Explore the Minds of The NetSPI Agents

Advance your proactive security knowledge by learning from some of the brightest people in cybersecurity. Our executive blog gives perspective on industry trends, while Hack Responsibly dives deep into the latest CVEs and tactical approaches our team takes. Take your pick!

Security Industry Trends

What Cybersecurity Actually Looks Like in 2026

Discover 2026’s top cybersecurity trends: AI, cloud, social engineering, and digital resilience. Stay ahead with a proactive security strategy.

Learn More
Penetration Testing

Pentesting for Third-Party Risk Management: What CISOs Should Demand from Vendors

 Learn why traditional third-party risk management fails and what CISOs must demand from vendors, including continuous pentesting, to manage third-party risk effectively. 

Learn More
Mobile Application Pentesting

Public Report: Android Quick Share Application Penetration Test

NetSPI’s penetration test of Protocol X in Google Pixel 10 Pro’s Quick Share Extension found one low-severity issue, now resolved. Read the full report.

Learn More
Penetration Testing

Navigating the PTaaS Market with the GigaOm Radar Report 

Explore the GigaOm Radar for Penetration Testing as a Service (PTaaS) to see why NetSPI was named a Leader and Outperformer.

Learn More
Detective Controls Testing

Why Security Leaders Can’t Ignore macOS Anymore

With rising macOS threats, many security controls fail. Learn how to validate your detective controls and close the Mac detection gap to mitigate business risk.

Learn More
Compliance

Turning Regulation into a Resilience Advantage: 6 Top Pentesting Tips for CISOs

Regulations and cyber threats are moving at breakneck speed. And so are expectations from boards, regulators, and auditors. For today’s CISOs, the real question isn’t “Are we compliant?”  it’s “Are we resilient?”

Learn More
CISO Perspectives

Webinar Recap: How to Keep Your CISO Out of Jail

Learn how CISOs can reduce legal risk by documenting decisions, fostering security culture, and aligning cybersecurity with business goals.

Learn More
Cloud Pentesting

Decrypting VM Extension Settings with Azure WireServer

The Azure WireServer service provides configuration data to Azure Virtual Machines. Join us as we walkthrough the process of decrypting that data to find sensitive information.

Learn More
AI/ML Pentesting

How App Integration Transactions Increase the Attack Surface of LLMs

Learn how OpenAI’s AppsSDK, AgentKit, and “Buy It” turn LLMs into transactional agents—expanding security risks from rapid rollout, prompt injection, and access control gaps.

Learn More
Application Pentesting

API Security Testing: The Overlooked Frontline in Application Penetration Testing 

In this article, NetSPI Managing Director Nate Brown, highlights the importance of securing APIs to protect against cyberattacks and data breaches.

Learn More
Ransomware

Webinar Recap: Everything You Wish You Didn’t Have to Know About Ransomware

Learn about the evolving ransomware landscape, including how attackers operate, the roles within the ransomware economy, and actionable strategies to strengthen your defenses.

Learn More
Security Industry Trends

6 Security Trends Every CISO Should Know 

Discover top security trends from AI governance to Zero Trust. Explore actionable insights tailored to help CISOs strengthen defenses.

Learn More