Live DEMO
Join us for a live demo of our pentest for AI and LLMs.
Live DEMO
Join us for a live demo of our pentest for AI and LLMs.

Blog

Thoughts, perspectives, and industry commentary from the Cobalt team.

Changelog — October 2020

Check out what we’ve been working on over the past month:
Oct 26, 2020
Est Read Time: 2 min

Design Sprints in Distributed Teams: How We Do it at Cobalt

A design sprint is a powerful tool for teams to work towards a shared vision to design and test features quickly....
Oct 25, 2020
Est Read Time: 4 min

The Cobalt Core: A pentester community built on diversity, collaboration, and learning

The Cobalt Core is our highly-experienced, geographically-diverse community of pentesters. The community consists of...
Oct 21, 2020
Est Read Time: 3 min

A Pentester’s Guide to HTTP Request Smuggling

What is HTTP Request Smuggling? HTTP request smuggling is an attack technique that is conducted by interfering with the...
Oct 15, 2020
Est Read Time: 9 min

3 Steps to Creating Career Paths: How We Did it at Cobalt

In 2019, the Cobalt People team launched our first company-wide career paths. This was an important exercise, as it...
Oct 6, 2020
Est Read Time: 4 min

Terraform 0.13 and Google Cloud

If you’re going to do operations reliably, you need to make it reproducible and programmatic. — Mike Loukides
Oct 5, 2020
Est Read Time: 6 min

A Pentester’s Guide to Server Side Request Forgery (SSRF)

What is SSRF? In a Server-Side Request Forgery (SSRF) attack, the attacker can abuse functionality on the server to...
Oct 1, 2020
Est Read Time: 4 min

Pentester Spotlight: Özgür Alp

Özgür Alp is an offensive cybersecurity specialist, lecturer, and instructor with over 7 years of experience as both a...
Sep 28, 2020
Est Read Time: 5 min

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.