Archives
- 26 Jun attestq: When "We Don't Have Evidence for That" Is the Feature
- 20 Jun Giving an AI SOC a Memory: Precedent, Proof, and the Campaigns No Analyst Sees
- 19 Jun langchain-failover Grows a Tier-Split: Gather Cheap, Compose Smart
- 19 Jun detflow Goes Both Ways: From a Threat Report to a Detection Package
- 14 Jun find-evil: Teaching a Forensic Agent to Catch Its Own Hallucinations
- 06 Jun The Day My AI SOC Went Quiet
- 06 Jun detflow: A Detection-Engineering Copilot You Can pip install
- 31 May iocflow: Turning a Production AI SOC into a Shippable OSS Library
- 30 May SOC-in-a-Box: One LLM, Eight Hats, A Production-Bar AI SOC on a Single GPU
- 14 May Three Chat Template Patterns That Silently Kill Your Prompt Cache
- 09 May Teaching a Reranker the Language of Security Tickets (+41% MRR@10)
- 09 May Why Self-Hosted Claude Code Was 15× Slower Than It Should Be