Most penetration tests start the same way. The same tried and tested techniques, with a little creative flair.
We've prepared a brief guide to help you address these common issues before your next test... for free!
https://t.co/65zla432Ky
Good News EVERYONE! We've got a newsletter... well, actually we've got 2! Subscribe to get high-quality cyber and DevSecOps updates delivered directly to your mailbox.
No spam, just our take on what you should know from last month.
https://t.co/PorLI5rLwo
Ready to raise security awareness among your developers? Our DevSecOps training combines speaker-led content with engaging competitive labs.
https://t.co/miHcNkD3Et
Simon and Alex attended Blackhat Europe in December to present Secret Magpie, one of our opensource projects and a key component to our DevSecOps audits.
Check out the full slide deck in our blog.
https://t.co/Khixgegnxy
If you missed it before Christmas, SMBeagle has a shiny new feature! If you're not already using it on infra pentests, you're leaving some great privesc opportunities on the table
https://t.co/9mrx5v6lpz
We're JOSCAR registered, opening the door for a number of new opportunities this year and demonstrating our commitment to doing the right thing.
This sits proudly alongside our #iso27001, #iso9001, #CEplus and #CREST accreditations.
https://t.co/iK7RW2JPuE
Looking for a better pentest this year? Want a #CREST registered provider that:
> Really understands cloud and modern tech
> Uses experienced developers to deliver web app pentests
> Provides a free retest and multiple debrief sessions
We love what we do, and so will you!
To properly achieve "Continuous Pentesting" (of WebApps) and to engage developers in meaningful "Security Training", you need DevSecOps.
Want to learn more? Check out our free DevSecOps booklet.
https://t.co/miHcNkD3Et
📕📙📒📗📘📓
#DevSecOps
Looking for a quick New Year win to improve your cyber security? Scan your domain quickly and for free with dnsReaper. https://t.co/vk5JD5coGh
DNS NEVER gets reviewed, we just add new records on top. With the right conditions, attackers can hijack your domains.
💀
Detecting secrets in your source code repositories should be the simplest component of your DevSecOps program, but actually it's not so easy.
Join us at Blackhat in London where we will explain why you should be adhoc auditing with Secret Magpie!
dnsreaper, our opensource subdomain takeover tool with over 2k stars on Github and 11k users has had its biggest update yet. Our insanely fast async runtime (which powers the free testing tool at https://t.co/vk5JD5coGh) is now used in all our docker images.
Want to get your hands on one of our PCB art badges from a previous con and raise money for CALM at the same time?
Now you can.
https://t.co/ylUsyWRUke
THE JAM HAS BEEN SECURED,
i repeat,
THE JAM HAS BEEN SECURED,
After reading this article, i think its only fair that i offer @jamesmartinchef a free ticket to the ONLY Infosec conference that gives you free @themadjamwoman preserves. https://t.co/YbKhKRsyGd
We've got a busy October planned and finally got round to updating our events page! Come see us in York, Newcastle and Birmingham!
https://t.co/DkDtd8l9QA
💡 Reduce your AWS ECS cost by over-provisioning tasks
Our latest blog post details how over-provisioning tasks in AWS ECS can help you save money on your cloud infrastructure. Check it out now!
https://t.co/uNDpfhqUO3
#AWS#cloud
We're hiring! After some fantastic growth this last 6 months in both our DevSecOps delivery and traditional cyber , we're hiring 2 new punks! Roles to follow soon
Expressions of interest are welcome! We want a team as skill diverse as this lot (but considerably less toxic)
WE'RE SPONSORING BSIDES NEWCASTLE THIS YEAR! We're a little excited to promote cyber on our own patch, bring our PCB badges back "up north", and promote Cyber in the region!