Pentera
4.2K posts


𝗦𝗮𝗻 𝗙𝗿𝗮𝗻𝗰𝗶𝘀𝗰𝗼, 𝘄𝗲’𝗿𝗲 𝗮𝗹𝗺𝗼𝘀𝘁 𝘁𝗵𝗲𝗿𝗲. 𝗣𝗲𝗻𝘁𝗲𝗿𝗮 𝗶𝘀 𝗵𝗲𝗮𝗱𝗶𝗻𝗴 𝘁𝗼 𝗥𝗦𝗔𝗖 𝟮𝟬𝟮𝟲.
⚡ Experience proactive cybersecurity in action.
📍 Visit us at Booth N-4529 for live exposure validation demos.
🎤 Don’t miss our session with Vadim Sedletsky on turning threat intelligence into continuous security validation:
🗓 Tuesday, March 24
⏰ 2:40 PM
📍 Booth #1400
🍸 Join us for Happy Hour! Great drinks, good food, and even better security conversations:
🗓 Monday, March 23
⏰ 6–9 PM
🤝 Want something more focused? Book a meeting with our team.
Save your spot, RSVP, and learn more:
🔗 okt.to/91RbJi
Test Fast. Fix Fast.
English

𝗬𝗼𝘂𝗿 𝗱𝗮𝘀𝗵𝗯𝗼𝗮𝗿𝗱 𝗶𝘀 𝗾𝘂𝗶𝗲𝘁. 𝗡𝗼 𝗮𝗹𝗲𝗿𝘁𝘀, 𝗻𝗼 𝗻𝗼𝗶𝘀𝗲, 𝗲𝘃𝗲𝗿𝘆𝘁𝗵𝗶𝗻𝗴 𝗶𝘀 𝗴𝗿𝗲𝗲𝗻.
That’s great. OR it’s exactly the moment you should be asking harder questions.
Experienced cyber defenders know silence doesn’t equal security. It just means that your weakest defences haven’t been tested and identified just yet. As much as they like seeing green dashboard, they know they cannot buy it.
Take the Cyber GOAT Attitude quiz and see what kind of defender you are.
Share your result in the comments, and we’ll send you a limited edition GOAT T-shirt.
Every comment wins.
𝗧𝗮𝗸𝗲 𝘁𝗵𝗲 𝗾𝘂𝗶𝘇 >>>
okt.to/iqozGx

English

𝗦𝗮𝗻 𝗙𝗿𝗮𝗻𝗰𝗶𝘀𝗰𝗼, 𝗴𝗲𝘁 𝗿𝗲𝗮𝗱𝘆. 𝗣𝗲𝗻𝘁𝗲𝗿𝗮 𝗶𝘀 𝗰𝗼𝗺𝗶𝗻𝗴 𝘁𝗼 𝗥𝗦𝗔𝗖 𝟮𝟬𝟮𝟲.
We’re heading to San Francisco and bringing proactive cybersecurity energy.
📍𝗩𝗶𝘀𝗶𝘁 𝗣𝗲𝗻𝘁𝗲𝗿𝗮 𝗮𝘁 𝗕𝗼𝗼𝘁𝗵 𝗡-𝟰𝟱𝟮𝟵 to see Security Validation in action.
🎤 J𝗼𝗶𝗻 𝗼𝘂𝗿 𝗹𝗶𝘃𝗲 𝘀𝗲𝘀𝘀𝗶𝗼𝗻 on how to operationalize threat intelligence with continuous security validation with Pentera’s Vadim Sedletsky, Director of Field Product Manager:
🗓 Tuesday, March 24
⏰ 2:40 PM
📍 Speaking Location: Booth #1400
🍸𝗖𝗼𝗺𝗲 𝘁𝗼 𝗣𝗲𝗻𝘁𝗲𝗿𝗮’𝘀 𝗛𝗮𝗽𝗽𝘆 𝗛𝗼𝘂𝗿 𝗳𝗼𝗿 𝗱𝗿𝗶𝗻𝗸𝘀, 𝗳𝗼𝗼𝗱, 𝗮𝗻𝗱 𝗿𝗲𝗮𝗹 𝘀𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗰𝗼𝗻𝘃𝗲𝗿𝘀𝗮𝘁𝗶𝗼𝗻𝘀:
🗓 Monday, March 23
⏰ 6-9 PM
🤝 𝗕𝗼𝗼𝗸 𝗮 𝗺𝗲𝗲𝘁𝗶𝗻𝗴 𝘄𝗶𝘁𝗵 𝗼𝘂𝗿 𝘁𝗲𝗮𝗺. Schedule a strategy meeting at the Marriott Marquis for a focused conversation on proactive security validation.
𝗕𝗼𝗼𝗸 𝗮 𝗺𝗲𝗲𝘁𝗶𝗻𝗴, 𝗥𝗦𝗩𝗣 𝗳𝗼𝗿 𝗛𝗮𝗽𝗽𝘆 𝗛𝗼𝘂𝗿, 𝗮𝗻𝗱 𝗴𝗲𝘁 𝗮𝗹𝗹 𝘁𝗵𝗲 𝗱𝗲𝘁𝗮𝗶𝗹𝘀 𝗵𝗲𝗿𝗲:🔗 okt.to/71mp3i
Test Fast. Fix Fast.
#RSAC2026 #cybersecurity
English

𝗟𝗶𝘃𝗲 𝗮𝘁 𝗥𝗦𝗔𝗖: 𝗪𝗵𝗮𝘁 𝗱𝗼𝗲𝘀 𝘁𝗵𝗿𝗲𝗮𝘁-𝗹𝗲𝗱 𝗽𝗲𝗻𝗲𝘁𝗿𝗮𝘁𝗶𝗼𝗻 𝘁𝗲𝘀𝘁𝗶𝗻𝗴 𝗹𝗼𝗼𝗸 𝗹𝗶𝗸𝗲 𝗶𝗻 𝗽𝗿𝗮𝗰𝘁𝗶𝗰𝗲?
Join @Vadim Sedletsky, Director of Field Product Manager at Pentera to find out.
Threat Led Penetration Testing - Once Theory, Now Practice.
RSA Conference
🗓 Tuesday, March 24
⏰ 2:40 PM PT
📍 Booth #1400 Moscone South
In this session, Vadim will explore how continuous threat feeds are evolving into continuous threat testing, validating your defenses against what matters now.
Learn how operationalizing real adversary insights with ongoing security validation helps you:
• Prioritize relevant cyber exposures
• Confirm what attackers can exploit today
• Fix with clarity and confidence
If you’re looking to move from reactive to relevant, this is a session you won’t want to miss.
#RSAC2026 #CyberSecurity #SecurityValidation

English

𝗥𝗦𝗔𝗖 𝗼𝗽𝗲𝗻𝗶𝗻𝗴 𝗻𝗶𝗴𝗵𝘁 𝗱𝗲𝘀𝗲𝗿𝘃𝗲𝘀 𝗯𝗲𝘁𝘁𝗲𝗿 𝘁𝗵𝗮𝗻 𝘁𝗵𝗲 𝘀𝗮𝗺𝗲 𝗰𝗿𝗼𝘄𝗱𝗲𝗱 𝗯𝗮𝗿.
Together with Armis, we are hosting a PRIVATE HAPPY HOUR at a speakeasy for security leaders who prefer cyber conversations in a more relaxed setting 🍻.
Here’s how it works:
1️⃣ RSVP to request your access
2️⃣ Receive your unique access code
3️⃣ Unlock the secret location
4️⃣ Authenticate at the door and step inside
📅 March 23
⏰ 6–9 PM
Cyber vibes. Great drinks. Even better people.
Space is limited and access is confirmed in advance.
𝗥𝗲𝗾𝘂𝗲𝘀𝘁 𝘆𝗼𝘂𝗿 𝗽𝗮𝘀𝘀𝘄𝗼𝗿𝗱 𝗵𝗲𝗿𝗲:
okt.to/RVB9YU
#RSAC2026 #CyberSecurity #HappyHour #SecurityValidation

English

𝗛𝗮𝗽𝗽𝗲𝗻𝗶𝗻𝗴 𝘁𝗼𝗱𝗮𝘆 𝗮𝘁 𝟭𝟭:𝟬𝟬 𝗔𝗠 𝗘𝗧: 𝗜𝗳 𝗔𝗜 𝗶𝘀 𝗼𝗽𝗲𝗿𝗮𝘁𝗶𝗻𝗴 𝗶𝗻𝘀𝗶𝗱𝗲 𝘆𝗼𝘂𝗿 𝗲𝗻𝘁𝗲𝗿𝗽𝗿𝗶𝘀𝗲, 𝗶𝘁 𝘀𝗵𝗼𝘂𝗹𝗱 𝗯𝗲 𝘁𝗲𝘀𝘁𝗲𝗱 𝗹𝗶𝗸𝗲 𝗮𝗻𝘆 𝗼𝘁𝗵𝗲𝗿 𝗮𝘁𝘁𝗮𝗰𝗸 𝘀𝘂𝗿𝗳𝗮𝗰𝗲.
Join Ryan Dorey, Director of Technical Advisors at Pentera, and Chris Cochran, Field CISO & VP of AI Security at SANS, as they break down what 300 U.S. CISOs revealed about AI security gaps and how leading teams are validating AI cyber risk.
We’ll cover:
• Where AI introduces new exposure
• Why legacy controls fall short
• How adversarial testing reveals real AI risk
Closing the AI Security Gap: What 300 CISOs Say They Are Missing
🎟 Last chance to join: okt.to/fIHb9x

English

𝗬𝗼𝘂 𝗰𝗮𝗻’𝘁 𝗱𝗲𝗳𝗲𝗻𝗱 𝘄𝗵𝗮𝘁 𝘆𝗼𝘂 𝗰𝗮𝗻’𝘁 𝘀𝗲𝗲.
Everyone is using AI apps and infrastructure - but most security teams still can’t see them clearly.
In fact, 70% of CISOs admit they lack visibility into AI as an attack surface.
See what 300 enterprise security leaders shared in the 2026 AI Security & Exposure Benchmark.
📊 𝗥𝗲𝗮𝗱 𝗺𝗼𝗿𝗲: okt.to/Uu52V6

English

𝗧𝗵𝗶𝗻𝗸 𝘆𝗼𝘂𝗿 𝗹𝗮𝗯 𝗲𝗻𝘃𝗶𝗿𝗼𝗻𝗺𝗲𝗻𝘁𝘀 𝗮𝗿𝗲𝗻’𝘁 𝗲𝘅𝗽𝗼𝘀𝗲𝗱? 𝗡𝗼𝘄 𝘆𝗼𝘂 𝗰𝗮𝗻 𝗮𝗰𝘁𝘂𝗮𝗹𝗹𝘆 𝘁𝗲𝘀𝘁 𝗮𝗻𝗱 𝗽𝗿𝗼𝘃𝗲 𝗶𝘁.
Pentera Labs latest research uncovered a growing blind spot: commonly used training and demo apps left publicly exposed, and in multiple cases, actively exploited.
To scale the hunt across thousands of deployments, we built SigInt: a Python-based framework that uses LLMs to intelligently fingerprint applications and discover exposed instances via Shodan and Censys, then verify and enrich the results.
SigInt includes:
• Confidence Scoring - Prioritizes findings based on validated exposure signals
• Enrichment Pipeline - Integrates IP intelligence, cloud provider detection, and attribution data
• Export & Analysis - Outputs validated results for deeper investigation and remediation workflows
Test your own environment.
𝗥𝗲𝗮𝗱 𝘁𝗵𝗲 𝗿𝗲𝘀𝗲𝗮𝗿𝗰𝗵.
okt.to/phFdDb

English

𝗜𝗳 𝗔𝗜 𝗮𝗽𝗽𝘀 𝗮𝗿𝗲 𝗯𝗲𝗶𝗻𝗴 𝘂𝘀𝗲𝗱 𝗯𝘆 𝗮𝗻𝘆𝗼𝗻𝗲 𝗶𝗻 𝘆𝗼𝘂𝗿 𝗼𝗿𝗴𝗮𝗻𝗶𝘇𝗮𝘁𝗶𝗼𝗻 𝗯𝘂𝘁 𝗻𝗼 𝗼𝗻𝗲 𝗵𝗮𝘀 𝘁𝗲𝘀𝘁𝗲𝗱 𝘁𝗵𝗲𝗶𝗿 𝘀𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗰𝗼𝗻𝘁𝗿𝗼𝗹𝘀, 𝘆𝗼𝘂’𝘃𝗲 𝗴𝗼𝘁 𝗮 𝗯𝗹𝗶𝗻𝗱 𝘀𝗽𝗼𝘁.
On March 11, join Ryan Dorey, Director of Technical Advisors at Pentera, and Chris Cochran, Field CISO & VP of AI Security at SANS Institute, for a live discussion on how security leaders face the challenges AI infrastructure creates.
Based on insights from 300 U.S. CISOs, we will discuss:
• Where AI introduces new cyber risk
• Why extending legacy controls beyond their design is not enough
• What proactive AI security looks like in practice
If AI apps are part of your infrastructure, this webinar is for you.
March 11 | 11:00 AM ET
Closing the AI Security Gap: What 300 CISOs Say They Are Missing
🎟 Register Today
okt.to/CgwU3j

English

𝗣𝗲𝗻𝘁𝗲𝗿𝗮 𝗦𝗞𝗢 𝟮𝟬𝟮𝟲 𝗶𝘀 𝗼𝗳𝗳𝗶𝗰𝗶𝗮𝗹𝗹𝘆 𝘄𝗿𝗮𝗽𝗽𝗲𝗱.
For three days, Penterians from across regions came together to sharpen how we execute. We aligned on strategy, refined our processes, strengthened cross-functional collaboration, and shared what’s working in the field.
Veterans brought hard-earned lessons. New team members brought a fresh perspective. Product and research teams equipped us with what’s ahead so we can engage the market with clarity and confidence.
We left aligned on our 2026 priorities and how we win together.
Now it’s time to execute.
Thank you to every Penterian who showed up prepared, focused, and ready to raise the bar.
Pentera. Be Proactive.
#SKO2026 #CyberSecurity #CTEM #EnterpriseSecurity




English

𝗠𝗼𝘀𝘁 𝗖𝗜𝗦𝗢𝘀 𝗮𝗱𝗺𝗶𝘁 𝘁𝗵𝗲𝘆 𝗰𝗮𝗻𝗻𝗼𝘁 𝗰𝗹𝗲𝗮𝗿𝗹𝘆 𝘀𝗲𝗲 𝗵𝗼𝘄 𝗔𝗜 𝗶𝘀 𝗯𝗲𝗶𝗻𝗴 𝘂𝘀𝗲𝗱 𝗮𝗰𝗿𝗼𝘀𝘀 𝘁𝗵𝗲𝗶𝗿 𝗲𝗻𝘁𝗲𝗿𝗽𝗿𝗶𝘀𝗲.
Fewer can explain how it is being tested to prove it can withstand an attack, if it's being tested at all.
On March 11, Ryan Dorey from Pentera and Chris Cochran, Field CISO and VP of AI Security at SANS Institute, will unpack what 300 U.S. CISOs revealed about AI security gaps and what those gaps mean in practice.
In this session, we will cover:
• Where AI visibility breaks down
• Why legacy security controls are being stretched beyond their design
• How curent testing approaches leave AI environments exposed to cyber risk
• What adversarial testing reveals about AI-driven attack paths
If AI is operating inside your environment, this discussion matters.
March 11 | 11:00 AM ET
Closing the AI Security Gap: What 300 CISOs Say They Are Missing
🎟 Register here: okt.to/6bzPDi

English

𝗔𝗜 𝗮𝗱𝗼𝗽𝘁𝗶𝗼𝗻 𝗶𝘀 𝘂𝗻𝗶𝘃𝗲𝗿𝘀𝗮𝗹, 𝗱𝗲𝗽𝗹𝗼𝘆𝗲𝗱 𝗮𝗰𝗿𝗼𝘀𝘀 𝟭𝟬𝟬% 𝗼𝗳 𝗲𝗻𝘁𝗲𝗿𝗽𝗿𝗶𝘀𝗲𝘀. 𝗔𝗜 𝘀𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗶𝘀𝗻’𝘁.
Pentera’s 𝗔𝗜 𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆 & 𝗘𝘅𝗽𝗼𝘀𝘂𝗿𝗲 𝗦𝘂𝗿𝘃𝗲𝘆 𝟮𝟬𝟮𝟲, based on insights from 𝟯𝟬𝟬 𝗨.𝗦. 𝗖𝗜𝗦𝗢𝘀, reveals:
• ~70% lack visibility into AI as an attack surface
• 75% rely on legacy controls to secure AI-driven workflows
• 50% lack the internal expertise required to validate AI security risks
Security teams know it’s there. Few can prove how those AI systems can be exploited, how they connect to the broader attack surface, or what the business impact would be if compromised.
📊 𝗥𝗲𝗮𝗱 𝘁𝗵𝗲 𝗳𝘂𝗹𝗹 𝗿𝗲𝗽𝗼𝗿𝘁: okt.to/9M4tD2
#AISecurity #ExposureManagement
English

𝗠𝗼𝘀𝘁 𝗰𝘆𝗯𝗲𝗿 𝗿𝗶𝘀𝗸 𝗮𝘀𝘀𝗲𝘀𝘀𝗺𝗲𝗻𝘁𝘀 𝘀𝘁𝗮𝗿𝘁 𝘄𝗶𝘁𝗵 𝗮𝘀𝘀𝗲𝘁 𝗶𝗻𝘃𝗲𝗻𝘁𝗼𝗿𝗶𝗲𝘀 𝗮𝗻𝗱 𝗰𝗼𝗺𝗽𝗹𝗶𝗮𝗻𝗰𝗲 𝗰𝗵𝗲𝗰𝗸𝗹𝗶𝘀𝘁𝘀 - 𝗯𝘂𝘁 𝗱𝗼𝗻’𝘁 𝗽𝗿𝗼𝘃𝗲 𝘄𝗵𝗲𝘁𝗵𝗲𝗿 𝗱𝗲𝗳𝗲𝗻𝘀𝗲𝘀 𝘄𝗼𝘂𝗹𝗱 𝗵𝗼𝗹𝗱 𝗮𝗴𝗮𝗶𝗻𝘀𝘁 𝗿𝗲𝗮𝗹 𝗮𝘁𝘁𝗮𝗰𝗸𝗲𝗿𝘀.
Gartner’s Threat-Informed Defense Effectiveness (TiDE) reframes cyber risk, helping leaders base decisions on how attackers actually operate - by validating end-to-end scenarios across protect, detect, respond, and recover (PDRR), not relying on assumptions.
Download the complimentary Gartner® TiDE report and see how security teams are building cyber resilience through proof: okt.to/ax2BdJ

English

𝗟𝗲𝘁’𝘀 𝗮𝗱𝗺𝗶𝘁 𝗶𝘁. 𝗘𝘃𝗲𝗻 𝘄𝗶𝘁𝗵 𝘁𝗵𝗲 𝗯𝗲𝘀𝘁 𝗶𝗻𝘁𝗲𝗻𝘁𝗶𝗼𝗻𝘀, 𝘄𝗲 𝘀𝗼𝗺𝗲𝘁𝗶𝗺𝗲𝘀 𝗼𝘃𝗲𝗿𝘄𝗵𝗲𝗹𝗺 𝗽𝗼𝘁𝗲𝗻𝘁𝗶𝗮𝗹 𝗯𝘂𝘆𝗲𝗿𝘀 𝘄𝗶𝘁𝗵 𝗰𝗼𝗻𝘁𝗲𝗻𝘁, 𝗲𝗺𝗮𝗶𝗹𝘀, 𝗮𝗻𝗱 𝗼𝘂𝘁𝗿𝗲𝗮𝗰𝗵 𝗽𝗶𝗻𝗴𝘀.
The pressure to hit targets is real and it’s easy to over do it.
That’s where things slip from legitimate outreach into “marketing harassment.” The difference is rarely intentional. It usually comes down to cadence, the give-versus-ask balance, and a bit of finesse. What feels respectful and professional versus what feels relentless and…well, selfish.
Buyers and sellers both want to transact. The golden path is being considerate of the buyer’s attention and time deficit. Fewer pings. More relevance. Providing tangible value before the ask.
Read more:
okt.to/ir9BzP
#CyberToon #cybersecurity

English

𝗣𝗿𝗼𝘂𝗱 𝗺𝗼𝗺𝗲𝗻𝘁 𝗳𝗼𝗿 𝗼𝘂𝗿 𝗰𝗵𝗮𝗻𝗻𝗲𝗹 𝘁𝗲𝗮𝗺 👏
Peter Rodriguez, AVP of Channel Management at Pentera, has been named to the 𝟮𝟬𝟮𝟲 𝗖𝗥𝗡® 𝗖𝗵𝗮𝗻𝗻𝗲𝗹 𝗖𝗵𝗶𝗲𝗳𝘀 𝗹𝗶𝘀𝘁.
Since joining Pentera in 2025, Peter has focused on strengthening partner enablement, aligning go-to-market teams, and investing in a partner-first approach that scales. The result is record partner-driven momentum, with the majority of new business now coming through our global channel community.
This recognition from CRN® highlights leaders who are shaping channel strategy and driving partner growth across the ecosystem. For us, it reinforces something we have been intentionally building: a channel program designed to help partners win.
Congratulations, Peter, on this well-earned recognition, and thank you to our partners for continuing to build with us.
🔗 Read more: okt.to/brXtw0
#ChannelChiefs #CRN #ChannelFirst #Partners #Cybersecurity #Pentera

English

🎙 𝗣𝗲𝗻𝘁𝗲𝗿𝗮 𝗟𝗮𝗯𝘀 𝗪𝗲𝗯𝗶𝗻𝗮𝗿: 𝗪𝗵𝗲𝗻 𝘁𝗵𝗲 𝗟𝗮𝗯 𝗗𝗼𝗼𝗿 𝗦𝘁𝗮𝘆𝘀 𝗢𝗽𝗲𝗻: 𝗘𝘅𝗽𝗼𝘀𝗲𝗱 𝗖𝗹𝗼𝘂𝗱 𝗧𝗿𝗮𝗶𝗻𝗶𝗻𝗴 𝗔𝗽𝗽𝘀 𝗔𝗰𝘁𝗶𝘃𝗲𝗹𝘆 𝗘𝘅𝗽𝗹𝗼𝗶𝘁𝗲𝗱
New Pentera Labs research uncovered a blind spot hiding in plain sight:
Intentionally vulnerable training and demo apps are running on enterprise-owned AWS, Azure, and GCP infrastructure. These apps are publicly exposed and actively compromised.
Including environments tied to 𝗙𝗼𝗿𝘁𝘂𝗻𝗲 𝟱𝟬𝟬 𝗼𝗿𝗴𝗮𝗻𝗶𝘇𝗮𝘁𝗶𝗼𝗻𝘀.
These are not zero-days.
They are commonly used training apps left running with default configurations and overly permissive roles, now leveraged for cryptomining and infrastructure takeover.
Join @Noam Yaffe, Senior Security Researcher, and @Eran Vaknin, VP Offensive Security at Pentera, as they break down:
• How attackers discover and exploit training apps
• What evidence of active compromise looks like
• What security teams must fix next before attackers do
🗓 𝗙𝗲𝗯 𝟭𝟮, 𝟮𝟬𝟮𝟲 | 𝟭𝟭:𝟬𝟬 𝗔𝗠 𝗘𝗧 | 𝟱:𝟬𝟬 𝗣𝗠 𝗖𝗘𝗧
👉 Register now: okt.to/Sg7UWr
#PenteraLabs #CloudSecurity #SecurityResearch
GIF
English





