Case Studies

Real examples of how we defend organisations and respond to serious incidents.

Evidence, not just claims

Cyber Defence works with organisations that cannot afford extended disruption or reputational damage. While confidentiality prevents us from naming most clients, we can share anonymised case studies that demonstrate how our services are used in practice.

Below are a sample of scenarios reflecting real engagements, with identifying details removed.

Case studies

Selected case studies

Healthcare provider – ransomware containment

Containing a ransomware outbreak affecting clinical systems and restoring critical services.

Legal firm – business email compromise & deception

Using deception and SOC365 to detect and respond to a BEC affecting a legal practice.

Maritime operator – vessel OT hardening

Improving security for vessel OT networks, SATCOM, and shore-side operations.

Payment Gateway – PCI Network Compromise

How Cyber Defence uncovered systemic weaknesses beyond PCI-DSS and secured a critical payment environment.

University – Vulnerability Scanning Transformation

How Cyber Defence helped a university eliminate manual scanning bottlenecks and save 140+ hours through automated prioritisation.

Global Research & Media – Physical Security Assessment

How Cyber Defence gained access to a heavily fortified facility using reconnaissance and social engineering.

Financial Services – Exchange Platform Compromise

How Cyber Defence exploited an OAuth2 trust weakness to gain administrator access to a financial commodities exchange application.

OAuth2 Token Compromise via Chrome

How Cyber Defence demonstrated MFA bypass and full Google account takeover using Chrome’s stored OAuth2 refresh token.