Jonathan Matkowsky

Jonathan Matkowsky

Threat-intel-backed investigation and domain takeover proceedings

Decades of experience spanning internationally recognized law firms, in-house legal teams, and elite cyber threat-intelligence teams.

I bring that experience together to investigate and disrupt malicious infrastructure, use legal process to pursue attribution, and where appropriate, make criminal referrals aimed at stopping threat actors from targeting or retargeting your organization.

Let’s explore together what makes practical sense for your organization.

What makes a cybercrime or criminal referral useful to law enforcement?

A useful referral is organized around verifiable evidence rather than conclusions alone. It should make clear what happened, when it happened, what systems or people were targeted, what response actions were taken, and which technical indicators or infrastructure are tied to the activity.

Depending on the incident, useful material can include domains and URLs, IP addresses and ports, logs, timestamps with time zones, phishing or fraud communications, indicators of compromise, suspected entry vectors, affected assets, preserved registration or DNS evidence, financial-loss information, and a concise explanation of how the evidence connects.

Federal cyber-incident guidance emphasizes that reports can be made before every fact is known and that providing available technical and impact information can accelerate assistance. Jonathan’s investigative model is therefore to preserve provenance, distinguish fact from inference, and organize the record so that a later referral does not require reconstructing the case from scattered screenshots and alerts.

Sources: FBI — Cyber · CISA — #StopRansomware Guide

AI can make mistakes. By using this site, you hereby agree to the Terms and Privacy Notice.