>_ Cybersecurity Analyst

Sergio Belmonte Morales

Protecting the Digital World

SOC · Detection Engineering · Microsoft Sentinel · KQL · eCPPT

I don't claim it — I build it. Security tools, detection systems and interactive labs that show how attacks are detected, investigated and contained.

👔 Recruiter? 60-second view →

Free tools, right in your browser

Five families, 66 tools. The ones handling your data —emails, logs, passwords— run entirely in your browser: nothing is uploaded anywhere.

🛠️ See all 66 tools →

Can Europe's largest listed companies be spoofed by email?

47 of 226 have no DMARC policy preventing the domain of their corporate website from being used to send forged email. In the IBEX 35, 11 of 35. Monthly public DNS data, an open methodology and a per-company lookup.

📊 See the observatory → IBEX 35 report
Live intel

📡 Threat Radar

The most dangerous CVEs right now: active exploitation (KEV), exploit probability (EPSS) and severity (CVSS), updated daily.

CVE-2026-85706 · exploited CVE-2026-20079 · exploited CVE-2026-10520 · exploited
Open the radar → or get it every Monday by email
40on radar
16exploited
14h agoupdated
🚨 The Shift #14 ·

Can you close today's shift?

Every day, a fresh incident from The Shift's engine —the same for everyone—. Investigate the artifacts, decode the powershell -enc, rebuild the kill chain and submit your verdict.

Start today's shift →

Previous shifts, your streak and how to share your result

Latest articles

Technical notes from an analyst: detection, hardening and response.

See the whole blog →

What I'm building

Two products born from the same idea as this site: measure instead of assume.

Sergio Belmonte Morales

Sergio Belmonte Morales

Cybersecurity Analyst (SOC · Azure Sentinel/KQL · eCPPT). This platform is my lab — I built every tool on it myself.