Success! Pentest Limited was able to execute an Improper Input Validation against the Samsung Galaxy S23. They earn $50,000 and 5 Master of Pwn points. #Pwn2Own
Using JSON Web Tokens (JWTs) for your application/API's session management?
Richard Mason outlines some of the most common security issues we find during testing and how you can mitigate against them.
https://t.co/UdoExDumrD
There is often a balance between convenience & security when it comes to password managers. Paul Johnston discusses these potential issues and shares the password he uses. https://t.co/JIiiE7Bkj7
If you understand the likely steps of an attack, you can better protect your organisation. That's where the Cyber Kill Chain comes in.
Mark Rose take a look at the Cyber Kill Chain and how it can be used to help improve your cybersecurity posture. https://t.co/p7NNEc0rjq
Reporting isn't just a piece of paper or a pdf delivered at the end of a test, it's an ongoing process.
See how we can tailor our reporting process to meet your specific needs and adapted to your ways of working. https://t.co/IHzdNpo6XV
Threat actors β who are they and what do they want from your organisation?
Mark Rose takes a look at your technology stack, the threats and how you can improve your security posture - https://t.co/v2QWYEuD2W
The CrowdStrike incident highlighted the importance of the digital supply chain & although not a hack, showed what could be done if a supplier were to be breached.
So, how can organisations better secure their digital supply chain? We take a look: https://t.co/cwk3goOzPw
Are your cloud-based applications at heightened risk of cross-tenant attack?
Paul Johnston discusses the issues and how you can go about creating a secure application architecture. https://t.co/1zz1N1AnGa
Who is targeting your organisation?
Mark Rose helps you get a clear picture of your technology stack, identify likely threat actors and ultimately, improve your cybersecurity posture. https://t.co/v2QWYEuD2W
Happy Birthday to us, Happy Birthday to us, Happy Birthday to Pentest, Happy Birthday to us!! π
Pentest - 23 years old today! Here's to many more.
Big thank you to everyone who has been involved in Pentest (past and present) for helping us get this far. π
βI thought you were hackers. Surely you donβt need this?β
Many clients are surprised when we ask for IPs to be whitelisted, creds to be provided or for access to source code for testing. There's a simple reason we ask, more info = more thorough testing.
https://t.co/T3CnLPV4xu
How secure are your web applications?
We take a look at some of the common high-risk issues we find during our web app penetration testing - https://t.co/kPzS9Yueqz
AI is all the rage & many organisations are starting to use AI technology to enhance their chatbots. But what security challenges do AI chatbots face?
We outline some concerns & share practical steps to ensure your AI chatbots are as secure as possible. https://t.co/zb3AwkT7p0
The web-based AI chatbots are coming!! π€ π€
But what are the security challenges they face and how do you go about protecting them from threats, as well as the risk of manipulation and misuse.
Michael Minchinton gives his security insights. https://t.co/zb3AwkT7p0