Jonathan Matkowsky

Jonathan Matkowsky

Threat-intel-backed investigation and domain takeover proceedings

Decades of experience spanning internationally recognized law firms, in-house legal teams, and elite cyber threat-intelligence teams.

I bring that experience together to investigate and disrupt malicious infrastructure, use legal process to pursue attribution, and where appropriate, make criminal referrals aimed at stopping threat actors from targeting or retargeting your organization.

Let’s explore together what makes practical sense for your organization.

How do you develop technical evidence that can support enforcement or legal action?

Evidence development starts with provenance. Preserve what was observed, where it came from, when it was collected, and the original artifacts where practical. Keep verified facts separate from analytical inferences so later reviewers can understand both the evidence and the reasoning.

The analysis can then correlate independent signals such as DNS and registration history, hosting and mail infrastructure, redirects, templates and page resources, analytics identifiers, timing, reused contact artifacts, and public records. A conclusion based on several independent relationships is generally more defensible than one based on a single shared service or indicator.

The final evidentiary package should be shaped for the decision-maker that may act on it. A registrar, UDRP panel, litigation team, provider, or law-enforcement agency may need different facts and levels of explanation. Jonathan’s role can include translating technical findings into a documented record that security and legal teams can evaluate for the appropriate next step.

AI can make mistakes.

By submitting a question to the AI, you thereby agree to the Terms and Privacy Notice.