PROMO
Limited Time: Get 40% Off a Comprehensive Pentest for AI and LLM Applications
PROMO
Limited Time: Get 40% Off a Comprehensive Pentest for AI and LLM Applications

Blog

Thoughts, perspectives, and industry commentary from the Cobalt team.

Security Touchpoints in the Big Data Lifecycle

February 28, 2023
Est Read Time: 9 min
More and more teams want to access the sensitive data you're managing? Here's a guide on how to keep it secure while enabling the business to innovate.
Cybersecurity Insights

Pentester’s Guide to XPATH Injection

February 27, 2023
Est Read Time: 6 min
XPath is a powerful language used to query and manipulate XML documents. It allows you to extract data, transform XML documents, query large datasets, and modify the structure and content of XML documents. XPath injection attacks occur when an attacker manipulates XPath statements to gain unauthorized access to sensitive data.
Cobalt Core Pentester Guides

Back to Basics: How to Build Resilient Blue Teams

February 24, 2023
Est Read Time: 11 min
A comprehensive guide on how security teams can keep up with organizational change.
Cybersecurity Insights

Pentester Spotlight: Goonjeta Malhotra

February 23, 2023
Est Read Time: 2 min
“Pentesting allowed me to challenge my skills and knowledge, to think of creative ways to exploit and identify vulnerabilities, and always to find ways to improve security posture." That's what Core Pentester Goonjeta Malhotra said about her journey into pentesting. Learn more about Goonjeta in here Pentester Spotlight.
Pentester Stories Cobalt Core

Introduction to Chrome Browser Extension Security Testing

February 20, 2023
Est Read Time: 13 min
Browser extensions are software components that enhance the functionality of existing programs, specifically web browsers by modifying the user interface and interaction with websites, allowing users to customize their browsing experience. However, they also pose a security risk as they interact directly with untrusted web content and have vulnerabilities that malicious website operators and network attackers can exploit. This blog highlights the importance of Chrome browser extension security, permissions, testing for vulnerabilities, real-time attack scenarios, and mitigation methods.
Cobalt Core Pentester Guides

Getting Started in Pentesting

February 16, 2023
Est Read Time: 4 min
Interested in pentesting but don't know where to start? Our Core Pentesters have you covered. Read to hear their tips and advice on how to get started.
Cobalt Core

Why is Cybersecurity Important in the Fintech Industry?

February 14, 2023
Est Read Time: 7 min
Learn about the importance of cybersecurity for fintech companies with insights from the cybersecurity experts at Cobalt.
Modernizing Pentesting

Pentests in Risk Assessments: When, Why, How

February 14, 2023
Est Read Time: 3 min
Find your vulnerabilities, determine the risk, and outline remediation — pentests can do all of this in support of your risk assessments.
Cybersecurity Insights

Introduction to LDAP Injection Attack

February 13, 2023
Est Read Time: 7 min
LDAP (Lightweight Directory Access Protocol) is a protocol for accessing and managing directory services over a network. LDAP injection is a type of attack that targets vulnerabilities in implementations of the LDAP. Core Pentester Harsh Bothra shows us how an attacker does this injection and how to protect against it.
Cobalt Core Pentester Guides

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.