Skip to main content
Hunter4Hunter

Evidence Lab

Security Cases

Practical investigations that show what was tested, how the attack works, what defenders can observe, and where the evidence still needs improvement. Research candidates identify the next Cases awaiting authorized reproduction.

Case workflow

  1. 01

    Reproduce

    Run the attack in an authorized environment.

  2. 02

    Detect

    Identify telemetry and portable detections.

  3. 03

    Fix

    Apply a patch or defensive control.

  4. 04

    Verify

    Prove the control stops the documented attack.

All cases

5cases published