WEBINAR
2026 Forecast: 5 New Trends, 3 Old Risks, & 1 Big Surprise
WEBINAR
2026 Forecast: 5 New Trends, 3 Old Risks, & 1 Big Surprise

Blogs

Thoughts, perspectives, and industry commentary from the Cobalt team.

A Pentester's Guide to Server Side Template Injection (SSTI)

December 24, 2020
Est Read Time: 3 min
Server-side template injection is a vulnerability where the attacker injects malicious input into a template to execute commands on the server-side.
Cobalt Core Pentester Guides

Ask a Hacker: How Close is Cyberpunk 2077 to Reality?

December 21, 2020
Est Read Time: 7 min
The long-awaited Cyberpunk 2077 arrived last week, and well, it hasn’t met expectations. To put it simply, the Internet...
Cybersecurity Insights

DevSecOps: Dos & Don'ts, Automation and Strategies for Success

December 15, 2020
Est Read Time: 5 min
For organizations that rely on releasing new product updates daily or weekly, building security into the development...
DevSecOps

A Pentester’s Guide to Command Injection

December 11, 2020
Est Read Time: 3 min
Get expert insights with a command injection tutorial with insights from pentesting experts at Cobalt, a Pentest as a Service (PtaaS) provider.
Pentester Guides

4 Security Lessons We Learned From 2020

December 7, 2020
Est Read Time: 4 min
Navigating 2020 has taught us many valuable lessons about handling uncertainty, improving communication, and continuing...
Cybersecurity Insights

Cobalt Platform Deep Dive: Explain Accepted Risk in a Few Easy Steps

December 7, 2020
Est Read Time: 2 min
This blog post is part of an ongoing series in which members of the Cobalt product team provide deep dives into...
Product Updates

Changelog — November 2020

December 2, 2020
Est Read Time: 2 min
Last month the Cobalt’s Customer Experience (CX) team released the first blog in our Changelog series, which you can...
Product Updates

Join the world’s most collaborative pentester community

November 30, 2020
Est Read Time: 3 min
What is the Cobalt Core? The Cobalt Core is our exclusive and private community of pentesters. They are the driving...
Cobalt Core

How to Execute an XML External Entity Injection (XXE)

November 26, 2020
Est Read Time: 4 min
What's XXE? An XML External Entity vulnerability is a type of attack against an application that parses XML input. This...
Pentester Guides

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.