forensics: A DFIR Guide to Artifacts and Threat Hunting

2022.1.02

Essential Tools for Privacy in Daily Life

2021.5.25

Understanding Email Spoofing: SMTP Mechanics, PHP Implementation, and Modern Defenses

Subscribe to my newsletter

Receive my case study and the latest articles on my WhatsApp Channel.

Warning

Ask CyberROX AI