← All projects

SECURITY OPERATIONS · INVESTIGATION & DETECTION

Email Security
& Threat Hunting

Investigated phishing and spoofing incidents, validated threats with DNS analysis and sandbox environments, and wrote targeted rules and Regex detections to identify malicious patterns.

Phishing analysisDNS analysisSandbox testingRegexDetection rules
Contributions, impact & lessons

Contributions. Analyzed sending patterns and targeted high-volume spam campaigns to block repeat attempts before messages reached inboxes.

Impact. Improved malicious-email detection, reduced employee exposure to malicious mass emails, and strengthened enterprise email security.

What I learned. How attackers use spoofing and phishing, how real-world incident investigation works, and why layered security controls matter. Sending patterns help reveal campaigns beyond individual messages.