CYBLACK — Cybersecurity Intern (Threat Intelligence, Phishing IR, CTI reporting)
Completed a cybersecurity internship focused on threat intelligence workflows that produced actionable investigation artifacts from multiple sources. Your work involved analyzing phishing-related telemetry and mapping findings to structured attacker TTPs. This functionally constitutes supervised labeling of incident evidence and IOCs for downstream detection and response use. • Investigated phishing campaigns by analyzing indicators using VirusTotal, URLScan.io, and email header forensics. • Traced malware delivery paths to C2 infrastructure (NjRAT) and produced consolidated findings. • Correlated Entra ID sign-in logs to confirm credential compromise and associated exfiltration events across incidents. • Mapped adversary TTPs to MITRE ATT&CK and produced CTI reports with IOCs and Sentinel detection recommendations.