Skip to content
SYNTHESISCYBER

Records

Tamper-Evident Incident Log

Cryptographically timestamped incident tracking log. Encrypt incident timelines, actor attributions, and impact assessments with JSON/PDF export.

Incident Response & Audit Register

Document security breaches, triage timelines, and containment verification

Executive Mailbox Forwarding Rule Anomaly
High
Compromised Account
Status: Contained

Logged: 2026-03-16Scope: Exchange Online / Azure Entra ID

Inbound mailbox rule created redirecting all invoices to external protonmail address.

Remediation: Revoked session tokens, forced MFA reset, deleted malicious transport rule, notified finance team.
Adversary Port Scanning on Secondary Edge Gateway
Medium
Suspicious Activity
Status: Remediated

Logged: 2026-03-12Scope: FortiGate Perimeter Firewall WAN interface

Automated reconnaissance targeting port 8443 and 443 from bulletproof VPS ASN.

Remediation: Geoblocked offending IP subnet, restricted management portal access strictly to dedicated internal VPN.
How it works

This module is guided content rather than a processing tool. It walks you through steps on the systems you already use, and nothing about your setup is sent to us.

What this cannot do

No single tool makes an account or a device secure. This module reduces one specific category of risk. It does not detect malware already running on your device, it cannot recover data you lose the key to, and it does not replace keeping software updated and using unique credentials everywhere.

If your device itself is compromised, anything you type into any tool — including this one — can be observed. Treat device hygiene as the foundation everything else sits on.