REPORT
The 25x Remediation Gap: See how elite security teams resolve risks in 10 days vs. 249
REPORT
The 25x Remediation Gap: See how elite security teams resolve risks in 10 days vs. 249

Cobalt Core (14)

Pentester Spotlight: Martina Matarí

April 8, 2021
Est Read Time: 6 min
Martina Matarí joined the Cobalt Core, our highly-experienced, geographically-diverse community of pentesters, in 2020....
Cobalt Core

Pentester Diaries Ep2: 2FA Bypass Techniques

April 1, 2021
Est Read Time: 17 min
Welcome back to Pentester Diaries, a podcast series that aims to take off the hacker hoodie and have a real...
Cobalt Core

Anatomy of the Session Management Tests

March 19, 2021
Est Read Time: 6 min
Note: This article has been created in light of the OWASP standards and descriptions.
Cobalt Core Vulnerabilities

Pentester Spotlight: Andreea Druga

March 4, 2021
Est Read Time: 7 min
Andreea Druga is a pentester with over six years of experience in the security arena with a master's degree in IT&C...
Cobalt Core

A Pentester’s Guide to File Inclusion

February 19, 2021
Est Read Time: 4 min
Read the Pentester’s Guide to File Inclusion for key insights into this common vulnerability.
Cobalt Core Vulnerabilities

Pentester Spotlight: Jesus Arturo Espinoza Soto

February 11, 2021
Est Read Time: 4 min
How curiosity led a PHP programmer to web hacking and a collaborative pentest community of technology tinkerers. Jesus...
Cobalt Core

A Pentester’s Guide to Code Injection

January 8, 2021
Est Read Time: 3 min
Learn about code injection vulnerabilities with the Pentester’s Guide to Code Injection.
Cobalt Core Vulnerabilities

Exploring Valuable Pentester Traits: Top Cobalt Core Pentesters of 2020

December 30, 2020
Est Read Time: 3 min
Each year we survey the Cobalt Core, our pentester community, to hear who they enjoyed working with the most. We like...
Cobalt Core

A Pentester's Guide to Server Side Template Injection (SSTI)

December 24, 2020
Est Read Time: 3 min
Server-side template injection is a vulnerability where the attacker injects malicious input into a template to execute commands on the server-side.
Cobalt Core Vulnerabilities