Testing Lab
Resources Blog

Testing Lab

Keep up to date with the latest offensive security news, knowledge, and resources.
Lost in Transliteration: Hidden Passwords in a Multilingual World
Sep 04, 2025

Lost in Transliteration: Hidden Passwords in a Multilingual World

Sprocket Security Senior Penetration Tester examines how transliteration and language backgrounds shape password creation, adding complexity for both users and attackers in his 2025 CypherCon talk.
A Primer on Insecure Reflection Practices in Java and C# Applications
Jul 23, 2025

A Primer on Insecure Reflection Practices in Java and C# Applications

Explore common pitfalls in Java and C# reflection practices—understand how insecure use of reflection can expose applications to vulnerabilities like code injection, unauthorized access, and bypassed security controls, and learn key strategies to harden your code.
CVE ALERT (CVE-2025-44043 & CVE-2025-44044) - The Search Bar Hacks Aren't Dead Yet
Jun 10, 2025

CVE ALERT (CVE-2025-44043 & CVE-2025-44044) - The Search Bar Hacks Aren't Dead Yet

Explore how Sprocket Security uncovered chained vulnerabilities and learn how overlooked parameters led to serious security risks.
What It Really Means to Be a Hacker: Lessons from 10 Years in Offensive Security
Apr 29, 2025

What It Really Means to Be a Hacker: Lessons from 10 Years in Offensive Security

What being a hacker really means—no title required. After a decade in offensive security, Nate Fair shares honest lessons on hacking.
A Vulnerability Hunter's View of Next.js (CVE-2025-29927) Exploit Validation
Mar 27, 2025

A Vulnerability Hunter's View of Next.js (CVE-2025-29927) Exploit Validation

Explore a security expert's take on validating the Next.js CVE-2025-29927 exploit, its impact, and techniques for assessing and mitigating the risk.
Recent InfoSec Talks, Defcon 32 Demo Labs - Farming n-days with GreyNoise
Dec 10, 2024

Recent InfoSec Talks, Defcon 32 Demo Labs - Farming n-days with GreyNoise

In this series the service delivery team writes about an outstanding talk they saw at a conference and implementing those lessons at scale.
1 2 3 4 5