About
InnerShell Labs is an independent security research space authored by Diego Concha, focused on understanding how cyber threats operate, how systems fail, and how technical weaknesses become business risk.
My work sits at the intersection of offensive security, Cyber Threat Intelligence, malware analysis, security engineering, and corporate cyber risk. Since 2020, I have worked across offensive security engagements, threat research, incident-driven analysis, and risk-oriented security assessments for organizations across different industries.
Over time, my focus has evolved from identifying isolated vulnerabilities to understanding how real systems fail as a whole: through weak trust boundaries, exposed attack paths, adversary behavior, malware operations, identity misuse, poor detection, and security decisions that do not fully account for business impact.
This site reflects that broader view of cybersecurity.
What you’ll find here
The content published in InnerShell Labs focuses on:
- Offensive security and Red Team methodology
- Cyber Threat Intelligence and adversary behavior
- Malware analysis, phishing, ransomware, and malicious infrastructure
- Corporate cyber risk and business impact analysis
- Security engineering and system-level security reviews
- Authentication, authorization, and identity-related security failures
- Attack surface, trust boundaries, and attack path analysis
- Detection, response, and security feedback loops
Rather than focusing only on tools, payloads, or isolated findings, this space explores how security issues emerge from the interaction between systems, adversaries, controls, and organizational decisions.
Approach
The work shared here is guided by a few principles:
- Depth over volume — fewer topics, explored with technical and strategic depth
- Systems thinking over checklists — understanding how components, identities, services, and processes interact
- Threat-informed analysis — using adversary behavior to guide security reviews and risk prioritization
- Risk-driven communication — translating technical findings into business impact, remediation priorities, and security decisions
- Fundamentals over hype — focusing on how systems, threats, and controls actually behave in practice
The goal is not only to describe vulnerabilities, but to understand why they matter, how they can be abused, and what they reveal about the security posture of an organization.
Background
My experience includes offensive security, Red Team activities, Cyber Threat Intelligence, malware analysis, and cybersecurity risk work, supporting organizations in identifying, validating, and prioritizing security risks.
This includes:
- Security assessments of web applications, APIs, infrastructure, and enterprise environments
- Analysis of adversary techniques, real-world attack patterns, and threat actor behavior
- Malware triage and analysis of phishing, ransomware, suspicious artifacts, and malicious infrastructure
- Threat-informed security reviews and attack path analysis
- Risk-based prioritization of technical findings and remediation efforts
- Development of technical and executive-level reports for security, engineering, and leadership audiences
Focus
InnerShell Labs is especially interested in the areas where technical security and organizational risk meet.
That includes questions such as:
- How do attackers transform valid access into business impact?
- How do malware, phishing, and credential theft change the real threat model of an organization?
- How do trust boundaries fail across applications, infrastructure, cloud, and internal services?
- How should offensive findings be prioritized when not every vulnerability carries the same business risk?
- How can Cyber Threat Intelligence become operationally useful instead of remaining a list of indicators?
- How can security reviews help organizations make better engineering and risk decisions?
These questions shape the research, writing, and analysis published here.
Disclaimer
All content reflects independent research and personal technical opinions.
It does not represent any employer, client, or organization.
Links
- GitHub: https://github.com/innershell-labs
- LinkedIn: https://www.linkedin.com/in/diego-concha/