A suspicious Word attachment. Deobfuscate four VBA layers (Chr, StrReverse, XOR, Base64), extract the C2, and write a YARA rule.
A Linux ext4 image from an alleged data theft. Build a mactime timeline, recover deleted files by metadata and by carving, and separate facts from hypotheses.
A Belgium-based provider of cybersecurity solutions, and the team behind SynapseRM / TPRM.