Attack paths, testing notes and defensive guidance
Technical research and practical buyer guides written around the work our offensive security team performs: scoping, exploitation, evidence, remediation and retesting.

Supabase Security: Lessons from Real Pentests
Harden Supabase with the following cheat-sheet with clear steps for RLS, schemas, Edge Functions, Storage, CORS and tokens. Built from real audits.
Latest Articles
Discover 16 articles on cybersecurity and penetration testing.

Internal Penetration Testing: Scope and Methods
Plan an internal penetration test around identity, segmentation and critical assets, with practical guidance on scope, access, evidence, reporting and retesting.

How Often Should Penetration Testing Be Done?
Learn when annual, quarterly and change-triggered penetration testing make sense, with a practical risk-based schedule for UK organisations.

Penetration Testing for MSPs: Delivery Guide
A practical guide for MSPs adding penetration testing to their services, covering permissions, scoping, supplier selection, client separation, reporting and retesting.

Penetration Testing vs PTaaS: What Actually Changes?
Understand the real difference between a one-off penetration test and PTaaS, including delivery workflow, tester involvement, reporting, retesting and cost.

Penetration Testing for Startups: A Founder's Guide
A founder's guide to scoping penetration testing around launches, customer assurance and limited budgets, including the responsible use of AI.
Stay Updated with Security Insights
Get the latest cybersecurity news, threat intelligence, and security best practices delivered to your inbox.
