How to Detect Secrets? Tools and Techniques Before discussing techniques and tools, it is essential to define the ‘secrets’ sought during penetration tests. These secrets are generally private c... 13.01 Applications
XPath Injections: Exploitations and Security Tips Although XML is an old language, it is still widely used, particularly in the banking sector. If you’re a pentester or a developer, you’re... 13.01 Applications
What is Buffer Overflow? Attacks, Types and Security Tips Buffer overflow is one of the oldest and most exploited vulnerabilities. Despite this long history, they remain a major threat today. Whether on serve... 06.01 Applications
Assumed Breach: Objectives, Methodology, Test Scenarios and Use Cases At a time when cyber attacks are increasing in frequency, sophistication and impact, traditional defensive approaches, while necessary, are no longer ... 30.12 Applications
What is Red Teaming? Methodology and Scope of a Red Team Operation With cyber attacks on the increase, the security of organisations is now a priority. And to respond effectively to this growing threat, Red Teaming is... 30.12 Applications
What is a Race Condition? Exploitations and Security Best Practices With a good Internet connection and high-performance hardware, users can have the impression that their actions on a web page are instantaneous or alm... 30.10 Applications
Subdomain Enumeration Techniques and Tools Various subdomain enumeration techniques are used to identify the attack surface of a domain or organisation.The aim is to obtain as complete a list a... 09.10 Applications
Cloudflare: How to Secure Your Origin Server? Cloudflare has established itself as a key player on the web in recent years, offering not only CDN services, but also protection against various atta... 08.10 Applications