RESOURCES

Black Hat minded security exploit development

PASTA Threat Modeling for Integrated Risk Management

Cybersecurity Library, VerSprite Security Resources, Threat Modeling, Ebooks & Guides

PASTA Threat Modeling for Integrated Risk Management

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Read About PASTA Threat Modeling
Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

In this article, VerSprite’s Offensive Security team explore the difference between common security risk assessments (vulnerability assessment, penetration testing, and red teaming) as we walk you through real exploits we have used to test organizations’ security protocols.

Read About Criminal Tactics

Category

View All
[Video] Abusing Insecure WCF Endpoints
VerSprite Security Resources, Videos

[Video] Abusing Insecure WCF Endpoints

Exploiting the Dolphin Browser for Android’s Backup & Restore Feature
Application Security, Mobile Security Testing, Security Research

Exploiting the Dolphin Browser for Android’s Backup & Restore Feature

Shellcoding an Arm64 In-Memory Reverse TCP Shell with Frida
Application Security, Mobile Security Testing, Security Research

Shellcoding an Arm64 In-Memory Reverse TCP Shell with Frida

Fixing Threat Models with OWASP Efforts
VerSprite Security Resources, Videos

Fixing Threat Models with OWASP Efforts

Swimming in the Deep End: Taking a Deeper Look at the Use Cases of JEA
Application Security, Security Governance

Swimming in the Deep End: Taking a Deeper Look at the Use Cases of JEA

Frida Engage Part One | Building an ELF Parser with Frida
Application Security, Mobile Security Testing, Security Research

Frida Engage Part One | Building an ELF Parser with Frida

Role of Zero Trust in Future Enterprise Security
VerSprite Security Resources, Webinars

Role of Zero Trust in Future Enterprise Security

Risk Centric Threat Models for Internet of Things (IoT) & Medical Devices
Application Security, Threat Modeling

Risk Centric Threat Models for Internet of Things (IoT) & Medical Devices

Why Threat Hunting Should Be Included in Your Mergers & Acquisitions Playbook
Digital Forensics & Incident Response

Why Threat Hunting Should Be Included in Your Mergers & Acquisitions Playbook

Adding and Using JEA in Your Windows Environment
Data Privacy & Development of Security Policies, Security Operations

Adding and Using JEA in Your Windows Environment

AppSec EU 2017: Modeling Threats for Applications
VerSprite Security Resources, Videos, Threat Modeling

AppSec EU 2017: Modeling Threats for Applications

SSL/TLS Security – A Simplified, Quick Guide
Application Security, Information Security Management System (ISMS), Security Governance

SSL/TLS Security – A Simplified, Quick Guide

Risk-Centric Application Threat Models
VerSprite Security Resources

Risk-Centric Application Threat Models

Unknown jQuery-File-Upload Vulnerability Used for Years
Threat & Vulnerability Management

Unknown jQuery-File-Upload Vulnerability Used for Years

Risk Centric Application Threat Modeling | NYC OWASP 2016
VerSprite Security Resources

Risk Centric Application Threat Modeling | NYC OWASP 2016

ci cd security, devsecops ci/cd, web app pen testing

Subscribe for Our
Updates

Please enter your email address and receive the latest updates