Recent blog posts

Meet David Elliott: SBT’s Principal Defensive Content Engineer Forging Cybersecurity Mastery
Duncan Whitley 29/10/2025

Meet David Elliott: SBT’s Principal Defensive Content Engineer Forging Cybersecurity Mastery

Step into the world of David Elliott, Security Blue Team’s Principal Defensive Content Engineer, whose creative flair and technical expertise shape cutting-edge cybersecurity training. From building realistic scenarios to mentoring talent, David’s work strengthens SBT’s technical team, helping clients master cyber defences. Dive into his story, from RAF roots to...

Meet Alaina & Dora: SBT’s Creative Powerhouse Duo
Duncan Whitley 26/11/2025

Meet Alaina & Dora: SBT’s Creative Powerhouse Duo

Say hello to Alaina and Dora, the brilliant creative duo behind Security Blue Team’s distinctive look and feel. As our design team, they craft everything from course interfaces to BTLO illustrations, blending deep cybersecurity knowledge with serious artistic flair. Discover how they keep SBT’s cybersecurity training visually stunning yet brilliantly...

All posts

The MacGyver Escape: How to Transfer Files from a Restricted Windows Computer
Luis Suastegui 26/03/2025

The MacGyver Escape: How to Transfer Files from a Restricted Windows Computer

Have you ever needed to transfer data from one computer to another but found yourself blocked by strict security policies? Perhaps you cannot connect any USB devices, most of your programs (including PowerShell and Command Prompt) are disabled, and internet access is heavily restricted.

Security Blue Team’s Global Connect: A Chilly Team Adventure in Lapland
Duncan Whitley 14/03/2025

Security Blue Team’s Global Connect: A Chilly Team Adventure in Lapland

Picture a team diving into a winter wonderland where snowmobiles hunt the Northern Lights, huskies charge through snowy trails, and drinks come in glasses chiseled from ice. That’s what SBT got up to during our annual Global Connect, a company get-together that took us from Stockholm to the icy wilds...

JIT Happens: Creating a malware analysis lab for Smartloader
SBT Content Engineers 28/02/2025

JIT Happens: Creating a malware analysis lab for Smartloader

We need a suitable environment to detonate the malware in a repeatable fashion. This environment should allow us to substitute our mock APIs and host to ensure the malware operates as close to real as possible.

JIT Happens: Exposing LuaJIT Malware in the Wild
SBT Content Engineers 28/02/2025

JIT Happens: Exposing LuaJIT Malware in the Wild

This blog series will explore Security Blue Team's adventure into the reverse engineering of a novel SmartLoader malware variant. This malware was discovered during our research into Belsen Group's high-profile FortiGate leak. This leak was advertised as containing a list of affected companies with associated configuration data from their FortiGate...

Black Basta: Unmasking the Ransomware Gang Through Leaked Chat Logs
Luis Suastegui 21/02/2025

Black Basta: Unmasking the Ransomware Gang Through Leaked Chat Logs

The Black Basta ransomware gang recently made headlines for all the wrong reasons when someone using the online handle “ExploitWhispers” shared internal chat logs of the group with the public — close to a year’s worth of messages in a JSON file.