PROMO
Limited Time: Get 40% Off a Comprehensive Pentest for AI and LLM Applications
PROMO
Limited Time: Get 40% Off a Comprehensive Pentest for AI and LLM Applications

Blog

Thoughts, perspectives, and industry commentary from the Cobalt team.

4 Security Lessons We Learned From 2020

December 7, 2020
Est Read Time: 4 min
Navigating 2020 has taught us many valuable lessons about handling uncertainty, improving communication, and continuing...
Cybersecurity Insights

Cobalt Platform Deep Dive: Explain Accepted Risk in a Few Easy Steps

December 7, 2020
Est Read Time: 2 min
This blog post is part of an ongoing series in which members of the Cobalt product team provide deep dives into...
Product Updates

Changelog — November 2020

December 2, 2020
Est Read Time: 2 min
Last month the Cobalt’s Customer Experience (CX) team released the first blog in our Changelog series, which you can...
Product Updates

Join the world’s most collaborative pentester community

November 30, 2020
Est Read Time: 3 min
What is the Cobalt Core? The Cobalt Core is our exclusive and private community of pentesters. They are the driving...
Cobalt Core

How to Execute an XML External Entity Injection (XXE)

November 26, 2020
Est Read Time: 4 min
What's XXE? An XML External Entity vulnerability is a type of attack against an application that parses XML input. This...
Pentester Guides

Pentesting and DevOps: An Engineer's Perspective

November 24, 2020
Est Read Time: 5 min
In a healthy organization, engineering and security teams should work in a close and efficient manner. I’ve spent years...
Modernizing Pentesting

Pentester Spotlight: Stefan Nicula

November 23, 2020
Est Read Time: 6 min
Stefan Nicula is a threat researcher and pentester with over 5 years of experience. His areas of expertise are in...
Pentester Stories

Cloudy Features: 5 Best Practices for AWS, Azure and Cloud Security

November 17, 2020
Est Read Time: 4 min
As appeared in Cybersecurity Magazine.
Cloud Security

A Pentester’s Guide to Cross-Site Request Forgery (CSRF)

November 13, 2020
Est Read Time: 4 min
Cross-Site Request Forgery (CSRF) is an attack that forces an end user to execute unwanted actions on a web application...
Pentester Guides

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.