Who I am

I'm Nicholai Imbong, a security researcher and engineer focused on threat intelligence, exposure management, detection engineering, and the systems that connect them.

I develop this work through AuvaLabs. My primary projects are ThreatWatch and RedBlue.

How the work fits together

AuvaLabs

AuvaLabs is my independent security research and engineering lab. It is the project umbrella under which I develop and operate ThreatWatch and RedBlue. This site is my personal view of the work and the lessons behind it.

ThreatWatch

The intelligence layer: assessing public threat information, preserving evidence, and turning reporting into material analysts can evaluate and use.

RedBlue

The exposure layer: discovering authorised internet-facing assets, running bounded checks, retaining evidence, and tracking remediation.

Core expertise

Threat intelligence, security operations, external attack-surface management, OSINT, and detection engineering. I work across research, product engineering, deployment, and operational validation.

Research

The research publication examines specific problems from ThreatWatch and RedBlue. Each article separates method, evidence, findings, and limitations, with direct links to the material used.

Connect