🔥 This Is Fine | The State of Pen Testing
"If you talk to a dozen pen testers and ask them what a pen test is, you're going to get a dozen different answers."
Penetration testing has long been a cornerstone of enterprise security — but the landscape continues to evolve.
In this episode of the Hunter Strategy podcast, AJ King (@ScrumWhat), Jake Williams (@MalwareJake), and Joshua Marpet (@quadling - Sr. Product Security Consultant at Finite State, Faculty Member at IANS) discuss how penetration testing fits into modern enterprise risk management strategies.
From compliance requirements to real-world security validation, the conversation explores how organizations can approach testing with both technical rigor and business context.
Good security isn’t theoretical.
It’s tested.
Get the full episode ➡️ https://t.co/At0HqvXnMg
#CyberSecurity #PenTesting #SecurityTesting #EnterpriseSecurity
CVE-2020-2033, CVE-2020-2021, CVE-2020-2050, CVE-2026-0257, and now CVE-2026-0265
Authentication bypass, as in direct access to your internal networks over the Internet
This VPN architecture should be dead, get it off the Internet, it's a time bomb waiting to happen
Entra App Proxy continues to be one of the biggest hidden gems of Entra P1
For over a decade, we've been able to stop exposing risky apps to the Internet by routing through agents with outbound connections to Azure
I don't care what vendor you use, just get it off the Internet
A good primer on reasoning for IaC for all the things, even outside of infrastructure
The one big caveat is, of course, the learning curve involved and the resulting increase in level of skill required for new hires
@HackingDave@brandonajames I mean astronomers estimate that there are over 100 Billion planets in the Milky Way galaxy alone, and there are billions of galaxies.
Of course there are other forms of intelligent life out there. For us to think otherwise is just pure arrogance.
In 48 hours, we’ll show you how to go from “Be Afraid” to “Actionable Hunt”!
Don’t miss this special webinar with @MalwareJake & Ibrahim Ahmed as they share how to turn scary headlines into focused action.
📅 Aug 14 – 2:30 PM ET
Save your spot: https://t.co/b4zZoNESEV
When you bring an idea to someone, and the only thing they can do is talk about why it’s exhausting, hard, or can’t do it…just know if you’re that kind of person…you’re the worst.
There is a difference between poking holes in an approach for someone to help vs. criticize.
@HackingLZ@dafr0g_@therealshodan@HackingDave All these people that have never really had to actually deliver repeatable services talking about how to use AI to deliver services…
🚨 ONLY 3 DAYS LEFT TO REGISTER! 🚨
Threat headlines are constant. Your hunts should be consistent.
Join @MalwareJake & Ibrahim Ahmed as they reveal the exact process to turn vague alerts into actionable hunts.
📅 Aug 14 – 2:30 PM ET
Secure your spot now: https://t.co/YQPjQuiDO6
Man there is zero question in my mind that Miami drivers are by far and away the worst drivers I’ve ever seen. Almost every single morning there is some dumbass wreck on I-95.
OK schools chief Ryan Walters issues a statement tonight where he claims that the board members who said they observed porn playing on his screen during a meeting are lying and they should resign in disgrace.
Someone needs to go tell @Apple that their speech recognition has gone into the garbage can. It’s gotten to the point for me where it’s almost unusable.
Anyone else notice this trend?
I mainly use it for speech to text.
@bettersafetynet@TimMedin LOL. I live in Florida now - I will say that there are times where I am outside for a bit and the 30+ degree swing from outside to inside leaves you feeling chilly for a bit, but that quickly passes. Give me all the AC
@realfrugalmogul@AdultingIsEasy Just part of life. Being afraid of the inevitable is just giving yourself anxiety. Best way to not be afraid of death…is to live life everyday to its fullest. Regret nothing. Love deep.