Our Blog
Resources and insights
The latest industry news, interviews, technologies, and resources.
11 Types of Ethical Hacking: The Definitive Guide for 2026
There are 11 distinct types of ethical hacking, and most organizations only think about two or three of them. Everything outside that narrow band is a blind spot, and blind spots are where breaches happen. A colleague of mine once ran a quick social engineering test...
OWASP Top 10 2025 Explained: Insights from a Web Application Pentester
Introduction Earlier this year I published an OWASP Top 10 2025 prediction blog where I pulled CVE data from 2021 and made data driven predictions on where the new top 10 list will land. Now that the official list has been released, it’s time to reflect on the results...
Ethically Hack AI | Part 2 – Prompt Injection
This blog will demonstrate how various methods of prompt injection, including jailbreaking, can be used to compromise AI chatbots during ethical testing.
Ethically Hacking LLMs | 1 – Neural Networks
In this first blog in the series, we’re going to learn about the fundamentals of how neural networks and LLMs work to better understand how to attack them.
Free Cybersecurity Courses: Where To Begin
Can you learn cybersecurity for free? Here are some things to consider as well as a list of resources for cybersecurity beginners.
How Can PCI DSS Compliance Prevent Data Breaches?
In this blog, we will take a look at how PCI DSS compliance standards actually stack up against threat actors general tactics, techniques, and procedures.
TCM Security Announces Updates to Live Training Offerings
In response to feedback from our community, the TCM Security team is pleased to announce some changes to our live training offerings to make certification prep more accessible and set every student up for success on their cybersecurity credentialing journeys! ...
How I Almost Got Phished: Advanced Phishing Example
Investigation of real phishing email that used background and interest targeting and an advanced tactic for bypassing spam filters and appearing legitimate.
Password Cracking For Pentesters: A 5-Step Guide
A look at Heath Adams’ five step methodology for cracking password hashes to quickly establish credentialed access during a penetration test.
Stay Ahead of Cyber Threats
Get expert insights on the latest penetration testing strategies, emerging vulnerabilities, and cybersecurity best practices—straight to your inbox.
Loading form...
We care about your data in our privacy policy.








