Research notebook

Evidence, methods, and defensive work.

Malware investigations, technical presentations, analyst training, and graduate research across reverse engineering, IoT networks, and security operations. Alongside these records, methodology notes document analysis that another investigator can use.

Presentation · IoT & Network Security

The Big Break Era: Industry 4.0

A technical presentation connecting Industry 4.0, wireless communications, 5G, and the growing security exposure of connected devices.

With A. Macaraeg

March 2020 · 3 min read

Graduate Research · Security Operations

Enhancing Edu-Cloud Security with SIEM and XDR

Master’s research on evaluating Edu-Cloud security and integrating Wazuh monitoring, detection, and response into the NearCloud environment.

November 2023 · 3 min read

Presentation · IoT & Network Security

When Interconnectivity Invites Intruders

A co-authored IoT threat presentation examining exposed services, cross-platform malware, Xbash, propagation, and defensive implications.

Co-authored with N. A. Llimos

August 2019 · 4 min read

Training · Malware Analysis

INTERPOL Malware Analysis Training

Instructor-led malware analysis connecting suspicious process behavior, dropped components, persistence, and a defensible investigative workflow.

With M. Villanueva

February 1–5, 2021 · 3 min read

Presentation · IoT & Network Security

IoT: A Cybercriminal’s Playground

An IoT security presentation examining connected-device exposure, contemporary attacks, and practical measures for reducing infrastructure risk.

With J. Triunfante

February 2019 · 3 min read

Presentation · IoT & Network Security

IoT Threat Landscape in Industry 4.0

Research presented on IoT malware evolution, attack types, and mitigation across smart appliances, connected vehicles, and networked infrastructure.

January 2020 · 4 min read

Training · Malware Analysis

Introduction to Malware Threats and Blackbox Analysis

A contained lab resource for understanding malware through observable behavior, with a public explanation of baselines, artifacts, and investigative limits.

December 26, 2019 · 3 min read

Presentation · IoT & Network Security

Mess on Mesh Connections

A malware and networking presentation tracing propagation techniques from early worms to IoT botnets, exposed services, and router compromise.

With N. A. Llimos

March 2019 · 4 min read

Presentation · Reverse Engineering

Decoding the Secrets of Pizza and Malware

An introductory reverse-engineering presentation using the layers of a pizza to explain how analysts uncover hidden program behavior.

May 2023 · 4 min read

Presentation · Threat Research

Ransomware Down the Road

A historical threat-research presentation on ransomware evolution, malicious cryptocurrency mining, and the shift toward targeted attacks.

With C. M. Pascual

August 2018 · 3 min read

Methodology · Reverse Engineering

Recovering Behavior from a Compiled Binary

Follow a compiled program from header checks and a checksum loop to byte order and a threshold decision, then test the recovered explanation.

· 5 min read

Investigation · Malware Analysis

StealBit Analysis and LockBit Associations

A Windows malware investigation combining memory evidence, packet captures, reverse engineering, and YARA-based detection ideas.

July 2, 2024 · 4 min read

Training · Reverse Engineering

Reverse Engineering and Malware Analysis Training

Technical instruction for Threat Experts University covering x86 reverse engineering, script analysis, and practical malware cleanup activities.

During Trend Micro tenure, November 2017–April 2021 · 4 min read

Presentation · IoT & Network Security

Threats in the Weave of IoT

A presentation on wireless threats and the security implications of growing machine-to-machine communication, smart homes, and interconnected devices.

September 2018 · 3 min read

Methodology · Reverse Engineering

Reverse Engineering Obfuscated JavaScript

A workflow for profiling obfuscated JavaScript, simplifying AST structure, recovering behavior, and converting findings into useful defensive output.

· 6 min read

Methodology · Malware Analysis

Malware Analysis Walkthroughs

A structured workflow for moving from suspicious sample intake to evidence, behavioral conclusions, and defensive output.

· 4 min read