WEBINAR
Learn how software development company Personio takes a strategic approach to pentesting.
WEBINAR
Learn how software development company Personio takes a strategic approach to pentesting.

Blog

Thoughts, perspectives, and industry commentary from the Cobalt team.

Pentester Spotlight: Nikhil Srivastava

Nikhil Srivastava has been a top-performing pentester on the Cobalt platform for the past five years. He is an active...
Oct 28, 2020
Est Read Time: 6 min

Changelog — October 2020

Check out what we’ve been working on over the past month:
Oct 26, 2020
Est Read Time: 2 min

Design Sprints in Distributed Teams: How We Do it at Cobalt

A design sprint is a powerful tool for teams to work towards a shared vision to design and test features quickly....
Oct 25, 2020
Est Read Time: 4 min

The Cobalt Core: A pentester community built on diversity, collaboration, and learning

The Cobalt Core is our highly-experienced, geographically-diverse community of pentesters. The community consists of...
Oct 21, 2020
Est Read Time: 3 min

A Pentester’s Guide to HTTP Request Smuggling

What is HTTP Request Smuggling? HTTP request smuggling is an attack technique that is conducted by interfering with the...
Oct 15, 2020
Est Read Time: 9 min

3 Steps to Creating Career Paths: How We Did it at Cobalt

In 2019, the Cobalt People team launched our first company-wide career paths. This was an important exercise, as it...
Oct 6, 2020
Est Read Time: 4 min

Terraform 0.13 and Google Cloud

If you’re going to do operations reliably, you need to make it reproducible and programmatic. — Mike Loukides
Oct 5, 2020
Est Read Time: 6 min

A Pentester’s Guide to Server Side Request Forgery (SSRF)

What is SSRF? In a Server-Side Request Forgery (SSRF) attack, the attacker can abuse functionality on the server to...
Oct 1, 2020
Est Read Time: 4 min

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.