——

Independent security journal

Security mistakes happen.
Learn. Test. Fix.

Practical cybersecurity research and response playbooks for the people who keep real systems running — clear, useful, and free of hype.

~/notmyfault/manifesto.txt

$ cat principles

01verify the source

02explain the risk

03give the next step

// no fear-driven marketing

Latest articlesOrder: publish date ↓

Latest security research

Practical, source-backed, and reviewed for operational relevance.

Guide

hardening20 min read

Windows Hardening for Small Business: A Practical Guide That Actually Works

A practical Windows hardening guide for small businesses. Secure local administrators, Defender, BitLocker, RDP, firewall, LAPS, ASR rules, Office macros, updates and backups without building an enterprise security department.

WindowsWindows 11hardening
HARDENING
Critical

vulnerabilities17 min read

CVE-2026-69730: The Critical Windows DNS Vulnerability Every Admin Should Patch Now

CVE-2026-69730 is a critical Windows DNS Server remote code execution vulnerability rated CVSS 9.8. Learn what is affected, why domain controllers are at risk, how to check your servers, and why September's Windows updates also caused RDS problems.

CVE-2026-69730Windows ServerDNS
VULNERABILITIES
Guide

tools31 min read

cURL — The Tool Every Administrator Needs

A practical cURL guide for system administrators. Test APIs, DNS, HTTPS, certificates, authentication, proxies, redirects, webhooks, downloads, performance and network connectivity directly from the command line.

curlsysadminLinux
TOOLS
Browse all 90 articles

Written to help you act.

Corrections, evidence and useful disagreement are welcome. Contact the right desk →

01

Sources, not rumours

Vendor documentation, CVEs, and primary sources are shown with the article.

02

Visible review dates

You can see when the information was last checked and what changed.

03

Clear severity

Priority is visible before you open the article, with context for the rating.