In a world where critical infrastructure can be disrupted with a single line of code, staying ready is not an option, it’s a necessity.
I had the privilege of participating in Locked Shields 2025, the world’s largest live-fire cyber defence exercise, organized by the NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE).
As part of Blue Team 13 (an international team formed by experts from Italy, Slovenia, and the Colorado National Guard, USA), I joined the forensics unit, where I contributed to the post-mortem analysis of a compromised ICS system for wastewater treatment, and investigated a mobile device infected during the attack, helping identify the techniques and vectors used.
I’m incredibly proud to share that our team placed third overall, a testament to the strength of collaboration across borders and disciplines.
I’m deeply grateful to Danilo Caivano, Vita Santa Barletta, and Christian Catalano: this opportunity wouldn’t have been possible without their support. It was an honor to share this journey with Vincenzo Turturro and Davide Pio Posa, and I appreciated the constant support from Vincenzo Cantatore. Proud to represent Mntcrl Lab, alongside the Department of Informatics (DIB) and the Università degli Studi di Bari, where it all began.
Special thanks to our team leads Ten. Anna Auriemma and Damjan Maticic, and to the Slovenian unit for their professionalism and team spirit. Sincere thanks to Gen. Div. Sandro Sanasi (Ministero della Difesa / C.O.R.) for making my participation possible, and to the representatives of the Italian armed forces, the Agenzia per la Cybersicurezza Nazionale, and Banca d’Italia for their support.
Locked Shields was a unique professional and educational experience, letting me sharpen advanced digital forensics skills while collaborating in a high-stakes international environment.
Originally posted on LinkedIn.