NEW FEATURE
Cobalt PtaaS + DAST combines manual pentests and automated scanning for comprehensive applications security.
NEW FEATURE
Cobalt PtaaS + DAST combines manual pentests and automated scanning for comprehensive applications security.

Pentester Guides (6)

Graph Query Language Explained

Cobalt Core Pentester Harsh Bothra explains Graph Query Language and how attackers use it. Read his guide to learn how attackers think and take advantage.
Aug 18, 2022
Est Read Time: 8 min

Hacking Solidity Smart Contracts

Today we will look at hacking smart contracts written using the Solidity programming language. We will fix an overflow/underflow vulnerability on PWNX Academy
Aug 10, 2022
Est Read Time: 7 min

Attacking Windows Applications Pt. 2

Welcome to the second part of the blog series "Attacking windows application." In this blog, we go more in-depth on attacking these applications and the tools used.
Aug 4, 2022
Est Read Time: 10 min

Azure AD: Pentesting Fundamentals

Core member Orhan Yildirim walks us through how to use Azure AD when pentesting.
May 23, 2022
Est Read Time: 10 min

From CSRF and File Upload to RCE - JAVA

I have come across many interesting vulnerabilities throughout my offensive security career. In this post, I would like...
Sep 16, 2021
Est Read Time: 6 min

iOS Pentesting 101

It is no secret that mobile devices are on the rise. According to the first-quarter 2021 Nielsen Total Audience Report...
Aug 20, 2021
Est Read Time: 15 min

Pentester Diaries Ep7: Tips for Communicating with Customers

Welcome back to Pentester Diaries. In this episode, Cobalt’s Grahame Turner interviews Core pentester Stefan Nicula on...
Aug 12, 2021
Est Read Time: 15 min

Pentester Diaries Ep6: The Importance of Report Writing

Welcome back to Pentester Diaries. In this episode, longtime Core member and Cobalt Research Manager, Robert Kugler...
Jun 24, 2021
Est Read Time: 18 min

Parameter Tampering Vulnerability Using 3 Different Approaches

With the growing number of online transactions increasing, it is clear that payment security is crucial. I have created...
Jun 21, 2021
Est Read Time: 4 min
    4 5 6 7 8