NTLM Relay in Active Directory: What Pentests Find

Featured image for NTLM Relay in Active Directory: What Pentests Find

An NTLM relay attack inside an Active Directory pentest remains the most reliable critical-severity finding CTDefense reproduces during internal engagements. LLMNR poisoning captures an NTLMv2 hash.…

Mobile Banking App Pentest: What It Actually Finds

Featured image for Mobile Banking App Pentest: What It Actually Finds

Banking trojans no longer steal credentials and walk away. They sit on the device, overlay the legitimate banking screen, intercept the second factor, and complete the transaction while the customer…

Web App Vulnerabilities Your Scanner and WAF Miss

Featured image for Web App Vulnerabilities Your Scanner and WAF Miss

The web application vulnerabilities scanners miss are rarely the ones a CVE feed will tell you about. They sit one layer above signatures, in the logic of how an application decides who is allowed to…

CI/CD Secrets: The Cloud Attack Path Reviews Miss

Featured image for CI/CD Secrets: The Cloud Attack Path Reviews Miss

A typical annual cloud security review captures the state of an environment on the day the engagement closes. Two weeks later, a developer adds a third-party integration, a CI/CD workflow gets a new…