Category: Hacking

  • The Red Team Bluff: Why Your Annual Pen Test Is a Waste

    The Red Team Bluff: Why Your Annual Pen Test Is a Waste

    The annual penetration test is one of the most expensive line items in the security budget, and one of the least useful. The defender who runs the annual test gets a report. The defender who does the continuous testing gets the security. Here is why the annual test fails, and what works instead.

  • Real Hacking vs the Movies: What They Got Right and Wrong

    Real Hacking vs the Movies: What They Got Right and Wrong

    The movies have been getting hacking wrong for decades, but every once in a while they get something right. The 2026 list of what the movies got right, what they got wrong, and what they got so wrong it is actually insulting to the people who do the work.

  • Hardware Hacking in 2026 Is Having a Moment

    Hardware Hacking in 2026 Is Having a Moment

    Hardware hacking has gone from the conference talk that draws the small audience to the front page story that draws the regulator. The firmware vulnerability the researcher found in the conference demo, the vulnerability that sits in the device the enterprise has deployed across the fleet, the vulnerability that the vendor has been quietly patching…

  • The Difference Between Hacking and Penetration Testing

    The Difference Between Hacking and Penetration Testing

    A field guide to the difference between hacking and penetration testing in 2026, with what each one actually does, the legal framework that separates them, and when to use which one.