AI-Powered Application Penetration Testing—Scale Security Without Compromise Learn More

Cover slide attacking the data before the decision Rhett Greenhagen
Workshops & Training

Attacking the Data Before the Decision

Presentation from BSides Tampa 2020 explores the vulnerabilities of machine learning systems and how to mitigate them.

Watch Workshop
Cover slide how to write like it's your job
Workshops & Training

How to Write Like It's Your Job

Presentation from BSides San Francisco 2020 offers practical advice for security writers.

Watch Workshop
Sonos engaged Bishop Fox to secure their new voice-enabled speaker. Sonos Makes Secure Moves with Bishop Fox.
Customer Stories

Sonos Makes Secure Moves with Bishop Fox

Secured a new voice-enabled speaker at launch by integrating security testing into every stage of development.

Read Story
Watch our Zivideobee hacking smarter home invasion with zigdiggity video
Workshops & Training

Zigbee Hacking: Smarter Home Invasion with ZigDiggity

Existing Zigbee hacking solutions have fallen into disrepair, having barely been maintained, let alone improved upon. Left without a practical way to evaluate the security of Zigbee networks, we've created ZigDiggity, a new open-source pentest arsenal from Bishop Fox.

Watch Workshop
Watch our Def con 27 2019 finding secrets in publicly exposed ebs volumes video
Workshops & Training

Finding Secrets In Publicly Exposed EBS Volumes

In this talk, Ben Morris shows how he found all sorts of secrets and associated data—passwords, SSH private keys, TLS certificates, application source code, API keys, and anything else that might be stored on a server hard disk.

Watch Workshop
Cover slide of presentation ZigDiggity: ZigBee Hacking Toolkit with black hat, Defcon, Bishop Fox and ZigDiggity logos
Workshops & Training

ZigDiggity: ZigBee Hacking Toolkit

Presentation from Black Hat USA 2019 reveals an open-source pentest arsenal for Zigbee networks.

Watch Workshop
Cover slide ghost in the browser broad-scale espionage with bitsquatting oscar salazar rob ragan of bishop fox
Workshops & Training

Ghost In The Browser - Broad-Scale Espionage With Bitsquatting

Presentation from Kapersky SAS 2019 on an unfortunate side effect to achieving HTTPS everywhere and learn what can be done to mitigate the risk.

Watch Workshop
Customer Story on how Wickr augment and prove the security of their products and services.
Customer Stories

Wickr: How Bishop Fox Enables Wickr's Security Assurance

Validated products against real-world attack scenarios, delivering the transparency and assurance promised to customers.

Read Story
Presentation cover slide on reverse engineering of mobile applications
Workshops & Training

Reverse Engineering Mobile Apps

Presentation from BSides Las Vegas 2019 demonstrates the successful exploitation of transit system mobile apps.

Watch Workshop
Customer Story on Secure Code Review and Hybrid Application Security Assessment.
Customer Stories

Securing Boost.Beast

A Non-Traditional Source Code Review Securing the Foundation of Thousands of Web Applications.

Read Story
Cover slide Ferris Bueller singing into microphone
Workshops & Training

Twist & Shout: Ferris Bueller's Guide to Abuse Domain Permutations

Presentation from Sqr00t 2019 explores the ins and outs of domain abuse, and how to prevent it.

Watch Workshop
Cover slide check your privilege (escalation) kate broussard senior security analyst at bishop fox
Workshops & Training

Check Your Privilege (Escalation)

Presentation from BSides Columbus 2019 discusses common privilege escalation paths on Linux systems.

Watch Workshop
Cover slide network penetration testing toolkit nmap,netcat, and metasploit basics day of security
Workshops & Training

Network Penetration Testing Toolkit: Netcat, Nmap, and Metasploit Basics

Presentation from Day of Shecurity 2019 familiarizes you with the necessary tools to continue your ethical hacking journey.

Watch Workshop
Cover slide day of shecurity introduction to linux privilege escalation methods kate broussard senior security analyst bishop fox february 22, 2019
Workshops & Training

Introduction to Linux - Privilege Escalation Methods

Presentation from Day of Shecurity 2019 explores privilege escalation methods in Linux.

Watch Workshop
Pose a Threat: How Perceptual Analysis Helps Bug Hunters
Workshops & Training

Pose a Threat: How Perceptual Analysis Helps Bug Hunters

Presentation from OWASP AppSec California 2019 offers up dirty tricks to optimize the hunt for security exposures.

Watch Workshop
Coinbase implements an effective bug bounty program to improve site security.
Customer Stories

Coinbase: Managing Security Through Collaboration

Combining the HackerOne Platform with Bishop Fox Security Consultants.

Read Story
This customer story covers how Change Healthcare evolved their security posture.
Customer Stories

Change Healthcare: Securing a Competitive Advantage

As their business expanded, we were there to help Change Healthcare grow and evolve their security posture.

Read Story
Bluebox (now Lookout) secures their Mobile Security Application.
Customer Stories

Securing Mobile Security with Bluebox

Software Security Meets Cybersecurity. Bluebox needed a vendor to conduct a mobile security assessment of their solution. Bishop Fox established that security was the foundation of their software.

Read Story
Iotium case study card
Customer Stories

Iotium: Securing an Industrial IoT Platform

IoTium, a solution designed for the Industrial Internet of Things (IIoT), enlisted Bishop Fox to verify the security of their product offering.

Read Story
Watch our drone hacking wireless mouse flyby hijack with dangerdrone video
Workshops & Training

Drone Hacking: Wireless Mouse Flyby Hijack with DangerDrone

Some quick live footage of flying the Danger Drone, a free penetration testing platform from Bishop Fox.

Watch Workshop
Customer story on how Bishop Fox helps Wickr build a healthy security program.
Customer Stories

Zephyr Health: Building a Healthy Security Program

Designed a security program that meets the highest privacy standards to protect sensitive patient health data.

Read Story
Watch our Def con 25 2017 weaponizing machine learning video
Workshops & Training

Weaponizing Machine Learning

At risk of appearing like mad scientists, reveling in our latest unholy creation, we proudly introduce you to DeepHack: the open-source hacking AI. This bot learns how to break into web applications using a neural network, trial-and-error, and a frightening disregard for humankind.

Watch Workshop
Watch our Def con 25 2017 game of drones video
Workshops & Training

DEF CON 25 (2017) - Game of Drones

We’ve taken a MythBusters-style approach to testing the effectiveness of a variety of drone defense solutions, pitting them against our DangerDrone. Videos demonstrating the results should be almost as fun for you to watch as they were for us to produce. Expect to witness epic aerial battles against an assortment of drone defense types.

Watch Workshop
Watch our Drone hacking defeating net defense products with a protective chicken wire cage video
Workshops & Training

Drone Hacking: Defeating Net Defense Products with a Protective Chicken Wire Cage

Defeating net-based drone defense products by using a protective chicken wire bubble would defeat the majority of net drone defensive products which rely on the net getting caught in the propellers to take down the drone.

Watch Workshop

This site uses cookies to provide you with a great user experience. By continuing to use our website, you consent to the use of cookies. To find out more about the cookies we use, please see our Privacy Policy.