(function(i,s,o,g,r,a,m){ i['GoogleAnalyticsObject']=r; i[r]=i[r]||function(){(i[r].q=i[r].q||[]).push(arguments)}, i[r].l=1*new Date(); a=s.createElement(o),m=s.getElementsByTagName(o)[0]; a.async=1; a.data-privacy-src=g; m.parentNode.insertBefore(a,m) })(window,document,'script','//www.google-analytics.com/analytics.js','ga'); ga('create', 'UA-132428928-1', 'auto'); ga('send', 'pageview');

compsec-direct-media

About CompSec Direct

CompSec Direct is a Cyber Operations firm specialized in Capability Development. ISO 9001:2022, SDVOSB, MBE certified firm of former DOD network operators.

Cyber Range Training on Kleared4

By |2025-07-24T10:33:18-04:00July 24th, 2025|Categories: Cyber, Training|Tags: , , , , |

Our class dates for cyber training have been updated for Kleared4: Tunneling and Tradecraft, Kleared4: Incident Responder Windows, Kleared4: Incident Responder Linux, Kleared4: Incident Management and Kleared4: Container Security. All cybersecurity trainings are live, led instructor, and we are making self-paced versions of these courses with our cyber-range Kleared4. All Kleared4 courses include 3 years of [...]

Comments Off on Cyber Range Training on Kleared4

Intelligence Community (IC) BEC and Phishing leads to a bad day: Why using Kleared4 kicks ass

By |2025-07-18T13:49:34-04:00July 17th, 2025|Categories: Attribution, Breach, Cyber, Defensive Methodology, Disclosure, Hacking, Incident Response, Social Engineering|Tags: , , |

On July 17 2025, we received an email from an IC company. Thing is, we can’t be sure about emails like this since we do Business Development (BD), but none of us knew the person sending the email and the Request For Information or RFI seemed odd. Figure 1: Email with suspicious link: https[:]//siliconoasis.co/connected Our President, [...]

Comments Off on Intelligence Community (IC) BEC and Phishing leads to a bad day: Why using Kleared4 kicks ass

Breach Village Capture the Flag and Hack the Case

By |2025-04-29T20:56:29-04:00April 15th, 2025|Categories: Breach, Creative, Cyber, Defensive Methodology, Demo, Events, Hacking, phishing, Training|Tags: , , , |

CompSec Direct ran Breach Village during a local BSides conference. "We wanted Breach Village to showcase real-problems and not the made up scenarios people see in Capture the Flags events. Realism and modern problems in cyber security are difficult to showcase into a fun learning environment" said Jose Fernandez. Breach Village used our Kleared4 cyber range [...]

Comments Off on Breach Village Capture the Flag and Hack the Case

AI Powered Phishing Rating

By |2025-04-29T14:41:10-04:00March 11th, 2025|Categories: AI, Automation, Containers, Cyber, Defensive Methodology, phishing, Software|Tags: , , , , |

CompSec Direct developed an AI powered phishing rater to determine how impactful a phishing email or text is. We created a simple to use interface powered by a well designed framework to accurately measure phishing communications across multiple industries. Our AI system operates using local large learning models (LLMs) as opposed to online services from GPT [...]

Comments Off on AI Powered Phishing Rating

Kleared4 Edge Fly Away Kits

By |2025-04-29T14:19:36-04:00January 3rd, 2025|Categories: Cyber, Defensive Methodology, Design, Hunting, Incident Response, Pen-testing|Tags: , , |

During pandemic, we could not travel to customer locations and wanted to continue working on providing quality pentests and incident response services. CompSec Direct created small shippable cyber kits packaged inside PPE containers and has continued to improve this concept. "For us it was simple, adapt or close. While other vendors create large field kits, we [...]

Comments Off on Kleared4 Edge Fly Away Kits

Using Containers to Analyze Malware at Scale workshops

By |2025-04-29T13:12:13-04:00August 20th, 2024|Categories: AV Bypass, Containers, Cyber, Defensive Methodology, Events, Hacking, Training|Tags: , , , |

Our president was able to teach over 200 participants at six cyber security focused conferences in an full-day workshop. Participants used Kleared4, our US made and hosted cyber range to analyze malware samples in a safe environment. "The best part about our range is that we provide all users a way to use real-world threats in [...]

Comments Off on Using Containers to Analyze Malware at Scale workshops

Ransomware case study: echoraix

By |2024-08-05T14:49:05-04:00August 5th, 2024|Categories: Attribution, Case Study, Defensive Methodology, Forensic, Reports|Tags: , , |

We are providing our case study on echoraix, a ransomware group that targets network connected storage appliances from QNAP and Synology. Please share this case study with others and contact us for similar case studies, or related protection services. CompSec-Direct-echoraix-report-Apr-6-2024

Comments Off on Ransomware case study: echoraix

Trainings @Kleared4

By |2023-09-01T12:30:51-04:00September 1st, 2023|Categories: Containers, Cyber, Forensic, Incident Response, Training|

We offer comprehensive cyber security training using our Kleared4 cyber-range. Please use the links below to visit @Kleared4 for class information and details. Please contact us for details on performing in-person training, other options and questions using the form below. Course List: @Kleared4 Container Security Course (K4CS) @Kleared4 Tunneling & Tradecraft Course (K4TT) @Kleared4 Incident Management [...]

Comments Off on Trainings @Kleared4

Using containers to analyze malware at scale coming to BSides Nova 2023

By |2023-08-15T07:29:29-04:00August 15th, 2023|Categories: Containers, Cyber, Defensive Methodology, Events, Training, Uncategorized|Tags: , , , , |

🕵‍Our President, Jose Fernandez will run our Using containers to analyze malware at scale (UCTAMAS) workshop at BSidesNoVA on Sep 8, 2023. This is the 4th run of this workshop which takes participant feedback to improve each iteration in technical content and delivery of workshop objectives.👨‍💻 If you are interested in containers, malware analysis and red [...]

Comments Off on Using containers to analyze malware at scale coming to BSides Nova 2023

My CPAP has a recall; let’s open it instead!

By |2023-08-13T12:50:04-04:00August 12th, 2023|Categories: Demo, firmware, Forensic, Hacking, Medical, Videos|Tags: , , , , , , |

"If you or a loved one has ever used a CPAP device..." Our President, Jose Fernandez, gave a medical device presentation at BioHacking Village during DefCon 31. This presentation focused on bringing awareness to privacy related issues related CPAP devices, how to passively identify some CPAP devices and follow on work for exploit related research for [...]

Comments Off on My CPAP has a recall; let’s open it instead!
Go to Top