GIVEAWAY
Win the ultimate AI security check with a free pentest giveaway!
GIVEAWAY
Win the ultimate AI security check with a free pentest giveaway!

Blog

Thoughts, perspectives, and industry commentary from the Cobalt team.

A Pentester’s Guide to Cross-Site Request Forgery (CSRF)

Cross-Site Request Forgery (CSRF) is an attack that forces an end user to execute unwanted actions on a web application...
Nov 13, 2020
Est Read Time: 4 min

Lessons on Burnout: How to Protect Yourself & Your Team

Burnout can have 4 to 12 stages. According to Help Guide, there are even red flags that one can look out for. These red...
Nov 12, 2020
Est Read Time: 4 min

Cobalt Platform Deep Dive: New and Improved Navigation

What is new and improved navigation? There are a few core principles that web-based applications, especially SaaS or...
Nov 1, 2020
Est Read Time: 2 min

A Pentester’s Guide to Cross-Site Scripting (XSS)

Examine a common security vulnerability, Cross-Site Scripting (XSS).
Oct 30, 2020
Est Read Time: 8 min

Pentester Spotlight: Nikhil Srivastava

Nikhil Srivastava has been a top-performing pentester on the Cobalt platform for the past five years. He is an active...
Oct 28, 2020
Est Read Time: 6 min

Changelog — October 2020

Check out what we’ve been working on over the past month:
Oct 26, 2020
Est Read Time: 2 min

Design Sprints in Distributed Teams: How We Do it at Cobalt

A design sprint is a powerful tool for teams to work towards a shared vision to design and test features quickly....
Oct 25, 2020
Est Read Time: 4 min

The Cobalt Core: A pentester community built on diversity, collaboration, and learning

The Cobalt Core is our highly-experienced, geographically-diverse community of pentesters. The community consists of...
Oct 21, 2020
Est Read Time: 3 min

A Pentester’s Guide to HTTP Request Smuggling

What is HTTP Request Smuggling? HTTP request smuggling is an attack technique that is conducted by interfering with the...
Oct 15, 2020
Est Read Time: 9 min

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.