Nine Lives, Zero Trust
Curiosity Verified.
Systems get knocked off the ledge. Configs break. Attackers get in. Humans make mistakes. I write about building cloud security that survives the fall and always lands on its feet.

Latest Posts
Real-world cloud security, one life at a time

AKS Runtime Security: Binary Drift, Anti-Malware & Gated Deployment with Defender for Cloud
In December, I published a post on securing the container supply chain โ SBOM generation, image signing, and build provenance with GitHub Actions. โฆ

Detecting OAuth Redirect Abuse with Microsoft Sentinel and Entra ID
On March 2, 2026, Microsoft published an advisory on OAuth redirection abuse enabling phishing and malware delivery. Microsoft described phishing-led โฆ

The February 2026 Microsoft Sentinel Drop: UEBA Essentials, Copilot Connector, and 9 New GA Connectors
February 2026 brought one of the more substantial Sentinel drops in recent memory. UEBA Essentials hit v3.0.6 with a refined workbook and more than โฆ

March 2026 Entra ID Changes: Passkey Auto-Enablement and Conditional Access Enforcement
Microsoft is shipping two Entra ID changes in March 2026 that will change how your users authenticate. Neither change requires administrator action to โฆ
