Sprocket Security | Cybersecurity Blog
Resources Blog

Blog

Keep up to date with the latest offensive security news, knowledge, and resources.
How to Prepare for Penetration Testing

How to Prepare for Penetration Testing

Preparing for a penetration test? This checklist will inform you on what to expect and what steps you should take to get the most out of your organization’s upcoming pentest.
How Combined AI and Manual Testing Discovered Two Zero Days

How Combined AI and Manual Testing Discovered Two Zero Days

Apex, one of Sprocket's AI agents, found a session injection flaw in minutes. Human testers chained it into two zero-days.
Obtaining AS-REP Hashes Through ARP Poisoning

Obtaining AS-REP Hashes Through ARP Poisoning

How ASRepCatcher uses ARP poisoning to obtain crackable AS-REP hashes from any authenticating user, even when Kerberos preauthentication is enabled.
Can We Beat the Adversary, or Am I Willing to Accept the Risk?

Can We Beat the Adversary, or Am I Willing to Accept the Risk?

Most security programs detect breaches. Fewer can prove they won't happen. Learn the offensive security framework that turns "are we secure?" into an answerable question.
Security Budget Downturn

Security Budget Downturn

Budget cuts don't reduce security risk. They relocate it. Here's the breach math CFOs need to see before the spreadsheet wins the argument.
The Human Touch in the Era of AI: Why Pentesting Still Needs a Human in the Loop

The Human Touch in the Era of AI: Why Pentesting Still Needs a Human in the Loop

AI accelerates pentesting but human judgement close the gap. See how two real engagements turned quiet banners and a single timestamp into critical findings.
1 2 3 4 5