Find the latest Webinar content from the Sprocket Testing Team.
Resources
All Resources

Library

Explore our collection of resources, including blog articles, webcasts, case studies, and eBooks.
Obtaining AS-REP Hashes Through ARP Poisoning
Jul 07, 2026

Obtaining AS-REP Hashes Through ARP Poisoning

How ASRepCatcher uses ARP poisoning to obtain crackable AS-REP hashes from any authenticating user, even when Kerberos preauthentication is enabled.
Can We Beat the Adversary, or Am I Willing to Accept the Risk?
Jun 10, 2026

Can We Beat the Adversary, or Am I Willing to Accept the Risk?

Most security programs detect breaches. Fewer can prove they won't happen. Learn the offensive security framework that turns "are we secure?" into an answerable question.
Security Budget Downturn
Jun 04, 2026

Security Budget Downturn

Budget cuts don't reduce security risk. They relocate it. Here's the breach math CFOs need to see before the spreadsheet wins the argument.
The Human Touch in the Era of AI: Why Pentesting Still Needs a Human in the Loop
Jun 01, 2026

The Human Touch in the Era of AI: Why Pentesting Still Needs a Human in the Loop

AI accelerates pentesting but human judgement close the gap. See how two real engagements turned quiet banners and a single timestamp into critical findings.
Tenant Enumeration is Dead
May 19, 2026

Tenant Enumeration is Dead

Microsoft has fully patched the ACS metadata endpoint that powered tenant domain enumeration. Learn what the original technique was, why it's gone, and how azmap.dev now combines DKIM lookups, MX brute-force, and Graph API to still surface tenant names and related domains.
AI for Defenders: What's Actually Working in the Environments We Test
May 13, 2026

AI for Defenders: What's Actually Working in the Environments We Test

From alert triage to attack path prioritization, AI has moved past the marketing slides. A Sprocket SE breaks down what's working in real SOC workflows, where it falls short, and how to think about automation before it thinks for you.
1 2 3 4 5