NetSPI Profile Banner
NetSPI Profile
NetSPI

@NetSPI

Followers
4K
Following
1K
Media
4K
Statuses
6K

The Proactive Security Solution | Securing the most trusted brands on Earth #PenetrationTesting #proactivesecurity

Minneapolis, MN
Joined February 2009
Don't wanna be here? Send us removal request.
@NetSPI
NetSPI
7 days
🎙️ Welcome to the Hack Responsibly Podcast! A new series hosted by VP Research @kfosaaen. First guest: Director of Social Engineering Patrick Sayler discusses real-world stories, MFA fatigue, and device code phishing. Listen to the full episode! https://t.co/5lQDnn3zAg
1
0
2
@NetSPI
NetSPI
9 days
Immerse yourself in the pentesting world and join NetSPI University – a 6-month training opportunity in Minneapolis. Apply today to get hands-on experience with penetration tests & the opportunity to work on web application customer projects! https://t.co/rXgDNdiK0v
0
0
0
@NetSPI
NetSPI
14 days
Read our new blog post written by @kfosaaen: Decrypting VM Extension Settings with Azure WireServer https://t.co/nuROLXAQfU Karl dives into leveraging the Azure WireServer service to decrypt protected settings, offering scripts for both Windows & Linux VMs.
0
3
5
@NetSPI
NetSPI
17 days
Think bug bounty programs are just about software vulnerabilities? Think again. https://t.co/EFWLyOhKFE
0
0
0
@NetSPI
NetSPI
21 days
Want to start your career in #pentesting? Join NetSPI U to get hands-on penetration testing experience and work on web application projects. Apply today: https://t.co/FKNOu1om0o #Portland #Oregon #careers
0
1
2
@NetSPI
NetSPI
23 days
Apply to become part of NetSPI University in Minneapolis, MN – a 6-month in-person training opportunity to get hands-on penetration testing experience and work on web application pentesting projects: https://t.co/VlEgYsfHZv
0
0
0
@NetSPI
NetSPI
1 month
Join NetSPI University to get hands-on penetration testing experience and learn about NetSPI’s Proactive Security approach. Read our full job description and apply today: https://t.co/XGwXfJnunF #NetSPIUniversity #pentesting #career #hiring
0
0
0
@NetSPI
NetSPI
1 month
From phishing emails to impersonation tactics, attackers are constantly finding new ways to exploit human behavior. Read about real-world social engineering stories that highlight the tactics used by threat actors. https://t.co/6QMbZmTU1w #cybersecurityawarenessmonth
0
1
0
@NetSPI
NetSPI
2 months
Can AI write secure code? We put it to the test. Our Director of Technical Enablement, Mel Miller, shares the results of our latest experiment: building & testing a web application coded almost exclusively by AI. Read the full analysis here: https://t.co/CMWlLnolry
2
1
2
@NetSPI
NetSPI
2 months
Today we celebrate International Women in Cyber Day—honoring innovators, leaders, & trailblazers driving cybersecurity forward. Thank you to the women protecting our digital world & inspiring the next generation of talent. #womenincyber #internationalwomenincyberday #pentesting
0
0
1
@NetSPI
NetSPI
3 months
New research from NetSPI from @kfosaaen & Thomas Elling reveals how Azure tenant IDs leaked through Entra ID authentication maps cloud resources to their owners. Check out the new ATEAM tool for automated discovery. Full technical breakdown: https://t.co/VKUJiDtiTt
0
4
14
@NetSPI
NetSPI
4 months
New Azure App Services security research by NetSPI's @kfosaaen TL;DR: Users w/ Contributor permissions can extract & decrypt authentication tokens to impersonate other users accessing the application. Read more: https://t.co/YJt36AFZte #Azure #CloudSecurity
0
3
11
@NetSPI
NetSPI
4 months
New Vuln Research: NetSPI Principal Consultant Ceri Coburn exposes how Forescout SecureConnector agents can be hijacked via a named pipe vulnerability (CVE-2025-4660), turning endpoint security tools into attacker-controlled C2 channels. Read more: https://t.co/BYe2CjiWHk
1
13
46
@NetSPI
NetSPI
4 months
NetSPI Security Consultant Mayuri Bochare has published an insightful deep-dive on securing Java Spring applications through code review. 👉 Read the full article: https://t.co/TVEm9zW3Jw #proactivesecurity #JavaSecurity #SecureCodeReview
0
2
7
@NetSPI
NetSPI
4 months
NetSPI Principal Security Consultant Jason Juntunen recently published findings on a Remote Code Execution vulnerability in SailPoint's IQService component. 👉 Read the full technical breakdown: https://t.co/wPrCglC58X #proactivesecurity #VulnerabilityResearch
0
6
15
@NetSPI
NetSPI
4 months
New NetSPI research by @kfosaaen reveals Azure Load Testing attack vector via JMeter/Locust configs. Read more: https://t.co/EGdDwcsNrn
0
0
1
@NetSPI
NetSPI
5 months
Microsoft Defender for Identity vulnerability (CVE-2025-26685) allows unauthenticated attackers to capture Net-NTLM hashes and potentially gain AD access. Security tools can become attack vectors - understanding this risk is crucial: https://t.co/mQGrn7tDNo
0
2
7
@NetSPI
NetSPI
5 months
NetSPI's @PANTH13R and Larry Trowell developed RayV Lite—a low-cost laser fault injection tool that makes advanced hardware security testing accessible beyond nation-states using open-source hardware & inexpensive IR-leaking lasers. ➡️ https://t.co/13uoSiH1ON
0
1
2
@NetSPI
NetSPI
5 months
⚡️ Introducing our latest e-book, Continuous Threat Exposure Management (CTEM) For Dummies, NetSPI Special Edition – your ultimate intro to #CTEM! Dive into the world of #proactivesecurity with this comprehensive guide. Get your free copy now ⬇️ https://t.co/SkNLK5wIcR
0
0
0
@NetSPI
NetSPI
5 months
Read the details on how multiple arbitrary SYSTEM file delete flaws (CVE-2025-23009, CVE-2025-23010) can be exploited for privilege escalation. âś… SonicWall has patched these issues in NetExtender v10.3.2 https://t.co/mtiFvkrzmB
0
3
3