Research-led offensive security. Cybercrime intelligence, Penetration testing, and Offensive engineering for serious teams.

Dubai
You captured a SAMLResponse. Now what? Counterfeit forges, mutates & tests 60+ attack scenarios against the majority of SAML Parsers Signature bypass? RCE/LFI via XXE? It finds them all. Counterfeit SAML Framework. Coming soon.
2
4
21,059
👀
1
1
237
Autonomous hacking agents are good at finding bugs. They're not good at reporting them. FAST is a set of rules for vulnerability classification that makes your agents more accurate — whether they're generating reports or triaging them. obvane.com/research/fast-age…
1
4
469
Good penetration testing should produce signal, not noise. Obvane delivers web application and API testing shaped around real attack paths, with clear reporting, practical remediation guidance, and engagement models matched to the environment. obvane.com/penetration-testi…
2
516
RT @ObvaneGroup: Why just delve into compliance when you can actually test what matters? If it’s real compliance, it deserves a real pentes…
40
$1,000 Hack The Box Labs Giveaway 10 winners | $100 giftcard each To enter: follow @vxgiveaways and @ObvaneGroup, then comment below sharing why you'd like to win Winners picked in a week
253
86
328
38,607
We Googled a shipping label file format. Less than an hour later, we had domain credentials. New research from Obvane on .nlbl weaponization and an overlooked enterprise attack surface. obvane.com/research/stealing…
2
8
1,611
Russian Market reads less like a forum and more like a storefront with felonies. Obvane looks inside one of the largest criminal marketplaces online and the economy that formed around it. obvane.com/research/russian-…
4
52
71,649