REPORT
The 25x Remediation Gap: See how elite security teams resolve risks in 10 days vs. 249
REPORT
The 25x Remediation Gap: See how elite security teams resolve risks in 10 days vs. 249

Blogs

Thoughts, perspectives, and industry commentary from the Cobalt team.

4 Security Lessons We Learned From 2020

December 7, 2020
Est Read Time: 4 min
Navigating 2020 has taught us many valuable lessons about handling uncertainty, improving communication, and continuing...
Cybersecurity Insights

Cobalt Platform Deep Dive: Explain Accepted Risk in a Few Easy Steps

December 7, 2020
Est Read Time: 2 min
This blog post is part of an ongoing series in which members of the Cobalt product team provide deep dives into...
Product Updates

Changelog — November 2020

December 2, 2020
Est Read Time: 2 min
Last month the Cobalt’s Customer Experience (CX) team released the first blog in our Changelog series, which you can...
Product Updates

Join the world’s most collaborative pentester community

November 30, 2020
Est Read Time: 3 min
What is the Cobalt Core? The Cobalt Core is our exclusive and private community of pentesters. They are the driving...
Cobalt Core

How to Execute an XML External Entity Injection (XXE)

November 26, 2020
Est Read Time: 4 min
What's XXE? An XML External Entity vulnerability is a type of attack against an application that parses XML input. This...
Vulnerabilities

Pentesting and DevOps: An Engineer's Perspective

November 24, 2020
Est Read Time: 5 min
In a healthy organization, engineering and security teams should work in a close and efficient manner. I’ve spent years...
Modernizing Pentesting

Pentester Spotlight: Stefan Nicula

November 23, 2020
Est Read Time: 6 min
Stefan Nicula is a threat researcher and pentester with over 5 years of experience. His areas of expertise are in...
Cobalt Core

Cloudy Features: 5 Best Practices for AWS, Azure and Cloud Security

November 17, 2020
Est Read Time: 4 min
As appeared in Cybersecurity Magazine.
Cloud Security

A Pentester’s Guide to Cross-Site Request Forgery (CSRF)

November 13, 2020
Est Read Time: 4 min
Cross-Site Request Forgery (CSRF) is an attack that forces an end user to execute unwanted actions on a web application...
Vulnerabilities

    Always get the latest

    Sign up to get Cobalt insights delivered right to your inbox so you never miss a story.

    More resources

    Learn pentesting best practices, read answers to our most common questions
    and get our technical docs.