Selected work

Research, reports and campaigns built around a clear idea

Long-form cybersecurity and technology content, shaped with subject-matter experts and written for intelligent audiences. Select any report to read the full PDF in your browser.

Reports and research

Flagship work

Critical Infrastructure Overview 2024 report cover

Securin · Threat intelligence

Critical Infrastructure Overview 2024

Vulnerability, exploit and threat-actor data turned into a coherent narrative across water, energy and healthcare.

Read the report ↗
Global DDoS Threat Landscape report cover

Imperva · Research campaign

Global DDoS Threat Landscape

A flagship report developed with researchers and extended across blogs, media stories, infographics and campaign assets.

Read the report ↗
Global Data at Risk report cover

Tala Security · Original research

Global Data at Risk

A market narrative built from client-side security research and carried into articles, events and sales conversations.

Read the report ↗
What AppSec Can Learn From Cybersecurity report cover

OX Security · Thought leadership

What AppSec Can Learn From Cybersecurity

A point-of-view paper using cybersecurity history to frame a sharper argument about the future of AppSec.

Read the report ↗
5G and the Future of Connected Vehicles ebook cover

Cubic Telecom · Connected mobility

5G and the Future of Connected Vehicles

Executive-level content linking 5G, edge computing, V2X and software-defined vehicles to new services and business models.

Read the report ↗
Ransomware Index 2025 report cover

Securin · Threat intelligence

Ransomware Index 2025

A data-led view of the vulnerabilities, sectors and threat groups shaping ransomware risk.

Read the report ↗

Articles and technical blogs

Selected writing

A small cross-section of current threat-intelligence, AppSec and campaign-led writing. The aim is range, not an exhaustive archive.

Securin · AI security

AI Agents Are Quietly Creating the Next Attack Surface Crisis

How autonomous agents connect privileged systems and create exploit paths that conventional security controls struggle to see.

Read the article ↗

Securin · Threat intelligence

Why OS Command Injection Became the Apex Predator in 2025

A data-led look at why a long-standing weakness became one of the most consequential attack paths in the year’s threat landscape.

Read the article ↗

Securin · Geopolitics and AI

The Frontier Intelligence War: When AI Models Become Strategic Targets

Analysis of the strategic value of frontier models and the security implications when AI systems become geopolitical targets.

Read the article ↗

OX Security · Pillar content

Dynamic Application Security Testing: A Practical Guide

A detailed guide to runtime testing, its place in DevSecOps and the gaps it fills alongside static and supply-chain security tools.

Read the guide ↗

OX Security · AppSec explainer

ASPM vs CSPM: What’s the Difference and Why Does It Matter?

A practical comparison of application and cloud posture management, written to clarify scope, overlap and the risks of fragmented tooling.

Read the article ↗

Imperva · Research follow-on

Shorter, Sharper DDoS Attacks Are on the Rise

A narrative-led follow-on article built from the DDoS report, translating attack data into a clear explanation of changing mitigation risk.

Read the article ↗

Campaigns and visual work

Technical ideas made visible

A-Z of Kaspersky Lab Cybersecurity infographic
A-Z of cybersecurity · Kaspersky
It Started With a Phish infographic
It Started With a Phish · Kaspersky
Ransomware: the tip of a multi-threat iceberg visual
Ransomware campaign · Kaspersky
Anatomy of a Cyberattack Victim infographic
Anatomy of a cyberattack victim · Kaspersky
Cheap and Nasty: The Anatomy of a DDoS Attack infographic
Cheap and Nasty · Imperva

Earlier technology journalism

Editorial roots

Selected feature writing and analysis from earlier in my career. The subjects have moved on. The editorial instincts have not.

Brainstorm magazine cover for Not the Usual Suspects

Brainstorm · Cover story

Not the Usual Suspects

A long-form technology feature selected as the cover story, showing the research, structure and narrative range behind my later cybersecurity work.

Read the feature ↗
Stand and deliver telecoms feature

Mobile Communications International · Feature

Stand and deliver

An industry feature on billing, legacy systems and the push for simpler, more agile telecoms operations.

Read the feature ↗
Chinese whispers telecoms analysis

Mobile Communications International · Analysis

Chinese whispers

Analysis of trade tensions, telecoms policy and the uneasy commercial relationship between China, Europe and the US.

Read the analysis ↗