Our Blog

Original security research, vulnerability disclosures, and technical deep-dives from our team of penetration testers.

Research

Make Deployment Systems Tier 0 Again: Pentesting PDQ Deploy and Inventory
Deep dive into penetration testing PDQ Deploy and Inventory — examining why deployment systems are critical Tier 0 assets that require dedicated security attention.
By Toby Jackson
Read article

Fare Play: See the Movie for Free by Kerberoasting Service Tickets Through an AS-REPRoastable User
Kerberos ticket abuse remains a significant security issue for organizations using Active Directory. Exploring real-world Kerberoasting attack chains through AS-REP roastable accounts.
By Thomas Fieber
Read article

All Posts

Research

Make Deployment Systems Tier 0 Again: Pentesting PDQ Deploy and Inventory
Read article

Active Directory

Fare Play: See the Movie for Free by Kerberoasting Service Tickets Through an AS-REPRoastable User
Read article

Exploitation

Browser Exploitation Basics — Explaining the addrof and fakeobj Primitives
Read article

Spot the Bug Challenge 2
Read article

Spot the Bug Challenge 1
Read article

Web Security

BurpSuite's New AI Features: Are they as AI-mazing as they sound!?
Read article

Exploitation

A Mere Mortal's Introduction to JIT Vulnerabilities in JavaScript Engines
Read article

Research

Harnessing Blockchain for Secure and Transparent Elections
Read article

Cloud

Enumerating Access for AWS Temporary Credentials
Read article

A Practical Guide to Confidential Computing
Read article

Web Security

Prompt Injection: Stopping Attacks at the Source
Read article

Active Directory

Understanding Active Directory Certificate Services: A Focus on ESC1 and ESC8
Read article

Web Security

A Quick Introduction to postMessage XSS
Read article

Exploitation

Firefox Sandbox Vulnerability Research: Introduction and Environment Setup
Read article

Research

Preparing for a Technical Interview as a Penetration Tester
Read article

Web Security

A Comprehensive Guide To HTTP Security Headers
Read article

Web Security

BurpSuite Certified Practitioner Exam Review
Read article

Web Security

Securing Session Cookies
Read article

Research

Making the most out of your penetration test
Read article

Exploitation

Writing an exploit for CVE-2021-4034
Read article

Web Security

Did default SameSite:Lax put the nail in the coffin for CSRF? Mostly, but not always!
Read article

Exploitation

Writing Basic Offensive Tooling in Nim
Read article

Research

A Brief Introduction to Semgrep (Part 1)
Read article

A Brief Introduction to Semgrep (Part 2)
Read article

Research

Preparing for an Application Penetration Test
Read article

Web Security

Passwords are dead? Long live WebAuthn!
Read article

Exploitation

Introduction to Triaging Fuzzer-Generated Crashes
Read article

Web Security

Scanning At Scale: Burp Suite Enterprise Edition
Read article

The Top 8 Burp Suite Extensions That I Use to Hack Web Sites
Read article

Exploitation

Using Iodine for DNS Tunneling C2 to Bypass Egress Filtering
Read article

Basic ROP Techniques and Tricks
Read article

Exploitation

CVE-2019-7629: RCE in an Open Source MUD Client
Read article

Research

Customer Survey Results
Read article

Web Security

Bypassing WAFs with JSON Unicode Escape Sequences
Read article

Web Security

JWT Hacking 101
Read article

Research

HoneyPi – An easy honeypot for a Raspberry Pi
Read article

Exploitation

EXE Hijacking in Git Bash for Windows
Read article

What is DLL Hijacking?
Read article

Web Security

Referer Redirection and Its Inconspicuous Danger
Read article

Cross-Site Request Forgery Cheat Sheet
Read article

Research

Can't Hack a Hacker: Reverse Engineering a Discovered ATM Skimmer
Read article

Exploitation

Shells in Your Serial – Exploiting Java Deserialization on JBoss
Read article

Practical Guide to exploiting the unquoted service path vulnerability in Windows
Read article

Web Security

Browser URL Encoding Decoding and XSS
Read article

Exploiting .NET Padding Oracle Attack MS10-070 (CVE-2010-3332) and Bypassing Microsoft's Workaround
Read article

Research

TrustFoundry at TriKC 0x01
Read article

TrustFoundry at BlackHat USA 2014
Read article

Building a Presentation Recording Setup
Read article

Is Security Worth it?
Read article