Selected Publications
Grey Area: Dark Web Data Collection and the Future of OSINT
An Investigation Into An Underground Cybercrime Market of Hacked Accounts
A compelling, first-hand account of the dark web, from its underground ecosystem, to the people responsible for committing data breaches and leaking data, 21st century’s most consequential data breaches, the responses to those attacks, and the impact of dark web data and intelligence gathering and can have in the defense and security of our nation.
The Fortnite Underground Cybercrime Economy
An Investigation Into An Underground Cybercrime Market of Hacked Accounts
This report provides an inside look at the entire underground supply chain where cybercriminals are hearing upwards of 1 million dollars by hacking and reselling gaming accounts.
The Dark Overlord Investigation Report
An Investigation Into An Underground Cybercrime Market of Hacked Accounts
This report uncovers the identities behind The Dark Overlord cyber hacking organization, and provides evidence linking the group’s members to other notorious hacking groups including Gnostic Players and Shiny Hunters. Together, the group members are responsible for over 40% of all data breaches from 2017-2020.
Hunting Cyber Criminals
A Hacker’s Guide to Online Intelligence Gathering Tools and Techniques
Hunting Cyber Criminals is a modern digital investigation guidebook, providing a mix of technical guide on using modern research tools tools, as well the investigative techniques and thought process used to uncover a modern criminal organizations known as The Dark Overlord.
Dissertation: Cybersecurity Framework
The Cybersecurity Framework as an Effective Information Security Baseline: A Qualitative Exploration
The purpose of this exploratory qualitative research study was to understand the extent to which information security leaders in the U.S. believe the Cybersecurity Framework (CSF), an information security risk management (ISRM) framework, can help organizations defend against cyber-related threats.
White Paper: Cyber Liability Due Care
Prepare Your Organization to Address Cyber Liability Due Care Requirements
Due Care is a legal term used in Cyber Risk, defined as the expected standard of performance that prevents a foreseeable malicious event from occurring. Learn how to ensure your organization is covered by these standards, and how you can ensure your organization is ready using the Cyber Security Framework.