Published write-ups and technical notes.
Research notes
Research
Write-ups, Microsoft 365 notes, TryHackMe notes, and things I have learned while building tools and working in security.
Work-related posts are generalised for public sharing and do not include employer-sensitive details.
Topics across security, governance, and tooling.
Most recent research update.
Microsoft Defender for Office 365 Plan 1 Technical Write-Up
Technical notes on Microsoft Defender for Office 365 Plan 1, Safe Links behaviour, policy overlap, and operational checks after the E3 rollout.
Read write-up →Microsoft Defender for Office 365 Plan 1 Rollout Caught Us by Surprise
While investigating unexpected URL rewriting in Exchange Online, we discovered Microsoft had enabled Defender for Office 365 Plan 1 as part of its rollout to Microsoft 365 E3 tenants.
Read write-up →SecToolBox: July 2026 Overview
An update on the development of SecToolBox, a personal PowerShell-based security toolkit I'm building to consolidate common triage, investigation, and report generation tasks into a single tool.
Read write-up →SharePoint B2B: Behaviour Changes, Security Implications, and Guest Access Controls
A look at the behaviour changes in SharePoint B2B collaboration, the security implications, and the identity controls implemented.
Read write-up →Introducing SecToolBox: A Personal Security Toolkit Application
A look at SecToolBox, a personal PowerShell-based security toolkit I'm building to consolidate common triage, investigation, and report generation tasks into a single tool.
Read write-up →