Blog

Stay updated with the latest offensive security news, knowledge, and resources.

Latest Resources

Traditional vs. Continuous Pentesting: A Comparison Checklist
Oct 07, 2021 Sprocket Security

Traditional vs. Continuous Pentesting: A Comparison Checklist

We get a lot of questions about what makes continuous penetration testing more valuable than traditional timebox testing. Seriously, A LOT of questions – all of which are warranted. Take a look below, and we’re pretty sure you’ll see the benefits when the two methods are stacked side-by-side.
CPT in the wild: 3 real-world examples that prove its value
Sep 09, 2021 Sprocket Security

CPT in the wild: 3 real-world examples that prove its value

We get it, regular ol’ once-a-year penetration testing is the norm. It’s what your company has budgeted for, what you’re IT team is used to, and in many cases, what your expected to do. But that doesn’t mean it’s the best way to protect your network. Think about this: Why would you test your network security from emerging cyber-security threats only...
Fourteen good reasons to require 14-character passwords
Jun 15, 2021 Sprocket Security

Fourteen good reasons to require 14-character passwords

Password. Password123. Yea, you’ve seen them all when it comes to bad passwords. It comes standard when managing IT security. But while your organization likely requires special characters, uppercase letters and even a number or two, if you don’t require longer passwords you’re not taking one of the most important steps to protect your network.
VIDEO: How Continuous Penetration Testing Works (the best)
May 03, 2021 Sprocket Security

VIDEO: How Continuous Penetration Testing Works (the best)

Trying to wrap your head around what separates Continuous Penetration Testing from other forms of network security testing? Well, we get it. That’s why we’ve put together this handy little video. Sit back, have a snack and learn how CPT works, why it’s advantageous and how it can help you keep your organization’s network safe.
What Vulnerability Scanners Miss... and the Cost
Apr 01, 2021 Sprocket Security

What Vulnerability Scanners Miss... and the Cost

Automated Vulnerability Scanners, on the surface, have a lot of appeal to IT directors. They run in the background and are “always on”. They alert you when you have an issue. But the harsh reality is they provide a false sense of security and leave your network exposed.
InBusiness column: How testing protects your data – and bottom line
Dec 01, 2020 Sprocket Security

InBusiness column: How testing protects your data – and bottom line

Getting hacked hurts. Not only is it often a PR nightmare and the cause of sleepless nights – a company data breach is a financial fright fest that can cost you millions of dollars.