Continuous testing, continuous security
Offensive SecurityRed teamPentestingVulnerability ManagementCybersec
July 29, 2022
Cybersecurity as a constant race, in which attackers and defenders are always trying to innovate and adapt to new situations. When systems change, attackers find new ways to break them. We see attackers becoming much more agile, intrusive and relentless while we build better and stronger defenses. Our goal is to be one step ahead. %
Securing open source software (Part 2)
Open SourcePentestingCybersecWhitepaper
July 19, 2022
Open-source software increases its presence in data centers, consumer devices, and applications; also, its community continues to grow. Despite the code being available, memory safety issues persist in popular software. Our research team started a new quest to find and report vulnerabilities in the open-source projects we use every day. This is the second part of that job, where they share with us the strategy they used to find these bugs: coverage guided fuzzing.
Pentesting toolkit: all you need to know
Offensive SecurityPentestingVulnerability Management
July 17, 2022
Pentesters use a comprehensive and complete toolkit to expose different platforms and evaluate the security of an IT infrastructure. They safely try to exploit vulnerabilities and are experts at reporting failures, data leakage, or other vulnerabilities.
In this post, we present these tools and the several ways they can be applied.