Recent blog posts

Faces of SBT: Meet Millie, Head of Product
Duncan Whitley 29/08/2025

Faces of SBT: Meet Millie, Head of Product

Get to know Millie Gilham, Security Blue Team’s Head of Product, who drives innovation in cybersecurity training with empathy and strategy. From shaping intuitive platforms to championing neurodiversity, Millie’s leadership ensures impactful learning experiences. Learn about her role, passion for SBT’s mission, and what fuels her outside the office in...

Understanding Red Team Roles
Joshua Beaman 29/07/2025

Understanding Red Team Roles

There are a wide range of offensive cybersecurity, or "red team", roles in our industry. In this blog post we'll...

Your First Steps Into Cybersecurity – With or Without University
Reema Shah 14/08/2025

Your First Steps Into Cybersecurity – With or Without University

A-Level results day is here, and whether you’re feeling proud, relieved, surprised, or a little uncertain about what’s next, take a breath. You’ve made it through a huge milestone. If you’ve ever thought about working in cybersecurity, here’s the good news: your path into this field is still wide open,...

All posts

JIT Happens: Exposing LuaJIT Malware in the Wild
SBT Content Engineers 28/02/2025

JIT Happens: Exposing LuaJIT Malware in the Wild

This blog series will explore Security Blue Team's adventure into the reverse engineering of a novel SmartLoader malware variant. This malware was discovered during our research into Belsen Group's high-profile FortiGate leak. This leak was advertised as containing a list of affected companies with associated configuration data from their FortiGate...

JIT Happens: Creating a malware analysis lab for Smartloader
SBT Content Engineers 28/02/2025

JIT Happens: Creating a malware analysis lab for Smartloader

We need a suitable environment to detonate the malware in a repeatable fashion. This environment should allow us to substitute our mock APIs and host to ensure the malware operates as close to real as possible.

Black Basta: Unmasking the Ransomware Gang Through Leaked Chat Logs
Luis Suastegui 21/02/2025

Black Basta: Unmasking the Ransomware Gang Through Leaked Chat Logs

The Black Basta ransomware gang recently made headlines for all the wrong reasons when someone using the online handle “ExploitWhispers” shared internal chat logs of the group with the public — close to a year’s worth of messages in a JSON file.

GitHub & Discord's Secret File Locker: A Hacker's Playground?
Malik Girondin 21/02/2025

GitHub & Discord's Secret File Locker: A Hacker's Playground?

This write-up is a POC (Proof of Concept) to demonstrate a potential vulnerability in GitHub and Discord that can be exploited. You are free to verify the issue, as we encourage the developers at GitHub and Discord to properly secure their systems to lower the risk of an exploit.

Faces of SBT: Trevor, Director of Cloud Services
Melissa Boyle 22/01/2025

Faces of SBT: Trevor, Director of Cloud Services

Welcome to our first Faces of SBT blog post, where we’ll be showcasing a member of our team and giving you a behind-the-scenes look at what it’s like to work at SBT. First up is Trevor, our Director of Cloud Services.