Sitemap
Homepage
About
Info Hub
Articles List
KindaRails2Shell: How a MATLAB file reads your secrets and pops a shell on Ruby on Rails
KindaRails2Shell - Critical RCE in Rails via Active Storage (CVE-2026-66066)
Evaluating Pentesting Agents for the Real-World - Part 2
AI Can Hack a Bank in 21 Minutes: ECB's DORA Deadline Is October
Now Detecting: WP2Shell — Pre-Authentication RCE in WordPress Core (CVE-2026-63030/CVE-2026-60137)
Nextcloud CVE-2026-45281 Cross-Account Calendar Takeover
Evaluating Pentesting Agents for the Real-World - Part 1
Introducing the new Ethiack Portal: Built for the Way You Work Now
Security Had It Backwards. This Is What Comes Next.
Abusing Redirect Discrepancies to leak secrets in URLs
How Broadvoice Replaced Firefighting with Continuous, Validated Security
Ethiack's Spring Release: What's New and What's Coming
Here's What Anthropic's Mythos Means for the Future of Cybersecurity
The State of Digital Exposure to Cybercrime for European Telecoms
Mythos didn't change the rules, it showed us they already changed
Beacon V2: Testing Internal Assets Made Easy
The Hidden ROI of Security: How to Put a Number on the Risks You Stop.
Understanding our Risk Score, and why it reflects real-world conditions
Hackian and the Ghosts in Your Business Logic: When Your App’s Rules Are the Real Vulnerability
Agentic Problems and the Rise of Zombie AIs
The State of AI Powered Hacking in Early 2026: What Is Real, What Is Hype, What Is Missing
One-click RCE on OpenClaw in under 2 hours with an Autonomous Hacking Agent
The State of Digital Exposure to Cybercrime for European Retail
Growing, Hosting, Hacking: Ethiack’s 2025 Wrap Up
Grafana CVE-2025-6023 Bypass: A Technical Deep Dive
Introducing the Hackian - an AI agent that can hack
How U.Porto Brought 5,000+ Assets Under Continuous Validation
AI Pentesting Without the Noise: Hackbots and the Verifier
Bypassing WAFs for Fun and JS Injection with Parameter Pollution
Don’t Fear The AI Reaper: Using LLMs to Hack Better and Faster
From Compliance to Continuous Security: Ethiack's Vision For Financial Cybersecurity
How Zick Learn Earned Enterprise Trust Without Hiring an Internal Pentester
How Smartex Cut Time-to-Mitigation from Weeks to Days
How ANA Aeroportos Kept 10 Airports Secure While Attackers Got Faster
Navigating DORA: How Continuous Penetration Testing Bolsters Your ICT Risk Management Framework and Contributes to Overall Compliance
What’s New in Ethiack: Main Product Updates on V2.27, V2.28 and V2.29
Roll out the Ethiacker Awards: Celebrating the Best Ethical Hackers of 2024
Super-charging Bug Bounty Hunting with the Power of AI
Ethiack Raises a €4 Million Funding Round to Develop AI-Powered Hackbots
Como Cumprir com a NIS2: Guia para PMEs Portuguesas
You Don't Cut Corners in Cybersecurity: Our Black Friday Motto
Quo Vadis Cybersecurity?
Cleaning the Portal: UX Improvements to The Way You Use Ethiack
Find the Needle in the Haystack with Advanced Filters for Attack Surface Management
Why is SOC 2 Important for Startups: A Guide for CTOs
Making Portugal More Cyber Secure at C-DAYS 2024
How Secfix Closed the Gap Between Annual Pentests and Constant Code Changes
Extended Capabilities for Ethiack’s API: What’s Changing
Rez0 Joins Ethiack to Advance AI Offensive Security
Meet Idroid: Automated Pentesting for Android Apps
Catch them early: Integrate Automated Pentesting in your CI/CD Pipeline
Ethiack Beacon: Easily Test Your Internal Assets
Ethiack 2.14: Test Internal Assets, CI/CD, SSO, New Reports, and more!
The Cybersecurity Union: Notes from ENISA's Cybersecurity Conference
Ethiack's Journey with Google for Startups in the Growth Academy: AI for Cybersecurity
Digital Exposure Analysis of the 500 Largest Portuguese Companies
How CEGID Made Validation Continuous Across 2,000+ Assets and 20+ Companies
Ethiack Featured in the Portugal Fintech Report 2023
Como Fazer um Inventário de Ativos para Cibersegurança
Securing Success: Ethiack is The Most Promising Startup at Web Summit 2023
Ethiack Culture: We T.E.S.T. when we test
Everything Financial Institutions Need to Know About the NIS2 Directive
How to use AI and Automation for Ethical Hacking and Vulnerability Assessment
Navigating DORA: What Every Financial Institution Needs to Know
Full Walkthrough: Ethiack 2.0
How Critical Software Validated Exploitability for Zero-Tolerance Industries
How ComplianceWise Went from Annual Pentests to 24/7 Validation, and Funded Elite Hacking with the Savings
How Wallim Built Continuous Validation Into Their Stack, On a Startup Budget
Bug Bounty VS Pentesting for SaaS: Which one should you choose?
We’re now ISO 27001 certified! Here’s what this means for you
Pentesting no more: Why it's time to move from Pentesting to Ethical Hacking
United Against Cyber Enemies
How BaladAPP Made Trust Their Competitive Advantage in Brazil's Event Market
Ethiack distinguished as a Leader in Innovation in Portugal
Identifying Vulnerabilities in SaaS: The Guide Updated for 2023
If you want peace, prepare for cyberwar
Git Arbitrary Configuration Injection (CVE-2023-29007)
Webinar | Cybersecurity in Supply-Chain: Start with Prevention
Risk Assessment: What is it and how to conduct one
What is a Pentest: How ethical hacking can protect you
Hackian
Pricing
Platform
Solutions List
Adversarial Exposure Validation
Risk-Based Vulnerability Management. Prioritize What Actually Matters | Ethiack
Penetration Test as a Service (PTaaS) | Continuous & Automated | Ethiack
Cybersecurity Risk Management | Quantify & Reduce Your Real Exposure | Ethiack
Automated Cybersecurity Compliance Reporting — ISO, SOC 2, DORA & PCI | Ethiack
Attack Surface Management (EASM) | Map and Validate your Entire Exposure| Ethiack