SECURITY RESOURCES

Black Hat minded security exploit development
What is Threat Modeling?

Threat Modeling

What is Threat Modeling?

A common question asked by people new to the specifics of cybersecurity. Threat modeling is a practical measure used to protect your business’ data and networks from cyber threats and attacks.

Read About Threat Modeling
What Is PASTA Threat Modeling? 7 Stages Explained for Modern Security

What Is PASTA Threat Modeling? 7 Stages Explained for Modern Security

PASTA is not a complicated static framework. It’s an agile methodology that breaks down and solves complex cybersecurity tasks, allows scaling, and evolves with the cybersecurity landscape and business goals.

Read About PASTA Threat Modeling
PASTA Threat Modeling for Integrated Risk Management

Cybersecurity Library, VerSprite Security Resources, Threat Modeling, Ebooks & Guides

PASTA Threat Modeling for Integrated Risk Management

PASTA is the Process for Attack Simulation & Threat Analysis and is a risk-centric threat modeling methodology aimed at identifying viable threat patterns against an application or system environment.

Download PASTA Threat Modeling eBook
Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

Attacking Your Assumptions: How Criminal Tactics Can Save Your Organization

In this article, VerSprite’s Offensive Security team explore the difference between common security risk assessments (vulnerability assessment, penetration testing, and red teaming) as we walk you through real exploits we have used to test organizations’ security protocols.

Read About Criminal Tactics

Category

View All
Addressing Cybercrime via PASTA Threat Modeling
Slides & Presentations, VerSprite Security Resources, Threat Modeling

Addressing Cybercrime via PASTA Threat Modeling

iOS Reverse Engineering: Part Two – Debugging and Tracing with LLDB
Application Security, Mobile Security Testing, Security Research

iOS Reverse Engineering: Part Two – Debugging and Tracing with LLDB

iOS Reverse Engineering: Part One – Configuring LLDB
Application Security, Mobile Security Testing, Security Research

iOS Reverse Engineering: Part One – Configuring LLDB

Experiments with JSON-IO, Serialization, Mass Assignment, and General Java Object Wizardry
Application Security, Security Research

Experiments with JSON-IO, Serialization, Mass Assignment, and General Java Object Wizardry

Quick and Dirty Web Services Testing with Suds and Burp Suite
Application Security, Security Research

Quick and Dirty Web Services Testing with Suds and Burp Suite

Unsafe Application State Restoration (iOS)
Application Security, Mobile Security Testing, Risk Assessments

Unsafe Application State Restoration (iOS)

Application Security On A Dime
Slides & Presentations, VerSprite Security Resources

Application Security On A Dime

Exploiting XML Serialization in Python
Application Security, Security Research

Exploiting XML Serialization in Python

Force Feeding Enterprise Security Failures
Application Security, Data Privacy & Development of Security Policies

Force Feeding Enterprise Security Failures

Error 500 | Exceptions That Will Get You Owned – BSidesATL 2013
VerSprite Security Resources, Videos

Error 500 | Exceptions That Will Get You Owned – BSidesATL 2013

Contact VerSprite Penetration Testing
Red Teaming and Social Engineering, VerSprite Security Resources

Contact VerSprite Penetration Testing

Making Web Security PASTA – BSidesATL 2011
Slides & Presentations, VerSprite Security Resources, Web Application Security, Threat Modeling

Making Web Security PASTA – BSidesATL 2011

How STIX Cyber Campaigns Provide Intel on Geopolitical and Cybersecurity Risks
Integrated Risk Management (IRM)

How STIX Cyber Campaigns Provide Intel on Geopolitical and Cybersecurity Risks

VerSprite Cyberwatch
Security Research

VerSprite Cyberwatch

ci cd security, devsecops ci/cd, web app pen testing

Subscribe for Our
Updates

Please enter your email address and receive the latest updates