top of page
Search


Dissecting a Live ClickFix Attack: EtherHiding, WebDAV Abuse, and How ASR Saves the Day
Yet another Clickfix incident, however, today we really dive into the juicy bits. A configuration living on the blockchain? Lets dive into this rabbithole together!
Damien van der Linden
2 days ago18 min read
Â


Device Code Phishing Meets ClickFix
Device Code Phishing has been going on for a while now, and it's making a comeback.
Damien van der Linden
Mar 1210 min read
Â


From World of Warcraft to Threat Hunting: An Unconventional Path into Cybersecurity (And How You Can Too)
Starting a career in cybersecurity isn't always straightforward. Sometimes it takes luck, but mostly it's about demonstrating what you can do and refusing to give up when doors seem closed. Oh, and taking notes. Seriously, take notes. I'll explain why I learned this the hard way. The Gaming Gateway My journey didn't begin in a classroom or with a computer science degree. It started in Azeroth, the virtual world of World of Warcraft. While others saw just a game, I saw a compl
Damien van der Linden
Nov 5, 20258 min read
Â


Hunting for CVE-2025-59287: Detecting Vulnerable WSUS Servers
Summary Microsoft has released an urgent out-of-band security update to address CVE-2025-59287 (after a previous update in Patch Tuesday that didn't quite hit the nail on the head), a critical remote code execution vulnerability in Windows Server Update Services (WSUS) that is being actively exploited in the wild. This vulnerability allows unauthenticated attackers to execute arbitrary code with SYSTEM privileges by exploiting unsafe deserialization in WSUS's cookie handling
Damien van der Linden
Oct 27, 20254 min read
Â


LindenSec's KQL CTF #1: The Phantom Admin Login
A short CTF styled KQL challenge! Can you find out what happened?
Damien van der Linden
Sep 15, 20252 min read
Â


Detecting ManualFinder/PDF Editor Malware Campaign with KQL
A free PDF Editor turning itself into an infostealer overnight. Let's hunt it down with KQL!
Damien van der Linden
Aug 25, 20257 min read
Â
bottom of page