WEBINAR
Compliant vs. Secure: A CISO and CEO Discuss How to Manage Real-World Risk
WEBINAR
Compliant vs. Secure: A CISO and CEO Discuss How to Manage Real-World Risk

Blog

Thoughts, perspectives, and industry commentary from the Cobalt team.

Is your wifi connection secure? How attackers take advantage of public WIFI

September 6, 2022
Est Read Time: 6 min
Do you connect to public wifi networks when you are out? You might be putting yourself and your data at risk. Core Pentester Orhan Yildirim shares how attackers take advantage of these public networks.
Cobalt Core Pentester Guides

Cobalt Pentest Case Study: OAuth Redirect to Account Takeover

August 31, 2022
Est Read Time: 3 min
Cobalt Core Penteser Edu Garcia recently used an interesting attack method while working on a Cobalt pentest. In this blog, he shares how he did it and provides a solution to the vulnerability.
Pentester Guides

How Low Severity Vulns Become Critical: PACMAN Attack Example

August 30, 2022
Est Read Time: 3 min
Your latest pentest report was just delivered and there are a dozen findings with severity scores ranging from...
Cybersecurity Insights

Pentester Spotlight: Apoorva Jois; Do you want to build or break?

August 26, 2022
Est Read Time: 3 min
Do you want to build or break? That's the million-dollar question that got Core Pentester Apoorva Jois interested in hacking. She walked us through her journey as a Pentester on the younger side of the industry.
Pentester Stories Cobalt Core

File Upload Vulnerabilities

August 24, 2022
Est Read Time: 9 min
This blog aims to demonstrate how applications can be compromised using simple file upload functionalities. Core Pentester Shubham Chaskar will show how to bypass common defense mechanisms and upload web shells.
Cobalt Core Pentester Guides

What Is a Bot?

August 23, 2022
Est Read Time: 6 min
A bot, short for robot, is an autonomous program that performs automatic repetitive tasks or mimics the actions of a...
Cybersecurity Insights

Then & Now: Nastor

August 22, 2022
Est Read Time: 2 min
Nicolas Astor, aka "Nastor," has been a part of Cobalt's Core since December 2020. We sat with him to talk about how he and Cobalt have changed over the year.
Pentester Stories

Inc. Magazine Reveals Annual List of America’s Fastest-Growing Private Companies—the Inc. 5000

August 19, 2022
Est Read Time: 1 min
We are excited to announce that this week, Inc. magazine revealed its annual list of America’s fastest growing private...
Life at Cobalt

Graph Query Language Explained

August 18, 2022
Est Read Time: 9 min
Cobalt Core Pentester Harsh Bothra explains Graph Query Language and how attackers use it. Read his guide to learn how attackers think and take advantage.
Cobalt Core Pentester Guides API Pentesting

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.