Explore the Minds of The NetSPI Agents

Advance your proactive security knowledge by learning from some of the brightest people in cybersecurity. Our executive blog gives perspective on industry trends, while Hack Responsibly dives deep into the latest CVEs and tactical approaches our team takes. Take your pick!

NetSPI Updates

A New Era for Offensive Security

Today, NetSPI and Synack announced a definitive agreement to merge, backed by KKR, forming the industry’s leading offensive cybersecurity platform.

Learn More
AI/ML Pentesting

Introducing EchoBench: A Human Calibrated Benchmark for Autonomous Pentesting

NetSPI introduces EchoBench, a human-calibrated benchmark for autonomous AI web app pentesting. EchoBench measures finding fidelity, difficulty-reach, OWASP breadth, and repeatability to accurately gauge AI security capabilities against real human outcomes.

Learn More
Social Engineering

Verifying the Verifier – Assessing Identity Verification Services

As AI-driven identity verification becomes the front line of defense against fraud, this piece breaks down how to stress-test these systems, from building synthetic IDs and deepfake voices to uncovering the gaps attackers are most likely to exploit.

Learn More
Red Teaming

BOFScale: A CDN-Fronted Tailnet from a BOF-PE

Discover how BOFScale leverages a modified Tailscale daemon compiled as a BOF-PE to seamlessly hide C2 traffic and DERP relays behind CDNs using standard WebSockets.

Learn More
Red Teaming

Stealing the Artifact – JFrog Artifactory Vulnerability

Discover how NetSPI uncovered and reported vulnerabilities in JFrog Artifactory that allowed unauthenticated attackers to bypass authentication and steal an arbitrary artifact.

Learn More
Cloud Pentesting

Azure VM Command Execution using Third-Party Extensions – Salt Minion

In part two of our series, learn how attackers can leverage this legitimate tool to achieve undetected, arbitrary code execution as root, and explore the key detection methods you need to protect your Linux and Windows environments.

Learn More
Cloud Pentesting

Azure VM Command Execution using Third-Party Extensions – Chef

Discover how a privileged principal in Azure can abuse third-party extensions like Chef to achieve arbitrary command execution on target VMs by deploying malicious cookbooks to extract Managed Identity tokens.

Learn More
Critical Vulnerability

CVE-2026-63030 & CVE-2026-60137: WordPress Core Pre-Authentication RCE Overview & Takeaways

These vulnerabilities allow attackers to chain an unauthenticated WordPress REST API flaw with a SQL injection bug to fully take over sites running Core 6.9.0–6.9.4 or 7.0.0–7.0.1.

Learn More
Network Pentesting

ADPathFinder: OpenGraph Attack Path Mapping in BloodHound CE

ADPathFinder unifies SharpHound data with OpenGraph collectors like MSSQLHound and ConfigManBearPig. Discover how this tool maps complex, cross-dataset privilege escalation paths across AD, ADCS, MSSQL, and SCCM, and brings vital graph context to your password audits.

Learn More
NetSPI Updates

Confidence Over Noise: Introducing Continuous AI Findings Validation

NetSPI’s Continuous AI Findings Validation service applies expert human judgment to AI-generated security findings, eliminating false positives and verifying severity so security teams can trust, prioritize, and act with confidence instead of chasing noise.

Learn More
Cloud Pentesting

Bypassing Microsoft Entra Conditional Access Policies via Nested App Authentication

Discover how attackers bypassed Microsoft Entra Conditional Access Policies using Nested App Authentication (NAA) flows in this technical vulnerability breakdown.

Learn More
Social Engineering

I’m Just Asking Questions: Social Engineering as a Reporter 

Dive into this real-world social engineering assessment where a fake anonymous tip and an adversary-in-the-middle framework tested the limits of an organization’s security policies.

Learn More