Practitioner-grade cybersecurity content
Technical playbooks, war stories, and how-to-think guides — written by practitioners, anchored to the Indian context.
Want structured, step-by-step learning instead? Explore the Academy (guided courses) or the AI security hub.
Latest articles
Most recent practitioner playbooks across every track. Filter by topic in the sidebar, or use search.
ADCS ESC1: How a Misconfigured Template Hands You Domain Admin in 2026
Active Directory Certificate Services ESC1 still gives any Domain User a path to Domain Admin in most Indian enterprise environments. Here's what…
AcademyThreat Modelling — STRIDE, PASTA, LINDDUN in Practice
Threat modelling methodologies that work — STRIDE, PASTA, attack trees, LINDDUN for privacy. The practical workflow for engineering teams, anti-patterns to avoid,…
AcademySecurity Policy Architecture — A Working Hierarchy
The four-tier policy hierarchy (charter, policies, standards, procedures), the minimum 17-policy set for Indian mid-market organisations, how to write policies people actually…
AcademyZero Trust Architecture — From VPN to Identity-Aware Access
What Zero Trust actually is, the five CISA pillars, the reference stack for Indian mid-market organisations, and a realistic 12 to 18…
NewsAIIMS Delhi Ransomware Attack 2022 — How a Single Compromise Disrupted India’s Premier Hospital for Two Weeks: Anatomy & Lessons
The All India Institute of Medical Sciences Delhi — India's most prestigious public hospital — was crippled by a ransomware attack for…
AcademyModule 5 · AI Security & Red Teaming
Attack and defend AI systems — the field almost no one teaches. OWASP LLM Top 10, prompt injection, jailbreaks, guardrails, RAG poisoning,…
AcademyModule 4 · Fine-tuning & Custom Models
When APIs aren't enough — train, evaluate, deploy custom models on your own infra. LoRA, vLLM, evals, and the cost trade-offs.
AcademyModule 3 · Building Production AI Apps with RAG
APIs, vector databases, chunking strategies, agents — the moment AI goes from toy to production. Includes Slack-bot RAG architecture.
AcademyModule 2 · Prompt Engineering for Practitioners
Beyond LinkedIn tips. Structured prompting, few-shot, JSON output, tool use, and how to ship reliable prompts that don't silently regress.
AcademyModule 1 · AI Foundations — Tokens, Context & Cost
How LLMs actually work — tokenisation, context windows, embeddings, and the cost economics every Indian practitioner needs to know.