Site Function

Main site function is to distribute and gather knowledge, and connect with people!

Achievements; best-in-class trophies!

Background and Vision

The CTI platforms I have tried was not giving me the tools or information I need to create applicable security policies. The platforms had little focus on the Scandinavia region and the threats against that region. It was with this reason I created this site. A platform which is intended to be applicable for everyone.

If you as a Firewall Administrator needs a set of policies against a threat, where would you look?

If you as a Windows Administrator needs a set of GPOs against a threat, where would you look?

If you as a Security Analyst need to verify an IOC and a behavior, where would you look?

If you as a Threat Hunter needs a set of queries to do threat hunting, where would you look?

If you as a CISO needs to know how the threat landscape looks like, where would you look?

Intended focus

The intelligence is focused on the Scandinavia region.

All it security professionals could benefit from the intelligence produced by this site.

This site will not repost any threat reports without adding any new information or correlation, because spam and FUD is unnecessary.

Site Creator

I, Filip Fog, is the site creator. Read below to learn more about me and my background.

Achievements; best-in-class trophies!

Background

As many kids born in the 90s, I grew up when the internet became popular. I was fortunate to have a father that worked with IT, which helped form my path towards technology. It was always fun when he brought home devices that was going in the trash but worked fine as lab devices. Me and my brothers tried setting up servers and networks with those leftover devices we had at home.

Based on this experience and upbringing I chose the only logical path; computer electronics. My first year of high school started with electrical works, where we learned how to calculate and measure current and voltages. In the second year it became more focused on electronics. That year, I and fellow students, decided to build an electric skateboard controlled by a remote app on the phone. And on the third year we learned how to deploy windows servers, networks, and code in C++, HTML, CSS, JS.

After three years of high school I jumped into working with a health-care platform. My work was focused aroung solving communication problems between devices and softwares. For example Fax over IP (FoIP), mismatch of .NET versions, and vpn tunnels through openBSD firewall.

I became tired of this after two years, so I switched to the field of IT Security. The first security product I was put to work with was PAN-Firewalls, both hardware and software firewalls. But after a year I swithed to point field of security analysis. Within three years I was a driving force of establish a good MDR service and internal SOC. I was the technical-, and team-lead of the SOC, since I both was writing procedures and the automation for our SOAR platform. In those three years I attended a lot of SANS courses which helped form the basis of our SOC service quality.

...

The future is ongoing!

Education

Official education amount to three years of high school in computer electronics.

But I have attended a lot of different security courses both in-person and on-demand.

  • Palo Alto Networks: Several Online Courses from the official Learning Center.
  • SANS Courses: FOR508, SEC503, SEC660, SEC599.
  • Security Blue Team: BTL1 and BTL2.
  • OffSec: OSCP

Skills

If you think `certifications == skills`, check out my credly profile.