Start here - guides and article series from the Halkyn security blog

This blog has been running since 2011 and covers digital forensics, incident response, security management and practical risk reduction. This page is the map: the article series and evergreen content most worth your time, grouped by topic.

Windows Internals for DFIR

A series for incident responders who want to understand what Windows is doing under the bonnet, and how attackers abuse it.

Linux Internals for DFIR

The companion series for Linux systems.

Compliance and Frameworks

Free Downloads

We publish free checklists, templates and guides. The full collection is indexed on our resources page, with further material on the main site downloads section.

Work With Us

If the material here is useful, the consultancy behind it can help directly – from emergency incident response to threat hunting and vCISO advisory. See the services summary or get in touch.