Cyber Warfare Academy

Doctrine, operationalised.

Field studies that translate proven military strategy into the defensive and offensive moves you drill inside the range.

Operations

Mission Command: Auftragstaktik and the Modern SOC

Why a SOC that waits on an escalation chain loses to an attacker moving at machine speed — and how leading by intent fixes it.

Read
Incident response

The Culminating Point: Clausewitz and Ransomware Dwell Time

The defender's real window is the quiet dwell time before encryption — where a committed, overextended attacker is at their most detectable.

Read
Supply chain

The Trojan Horse: Ancient Deception and the Modern Software Supply Chain

Why the most dangerous attacks aren't forced through the perimeter — they're invited past it, from Troy to SolarWinds and XZ Utils.

Read
Threat intelligence

Maskirovka: Soviet Deception Doctrine and Living-off-the-Land Intrusions

Why the hardest intrusions look exactly like legitimate admin work, and how detection has to shift from signature to behaviour.

Read
Strategy

Defeat in Detail: Napoleonic Concentration Applied to DDoS Mitigation

Why distributing inbound flood traffic across isolated scrubbing centres beats meeting the whole volume at one interface.

Read
Incident response

The OODA Loop in Ransomware Incident Response

Boyd's Observe, Orient, Decide, Act cycle as a model for cutting response time while a payload is still spreading.

Read
Architecture

Vauban's Fortress Geometry in Zero-Trust Architecture

Reading star-fort design as a blueprint for micro-segmentation and lateral-movement control across multi-cloud.

Read