Find the latest Webinar content from the Sprocket Testing Team.
Resources Blog

Blog

Keep up to date with the latest offensive security news, knowledge, and resources.
The Pentester Rotation Myth

The Pentester Rotation Myth

Rotating pentesters every year may sound like getting “fresh eyes,” but it often resets progress and weakens security maturity. Learn why continuity-based penetration testing, anchored in frameworks like MITRE ATT&CK and iterative feedback loops, drives deeper insight, faster remediation, and stronger defenses over time.
A Day in the Life of a Vulnerability Researcher — LADSPA

A Day in the Life of a Vulnerability Researcher — LADSPA

Follow a vulnerability researcher’s deep dive into FFmpeg’s LADSPA plugin loader and the discovery of CVE-2025-60616 — a logic flaw in how environment variables are trusted. Learn how this vulnerability enables code execution, why fuzzing missed it, and how proper validation and process isolation can prevent similar exploits.
From Threat Volume to Real-World Exposure: What the 2025 Comcast Cybersecurity Threat Report Tells Us

From Threat Volume to Real-World Exposure: What the 2025 Comcast Cybersecurity Threat Report Tells Us

Comcast Business Cybersecurity Threat Report analyzed events, revealing how attackers are shifting tactics and accelerating the pace at which exposures become exploitable. We will expand on four of the threats that keep showing up in breach postmortems, how they work in reality, and what organizations should do about them.
What Makes Hybrid Pentesting So Powerful?

What Makes Hybrid Pentesting So Powerful?

In today's episode, Casey addresses what makes hybrid pentesting so powerful.
How to Prepare for Penetration Testing

How to Prepare for Penetration Testing

Preparing for a penetration test? This checklist will inform you on what to expect and what steps you should take to get the most out of your organization’s upcoming pentest.
Ahead of the Breach - GreyNoise's Andrew Morris on Internet Background Noise as Data

Ahead of the Breach - GreyNoise's Andrew Morris on Internet Background Noise as Data

Security teams often treat all scanning activity as malicious, but Andrew Morris, Founder & Chief Architect at GreyNoise Intelligence, warns this approach actually creates more noise than signal in threat detection.
9 10 11 12 13