Blog
Pentest of a 100% vibe-encoded app: complete security analysis of an AI-generated app
Introduction: vibe coding meets cybersecurity The vibe coding is radically transforming the way applications are developed. Thanks to AI assistants and LLMs, it is now possible to generate a complete application - frontend, backend and API - simply by describing the...
What is an intrusion test?
A penetration test is a proactive cybersecurity measure that involves simulating cyberattacks to assess an information system’s resilience against potential threats. Also known as a “pentest,” it allows organizations to put themselves in a hacker’s shoes by...
How do you perform a penetration test on a web application?
Creating a penetration test for a web application is a complex process that requires technical expertise, a rigorous methodology, and in-depth knowledge of current cyber threats. This process involves simulating real-world attacks on an online application to assess...
Industrial Pentest: How can it help you identify and correct vulnerabilities?
In the complex world of industrial systems, security is a crucial priority. Have you ever considered the potential vulnerabilities that could compromise the robustness of your infrastructure? That's what we're going to look at in this blog post. But first, imagine:...
Bypassing Windows Defender Antivirus in 2026: Evasion Techniques Using Direct System Calls and XOR Encryption – Part 1
Reading Time: 10 minutesTechnical Level: Advanced Update: This post was last updated in June 2026 (mainly to add explanations about the compilation process, but the technique still works). Introduction As pentesters, we always have to keep up to date with the latest...
In-store physical Pentest: feedback on a real case study
Cybersecurity isn't limited to the digital realm. Physical attacks are also part of the tactics used by cybercriminals. The principle is simple: to exploit a human or physical vulnerability within your company to gain access to your data or disrupt your operations....
Phishing campaign: Are decision-makers vulnerable?
Phishing: an underestimated threat Cybersecurity is a major issue for companies, and malicious phishing campaigns are among the most frequent threats. Yet corporate decision-makers, including CEOs and CTOs, are sometimes the weakest links when it comes to raising...
How to obtain a time-based blind SQL injection and automate by modifying SQLMAP?
The cybersecurity of web applications is a crucial issue in a world where digital data has become a major asset. Among the most subtle threats, "time-based blind SQL injection" vulnerabilities stand out for their ability to exfiltrate data without triggering obvious...
Your security is important to us. What about you?
Take advantage of a free 30-minute functional audit to assess your current situation.








