Penetration Testing
Resources Blog

Penetration Testing

Keep up to date with the latest offensive security news, knowledge, and resources.
How to Prepare for Penetration Testing

How to Prepare for Penetration Testing

Preparing for a penetration test? This checklist will inform you on what to expect and what steps you should take to get the most out of your organization’s upcoming pentest.
How Combined AI and Manual Testing Discovered Two Zero Days

How Combined AI and Manual Testing Discovered Two Zero Days

Apex, one of Sprocket's AI agents, found a session injection flaw in minutes. Human testers chained it into two zero-days.
Top 10 CPTaaS Companies in 2026: The Definitive Guide

Top 10 CPTaaS Companies in 2026: The Definitive Guide

Explore the top 10 CPTaaS companies in 2026. Compare continuous penetration testing platforms, PTaaS providers, ASM capabilities, compliance support, and human-led testing models.
Hook, Line, and Server

Hook, Line, and Server

MFA doesn't stop session cookie replay. Endpoint detection doesn't catch fileless malware without behavioral analysis. Here's the full post-phishing kill chain and what actually stops it.
Cracking NTLMv1 SSP With Rainbow Tables

Cracking NTLMv1 SSP With Rainbow Tables

Step-by-step walkthrough of cracking NTLMv1-SSP hashes with rainbow tables, including how to coerce auth, disable ESS, recover NT hashes, and remediate.
Vulnerability Hunting a Retired App Part 2 - From File Write to SYSTEM

Vulnerability Hunting a Retired App Part 2 - From File Write to SYSTEM

Discover how an unsanitized file write endpoint in Omega Enterprise Gateway escalates to SYSTEM-level code execution and what dead code reveals about real-world security bugs.
1 2 3 4 5