Jonathan Matkowsky

Jonathan Matkowsky

Threat-intel-backed investigation and domain takeover proceedings

Decades of experience spanning internationally recognized law firms, in-house legal teams, and elite cyber threat-intelligence teams.

I bring that experience together to investigate and disrupt malicious infrastructure, use legal process to pursue attribution, and where appropriate, make criminal referrals aimed at stopping threat actors from targeting or retargeting your organization.

Let’s explore together what makes practical sense for your organization.

How can legal process help identify the people behind malicious infrastructure?

Technical and public-source investigation can identify relationships among domains, hosting, mail, accounts, infrastructure, and apparent identities, but some of the most probative records may be held by providers and may not be public.

Where legally available and appropriate, counsel can use applicable legal process to seek nonpublic records from relevant entities. Those records can then be compared with the existing technical evidence, potentially confirming or disproving attribution hypotheses, exposing additional infrastructure, or identifying new investigative leads.

Legal process is not a substitute for sound threat intelligence. The stronger model is a feedback loop: technical investigation identifies where additional evidence may exist; lawful process seeks that evidence where appropriate; and the resulting information is fed back into the infrastructure analysis and any administrative, civil, or law-enforcement action.

AI can make mistakes. By using this site, you hereby agree to the Terms and Privacy Notice.