
Blog


Our first anniversary
Posted on 2021-02-09by mattin Volkis News
Today marks the 1 year anniversary of our official launch!
Continue reading

Volkis Stage 2
Posted on 2021-01-05by alexeiin Volkis News
Last year was definitely… something. I’m glad its over and although we’re not out of the woods yet, I am hopeful that 2021 will bring a much needed peace for us all. That being said, Volkis is now in its 2nd year of operation! Our first year was an amazing ride and such a humbling learning experience; equal parts excitement and terror!
Continue reading

Cracking Passwords with Michael McIntyre
Posted on 2020-10-14by billyin Tools of the Trade
I was watching the comedian Michael McIntyre’s most recent Netflix special “Showman” when he began a segment on the evolution of the online password. He described an algorithm that would’ve cracked most of my pre-teen online passwords. I decided to dig further and see how effective this algorithm is against some real world data.
Continue reading

Security and availability in healthcare
Posted on 2020-10-08by mattin Business Security
Imagine you’re laying on a hospital bed in an emergency room. The doctors and nurses are rushing around in seemingly organised chaos. You hear beeping and shouting as they investigate and prepare. Imagine the fear you feel, the uncertainty of this life or death situation. Imagine, then, you hear a voice of a doctor: “Damn I can’t remember my password!”
Continue reading

Three crazy ideas for reforming the penetration testing industry
Posted on 2020-10-02by mattin Industry
In two posts I looked at how it’s almost impossible to validate penetration testing results and where an Evilfirm penetration testing firm might cut costs and invest.
Continue reading

Telling whether a pentesting firm is good (and how they might get around it)
Posted on 2020-09-30by mattin Industry
I’ve talked about how it’s almost impossible to validate penetration testing results. Are we done then? Doomed to be left in the dark by ineffective testing?
Continue reading

How do you know if you've had a good pentest?
Posted on 2020-09-28by mattin Industry
There’s a fundamental issue with penetration testing that people don’t really talk about very much. It’s not a fun issue to talk about, because it leads to what effectively becomes corruption in the industry, which then leads to the vulnerabilities that are missed being used to cause huge damage to businesses, everyday people, and society.
Continue reading

Building vulnerability disclosure terms
Posted on 2020-09-21by mattin Business Security
We have now released new vulnerability disclosure terms for Volkis. You can look at them here. They were based off the excellent disclose.io templates pushed by Bugcrowd among others. I’d like to take a bit of time to talk about why vulnerability disclosure terms are important and why each and every company, no matter how large or small, should have them.
Continue reading

Board Mounting Devices for Fun & Hacker Feels
Posted on 2020-08-25by alexeiin Tools of the trade
Disclaimer: There is nothing about security in this post. Just a bit of fun!
Continue reading
Recent Posts
- Your industrial control equipment was too annoying to hack, but not any more
- DIY: Temporary Email Service
- Cyber Security Basics for Business Leaders
- CRTM Course Review
- Should you add a penetration tester to your allowlist?
- HTB CBBH Course Review
- Securing the laptops that schools give to children
- We got phished! (but it was just a test)
- What do you really need to authenticate?
- CARTP Course Review