febery/blog
I'm Adam Febery. I lead security engineering and operations at Kocho, specialising in Microsoft Sentinel, XDR, and the evolution of AI-native security operations.
This blog serves as my personal portfolio and workspace where I document and explain technical solutions I've built for the problems I encounter. Expect a mix of deep dives into modern security operations and pragmatic operational fixes.
Thoughts and solutions shared here are my own and do not represent those of my employer.
latest thoughts
View all12 June 2026
looking into the abyss: introducing kocho cthulu
a deep dive into dark web monitoring, automated risk scoring, and the brutal reality of plaintext credential exposure.
Read more6 June 2026
building siren: re-engineering phishing triage with ai-powered semantic forensics
an automated phishing forensics engine that moves beyond static rules to analyse the intent of an email using llms.
Read more2 June 2026
siren: automated phishing forensics at scale
leveraging azure openai and serverless orchestration to transform manual phishing triage into automated semantic forensics.
Read more