SECURITY RESOURCES

Black Hat minded security exploit development
What is Threat Modeling?

Threat Modeling

What is Threat Modeling?

A common question asked by people new to the specifics of cybersecurity. Threat modeling is a practical measure used to protect your business’ data and networks from cyber threats and attacks.

Read About Threat Modeling
A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

A Pasta Threat Modeling Solution for Complex Cybersecurity Tasks

PASTA is not a complicated static framework. It’s an agile methodology that breaks down and solves complex cybersecurity tasks, allows scaling, and evolves with the cybersecurity landscape and business goals.

Read About PASTA Threat Modeling
The Process for Attack Simulation and Threat Analysis

Cybersecurity Library, VerSprite Security Resources, Threat Modeling, Ebooks & Guides

The Process for Attack Simulation and Threat Analysis

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Download PASTA Threat Modeling eBook
Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

In this article, VerSprite’s Offensive Security team explore the difference between common security risk assessments (vulnerability assessment, penetration testing, and red teaming) as we walk you through real exploits we have used to test organizations’ security protocols.

Read About Criminal Tactics

Category

View All
Critical Vulnerability in Apache Struts2
Threat & Vulnerability Management

Critical Vulnerability in Apache Struts2

VerSprite Reacts: Bloomberg’s Exposé on China
Integrated Risk Management (IRM)

VerSprite Reacts: Bloomberg’s Exposé on China

Statistical Methods for Triaging
Slides & Presentations, VerSprite Security Resources, Webinars

Statistical Methods for Triaging

Abusing Insecure Windows Communication Foundation (WCF) Endpoints
Research Advisories, Slides & Presentations, VerSprite Security Resources, Webinars

Abusing Insecure Windows Communication Foundation (WCF) Endpoints

Threat Hunt: What’s on Your Network?
VerSprite Security Resources

Threat Hunt: What’s on Your Network?

What CISOs Need to Know About Geopolitical Risk
Information Security Management System (ISMS), Integrated Risk Management (IRM)

What CISOs Need to Know About Geopolitical Risk

How Hackers Control & Steal Vehicles Remotely
Security Research

How Hackers Control & Steal Vehicles Remotely

Plain HTTP Websites Labeled “Not Secure”
Application Security, Threat & Vulnerability Management

Plain HTTP Websites Labeled “Not Secure”

Ekoparty 2018
VerSprite Security Resources

Ekoparty 2018

Evolving with Cybercriminals: How to Respond to Social Engineering Techniques
Cybersecurity Library, VerSprite Security Resources, Ebooks & Guides

Evolving with Cybercriminals: How to Respond to Social Engineering Techniques

APT MiTM (Man-in-The-Middle) Package Injection
Security Research

APT MiTM (Man-in-The-Middle) Package Injection

Java JSON Deserialization: Memory Corruption Vulnerability
Security Research

Java JSON Deserialization: Memory Corruption Vulnerability

How to Manage & Monitor Your Cloud Infrastructure
Cloud Security, Regulatory Compliance

How to Manage & Monitor Your Cloud Infrastructure

Phishing for Files with Airmail 3 for Mac
Security Research

Phishing for Files with Airmail 3 for Mac

Improving Supply Chain of Medical Devices
Geopolitical Risk, Possible Use Cases, VerSprite Security Resources

Improving Supply Chain of Medical Devices

ci cd security, devsecops ci/cd, web app pen testing

Subscribe for Our
Updates

Please enter your email address and receive the latest updates