field notes · 2026

Articles from real engagements.

Patterns we see. Mistakes that keep showing up. New attack surfaces worth tracking. Written by the engineers who run the engagements, not a marketing team.

01. filter by topic
02. latest

Recent writing.

Sorted by publish date. Click a topic chip above to filter.

active directory·Mar 18, 2026

The AD attack path nobody patches

ADCS misconfigurations still account for a third of the internal escalation paths we find. Why fixes stall and the four configuration changes that close most of them.