febery/blog

I'm Adam Febery. I lead security engineering and operations at Kocho, specialising in Microsoft Sentinel, XDR, and the evolution of AI-native security operations.

This blog serves as my personal portfolio and workspace where I document and explain technical solutions I've built for the problems I encounter. Expect a mix of deep dives into modern security operations and pragmatic operational fixes.

Thoughts and solutions shared here are my own and do not represent those of my employer.

latest thoughts

View all

12 June 2026

looking into the abyss: introducing kocho cthulu

a deep dive into dark web monitoring, automated risk scoring, and the brutal reality of plaintext credential exposure.

Read more

6 June 2026

building siren: re-engineering phishing triage with ai-powered semantic forensics

an automated phishing forensics engine that moves beyond static rules to analyse the intent of an email using llms.

Read more

2 June 2026

siren: automated phishing forensics at scale

leveraging azure openai and serverless orchestration to transform manual phishing triage into automated semantic forensics.

Read more