#securitytesting — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #securitytesting, aggregated by home.social.
-
It's time for another toot in our #peoplebehindosco series.
Hi @lisihocke 👋
Lisi found tech as her place to be in 2009 and has grown as a specialized generalist ever since. Building great products that deliver value together with great people motivates her and lets her thrive. As a security engineer, she’s now fully focusing on all things product security to help build more secure solutions. She’s committed to testing and quality, passionate about whole-team approaches to increase effectiveness and resilience, and enjoys experimenting and learning continuously. Having received a lot from communities, Lisi is paying it forward by sharing her stories and learning in public.
Her tags: #ProdSec, #AppSec, #DevSecOps, #SecureCoding, #SecurityTesting
She posts on Mastodon as @lisihocke and blogs at https://www.lisihocke.com.
In her free time, she plays indoor volleyball or delves into computer games and stories of all kinds.
Thank you very much for your work as a volunteer and your support in organizing the Open Security Conference.
Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.
-
It's time for another toot in our #peoplebehindosco series.
Hi @lisihocke 👋
Lisi found tech as her place to be in 2009 and has grown as a specialized generalist ever since. Building great products that deliver value together with great people motivates her and lets her thrive. As a security engineer, she’s now fully focusing on all things product security to help build more secure solutions. She’s committed to testing and quality, passionate about whole-team approaches to increase effectiveness and resilience, and enjoys experimenting and learning continuously. Having received a lot from communities, Lisi is paying it forward by sharing her stories and learning in public.
Her tags: #ProdSec, #AppSec, #DevSecOps, #SecureCoding, #SecurityTesting
She posts on Mastodon as @lisihocke and blogs at https://www.lisihocke.com.
In her free time, she plays indoor volleyball or delves into computer games and stories of all kinds.
Thank you very much for your work as a volunteer and your support in organizing the Open Security Conference.
Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.
-
#OpenAI, #Anthropic, and #Meta all disclosed that their #AImodels accessed the #internet during #securitytesting, with the Israeli startup #Irregular identified as the host of the evaluation testbed. Irregular, specialising in cybersecurity testing for AI models, is developing a white paper on best practises for securely running cyber evaluations. The incidents highlight the need for independent testing of powerful AI models. https://www.cnbc.com/2026/08/09/israeli-startup-irregular-linked-to-ai-hacks-openai-anthropic-meta.html?eicker.news #tech #news #ainews
-
#OpenAI, #Anthropic, and #Meta all disclosed that their #AImodels accessed the #internet during #securitytesting, with the Israeli startup #Irregular identified as the host of the evaluation testbed. Irregular, specialising in cybersecurity testing for AI models, is developing a white paper on best practises for securely running cyber evaluations. The incidents highlight the need for independent testing of powerful AI models. https://www.cnbc.com/2026/08/09/israeli-startup-irregular-linked-to-ai-hacks-openai-anthropic-meta.html?eicker.news #tech #news #ainews
-
Open-Source Tool Automates Security Testing with AI Agents
📰 Original title: Turn Claude Code into a Pentester
🤖 IA: It's not clickbait ✅
👥 Users: It's not clickbait ✅View full AI summary https://en.killbait.com/open-source-tool-automates-security-testing-with-ai-agents.html?utm_source=mastodon_world&utm_medium=social&utm_campaign=killbait.mastodon_world
-
🚀 aghast v0.6.0 is out!
Cost and budget controls, per-check repository exclusion, and enhanced security hardening. Run aghast stats to see your scan costs, set budgets, and scale with confidence.
Get it: npm install -g @bouncesecurity/aghast
-
🚀 aghast v0.6.0 is out!
Cost and budget controls, per-check repository exclusion, and enhanced security hardening. Run aghast stats to see your scan costs, set budgets, and scale with confidence.
Get it: npm install -g @bouncesecurity/aghast
-
🎧 New My Precious Data episode!
I spoke with Andreas Clementi, co-founder of AV-Comparatives about independent security testing and why transparency is the backbone of trust in cybersecurity. -
How VAPT Solutions Help Organizations Prevent Cyber Attacks in 2026
Learn how VAPT solutions in 2026 help organizations identify vulnerabilities, strengthen security posture, and proactively prevent advanced cyber attacks.
Read the full blog here: https://www.ecsinfotech.com/how-vapt-solutions-help-organizations-prevent-cyber-attacks/
#VAPTSolutions #CyberSecurity #VAPT #DataProtection #VAPTServices #VAPTTesting #VulnerabilityAssessment #PenetrationTesting #SecurityTesting #ThreatDetection #ECSInfotech #ECS
-
www.ditig.com/lynis-cheat-... - Lynis cheat sheet This cheat sheet provides security teams and sysadmins with a quick-reference guide to Lynis commands, audit options, and configuration details. #securityaudit #systemsecurity #linux #macOS #unix #cheatsheet #securitytesting #cheat-sheet
-
www.ditig.com/lynis-cheat-... - Lynis cheat sheet This cheat sheet provides security teams and sysadmins with a quick-reference guide to Lynis commands, audit options, and configuration details. #securityaudit #systemsecurity #linux #macOS #unix #cheatsheet #securitytesting #cheat-sheet
-
Security Testing is one aspect of modern QA.
There is no way around it, and you should never try to circumvent that fact in any case or with any "trick" you might come up with.And it is extremely simple and not even costly to integrate as I talked about so much in the past.
Even if you might be tired of hearing it:
Security Testing is crucial today, tomorrow and in the years to come !!!
-
Android app testers and security engineers spend a lot of time dealing with Activities. The attack surface may look small, but a poorly configured Activities can expose data or let other apps do things they shouldn't. In this blog post, David Lodge explains how exported and debug Activities, weak WebView settings, and missing window security flags can pose security concerns.
📌 https://www.pentestpartners.com/security-blog/android-activities-101/
#androidsecurity #cybersecurity #appsec #mobile #pentesting #infosec #securitytesting -
Android app testers and security engineers spend a lot of time dealing with Activities. The attack surface may look small, but a poorly configured Activities can expose data or let other apps do things they shouldn't. In this blog post, David Lodge explains how exported and debug Activities, weak WebView settings, and missing window security flags can pose security concerns.
📌 https://www.pentestpartners.com/security-blog/android-activities-101/
#androidsecurity #cybersecurity #appsec #mobile #pentesting #infosec #securitytesting -
🚀 Beginner’s Guide to Penetration Testing — Start Your Ethical Hacking Journey
Learn the five core phases of a pentest (recon → scanning → gaining access → post-exploitation → reporting), the essential tools you’ll use, and the ethical mindset to practice safely and legally. Perfect for beginners who want a practical, hands-on path into cybersecurity. 🛡️🧭
#penetrationtesting #ethicalhacking #cybersecurity #Infosec #pentest #BeginnerGuide #KaliLinux #Nmap #Metasploit #HackingTools #SecurityTesting #WhiteHat #AxximumInfoSolutions
-
🚀 Beginner’s Guide to Penetration Testing — Start Your Ethical Hacking Journey
Learn the five core phases of a pentest (recon → scanning → gaining access → post-exploitation → reporting), the essential tools you’ll use, and the ethical mindset to practice safely and legally. Perfect for beginners who want a practical, hands-on path into cybersecurity. 🛡️🧭
#penetrationtesting #ethicalhacking #cybersecurity #Infosec #pentest #BeginnerGuide #KaliLinux #Nmap #Metasploit #HackingTools #SecurityTesting #WhiteHat #AxximumInfoSolutions
-
Was bewegt die Software-Test-Community? - Richard Seidl https://www.richard-seidl.com/de/blog/was-bewegt-die-community
#SoftwareTesting #QualityAwareness #ArtificialIntelligence #Digitalisierung #digitalization #Testdaten #TestData #Teststrategie #TestStrategy #AgileTesting #Weiterbildung #education #NonFunctionalTesting #SecurityTesting #Accessibility
-
Was bewegt die Software-Test-Community? - Richard Seidl https://www.richard-seidl.com/de/blog/was-bewegt-die-community
#SoftwareTesting #QualityAwareness #ArtificialIntelligence #Digitalisierung #digitalization #Testdaten #TestData #Teststrategie #TestStrategy #AgileTesting #Weiterbildung #education #NonFunctionalTesting #SecurityTesting #Accessibility
-
24 Essential Penetration Testing Tools Every Ethical Hacker Should Know 🛠️🔍
Whether you're just starting out or building a full red team toolkit, these tools cover all the key stages of a penetration test — from recon to reporting.
📋 5 Infographics:
🧭 Reconnaissance & Info Gathering
💣 Exploitation & Post-Exploitation
🔐 Credential Attacks & Wireless Testing
🌐 Web App Testing & Shells
🧪 Vulnerability Scanning & Enumeration
🔍 Reverse Engineering & AnalysisDisclaimer: This content is intended for educational and ethical use only. Always perform testing in lab environments or with explicit permission.
#EthicalHacking #PenetrationTesting #CyberSecurity #InfoSec #RedTeamTools #EducationOnly #SecurityTesting #HackTheRightWay
-
24 Essential Penetration Testing Tools Every Ethical Hacker Should Know 🛠️🔍
Whether you're just starting out or building a full red team toolkit, these tools cover all the key stages of a penetration test — from recon to reporting.
📋 5 Infographics:
🧭 Reconnaissance & Info Gathering
💣 Exploitation & Post-Exploitation
🔐 Credential Attacks & Wireless Testing
🌐 Web App Testing & Shells
🧪 Vulnerability Scanning & Enumeration
🔍 Reverse Engineering & AnalysisDisclaimer: This content is intended for educational and ethical use only. Always perform testing in lab environments or with explicit permission.
#EthicalHacking #PenetrationTesting #CyberSecurity #InfoSec #RedTeamTools #EducationOnly #SecurityTesting #HackTheRightWay
-
Dive into our new technical blog, No Exploits Needed: Using Cisco’s Own Features to Extract Credentials, for a behind-the-scenes look at how default settings can lead to a data breach.
In this post, Penetration Testing Team Manager @tompohl shares how he extracted a Cisco router’s entire running configuration—no credentials required—during a recent penetration test and offers tips for hardening your security. https://www.lmgsecurity.com/no-exploits-needed-using-ciscos-own-features-to-extract-credentials/
#Cybersecurity #PenetrationTesting #Pentest #IT #CISO #DFIR #Infosec #ITsecurity #NetworkSecurity #Cisco #SecurityTesting
-
The #AgileTD program is out now! Super excited to have been invited to curate this year's #SecurityTesting track along with Kristof Van Kriekingen and Santhosh Tuppad. 🤩
https://agiletestingdays.com/program/deep-dive/#security-testing
Looking forward to learning with the track's amazing speakers, and Santhosh joining me on my workshop "Secure Development Lifecycle Applied - How to Make Things a Bit More Secure than Yesterday Every Day". 🛡
See you in November to dive into all things #security together! 🤿
-
The #AgileTD program is out now! Super excited to have been invited to curate this year's #SecurityTesting track along with Kristof Van Kriekingen and Santhosh Tuppad. 🤩
https://agiletestingdays.com/program/deep-dive/#security-testing
Looking forward to learning with the track's amazing speakers, and Santhosh joining me on my workshop "Secure Development Lifecycle Applied - How to Make Things a Bit More Secure than Yesterday Every Day". 🛡
See you in November to dive into all things #security together! 🤿
-
Legacy security testing leaves mobile apps vulnerable to third-party risks. Without deeper binary analysis, attackers can exploit blind spots in the software supply chain. https://jpmellojr.blogspot.com/2025/05/mobile-and-third-party-risk-how-legacy.html #AppSec #MobileSecurity #BinaryAnalysis #SecurityTesting
-
🚀 New article: Boost your security skills with my latest guide on essential #application #security #testing!
Explore SCA, SAST, DAST, and PenTest to protect your projects from vulnerabilities.#JavaSecurity #Cybersecurity #AppSec #SecurityTesting
https://ionutbalosin.com/2025/03/security-application-testing-for-java-developers
-
🚀 New article: Boost your security skills with my latest guide on essential #application #security #testing!
Explore SCA, SAST, DAST, and PenTest to protect your projects from vulnerabilities.#JavaSecurity #Cybersecurity #AppSec #SecurityTesting
https://ionutbalosin.com/2025/03/security-application-testing-for-java-developers
-
Two great days at embedded world Exhibition & Conference are already in the books. Today is the last day before we pack up our tech demos this evening and head back to Berlin. ⌛ So take the opportunity to visit us today until 5 p.m. in Hall 4 at Stand 422. We look forward to a successful final sprint and to sharing our expertise with you!
▶️ https://www.fokus.fraunhofer.de/en/sqc/event/embedded_world_25
#ew22 #SecurityTesting #EmbeddedEdgeAI #ArtificialIntelligence #QualityEngineering
-
Two great days at embedded world Exhibition & Conference are already in the books. Today is the last day before we pack up our tech demos this evening and head back to Berlin. ⌛ So take the opportunity to visit us today until 5 p.m. in Hall 4 at Stand 422. We look forward to a successful final sprint and to sharing our expertise with you!
▶️ https://www.fokus.fraunhofer.de/en/sqc/event/embedded_world_25
#ew22 #SecurityTesting #EmbeddedEdgeAI #ArtificialIntelligence #QualityEngineering
-
Welcome to Day 1 at this year's embedded world ! Visit us at our booth in hall 4, stand 422.
Our scientists will be on site to show you our two demos “Adaptive Manufacturing with Embedded Edge AI” and “Supply chain security in a connected and regulated world”. Don't hesitate and stop by, we look forward to seeing you!
More information: ▶️ https://www.fokus.fraunhofer.de/en/sqc/event/embedded_world_25
#EmbeddedWorld #QualityEngineering #EdgeAI #ew25 #SecurityTesting
-
Welcome to Day 1 at this year's embedded world ! Visit us at our booth in hall 4, stand 422.
Our scientists will be on site to show you our two demos “Adaptive Manufacturing with Embedded Edge AI” and “Supply chain security in a connected and regulated world”. Don't hesitate and stop by, we look forward to seeing you!
More information: ▶️ https://www.fokus.fraunhofer.de/en/sqc/event/embedded_world_25
#EmbeddedWorld #QualityEngineering #EdgeAI #ew25 #SecurityTesting
-
Eric Brüggemann on Code Intelligence Launching Spark – Source: securityboulevard.com https://ciso2ciso.com/eric-bruggemann-on-code-intelligence-launching-spark-source-securityboulevard-com/ #rssfeedpostgeneratorecho #ApplicationSecurity #CyberSecurityNews #SecurityBoulevard #securitytesting #VideoInterviews #SocialFacebook #SocialLinkedIn #automation #DevSecOps #SocialX #CICD #AI
-
Eric Brüggemann on Code Intelligence Launching Spark – Source: securityboulevard.com https://ciso2ciso.com/eric-bruggemann-on-code-intelligence-launching-spark-source-securityboulevard-com/ #rssfeedpostgeneratorecho #ApplicationSecurity #CyberSecurityNews #SecurityBoulevard #securitytesting #VideoInterviews #SocialFacebook #SocialLinkedIn #automation #DevSecOps #SocialX #CICD #AI
-
Security Testing - A Bit of Security for January 28, 2025
We can test for security. Here’s a hint on how to do that. Listen to this -
#cybersecuritytips #testphases #softwaretesting #securitytesting #BitofSec
https://youtu.be/NBBJvM1gvi0 -
Okay, recall those phishing tests I failed on purpose because I was exploring the links in my test env after noticing they were from terranova. Another email this morning that looks pretty much exactly like the tests that I hadn't checked on yet.
But surprise! follow up email from corporate saying it is a real one and is okay :)
Something about crying wolves. Or is that laughter.
-
Microsoft plans to boot security vendors out of the Windows kernel https://www.helpnetsecurity.com/2024/11/19/windows-kernel-security-vendors/ #cyberresilience #securitytesting #Don'tmiss #antivirus #Hotstuff #Windows #News
-
Microsoft plans to boot security vendors out of the Windows kernel https://www.helpnetsecurity.com/2024/11/19/windows-kernel-security-vendors/ #cyberresilience #securitytesting #Don'tmiss #antivirus #Hotstuff #Windows #News
-
By leveraging modern SSCS practices, organizations gain deeper visibility and design more effective chaos engineering experiments. #chaosengineering #softwaresecurity #supplychainsecurity #securitytesting #blackboxsoftware #softwaretransparency
https://tinyurl.com/mufmyawr -
Essential metrics for effective security program assessment https://www.helpnetsecurity.com/2024/09/19/alex-spivakovsky-pentera-security-programs/ #penetrationtesting #securitycontrols #securitytesting #cybersecurity #compliance #Don'tmiss #Features #Hotstuff #opinion #Pentera #News #SOC
-
Essential metrics for effective security program assessment https://www.helpnetsecurity.com/2024/09/19/alex-spivakovsky-pentera-security-programs/ #penetrationtesting #securitycontrols #securitytesting #cybersecurity #compliance #Don'tmiss #Features #Hotstuff #opinion #Pentera #News #SOC
-
Learning from CrowdStrike’s quality assurance failures https://www.helpnetsecurity.com/2024/07/25/crowdstrike-quality-assurance-failures/ #securitytesting #Expertanalysis #cybersecurity #Expertcorner #Don'tmiss #Hotstuff #software #opinion #update #News
-
Learning from CrowdStrike’s quality assurance failures https://www.helpnetsecurity.com/2024/07/25/crowdstrike-quality-assurance-failures/ #securitytesting #Expertanalysis #cybersecurity #Expertcorner #Don'tmiss #Hotstuff #software #opinion #update #News
-
How companies increase risk exposure with rushed LLM deployments https://www.helpnetsecurity.com/2024/07/10/jake-king-elastic-llms-security-risks/ #securitytesting #cybersecurity #GenerativeAI #Don'tmiss #Features #Hotstuff #Elastic #opinion #privacy #News #data #LLMs
-
How companies increase risk exposure with rushed LLM deployments https://www.helpnetsecurity.com/2024/07/10/jake-king-elastic-llms-security-risks/ #securitytesting #cybersecurity #GenerativeAI #Don'tmiss #Features #Hotstuff #Elastic #opinion #privacy #News #data #LLMs