Our team researches and documents bleeding-edge security concepts and hacking techniques. This blog explores these topics and more to keep you informed.

User Enumeration in a Production Environment – Credential Stuffing 101

By Ryan Fisher | July 19, 2021 | Blog

Ah yes, credential stuffing! Almost as common as thanksgiving stuffing, yet as distasteful as black Friday shopping. Credential stuffing is especially effective when it’s coupled with user enumeration. The likelihood of user enumeration attacks

Dangling DNS: Low Hanging Fruit with Severe Consequences

By Ryan Fisher | April 28, 2021 | Blog

In this blog we discuss dangling DNS and how if left unresolved, an attacker can mar the reputation of a victim company. First let’s start by defining Domain Name System (DNS). A Domain Name System is an assortment of databases that

