About
I’m Jacob. Online, I go by 1nvictu5. I’m a cybersecurity analyst, and depending on the day, either a red teamer breaking things or a blue teamer explaining why they broke.
I got into this because I like taking things apart to see how they work, and I never really grew out of it. That’s most of the job anyway: be curious enough to ask “what happens if I do this,” and stubborn enough to keep asking until you get an answer.
My time splits between offense and defense. On the red side, that’s testing and breaking: figuring out how an attacker would actually get in, not just running a scanner and calling it done. On the blue side, it’s SOC and MSSP work: using QRadar, Splunk, SentinelOne, and Graylog to investigate, apply critical thinking, and spot the patterns that matter, all in service of keeping the enterprise environment protected. If it runs on Linux or Windows, I’ve probably broken it, fixed it, or both, usually in that order.
The mentality matters more than the tools. Anyone can learn a SIEM query language or run a scanner. What actually separates people who are good at this from people who just hold the job title is whether they want to know why something works, and whether they’ll sit with a problem that doesn’t make sense yet instead of giving up on it. That’s what this site is really about: not the tools, the way of thinking that gets you to use them well.
This site is where I write it all up: labs, walkthroughs, notes on things I’ve learned the hard way, from Hack The Box, TryHackMe, RangeForce, LetsDefend, Echo CTF, and Blue Team Labs Online, plus home lab builds and general SOC/MSSP notes. Mostly for me. If it helps you too, that’s a bonus.