Bishop Fox named “Leader” in 2024 GigaOm Radar for Attack Surface Management. Read the Report ›

Featured Resource

Get the Blueprint: Insights from Ponemon Institute’s 2023 State of Offensive Security Study

Hear from experts Larry Ponemon & Tom Eston, as they reveal our findings from a joint report with the Ponemon Institute on the 'State of Offensive Security' in 2023.

Cover page .net roulette exploiting insecure deserialization in Telerik ui

.Net Roulette Exploiting Insecure Deserialization in Telerik UI

DerpCon 2020 presentation reviews how .NET deserialization works and how to get shells on real applications.

Screen Shot 2022 05 07 at 10 20 00 AM

Ham Hacks: Breaking Into the World of Software-Defined Radio

This DerpCon 2020 presentation explores how to find, capture, and reverse-engineer RF signals.

Slide deck cover of Demystifying Capture the Flags (CTFs) presentation by Barrett Darnell

Demystifying Capture the Flags (CTFs)

DerpCon 2020 presentation on CTF formats, the skills they require, and the experience they develop.

Salesflare Customer Story on their CRM Application Security Assessment for the G Suite Marketplace.
Customer Story

Salesflare Focuses on Application Security for the G Suite Marketplace

When Salesflare knew they needed to complete the new, required security assessment for the G Suite Marketplace, they chose Bishop Fox to secure their CRM product and verify their compliance.
Google partnered with Bishop Fox to design a security assessment program for their G Suite partners.
Customer Story

Scaling up Google's Third-Party Security Program

When Google needed to ensure that their user data was being handled securely, they partnered with Bishop Fox to design a security assessment program that could validate the security posture of their 1,000+ G Suite partners. The result: the largest and most successful public third-party ecosystem testing program ever.
Cover page expose yourself without insecurity bsides atlanta 2020

Expose Yourself Without Insecurity: Cloud Breach Patterns

Presentation from BSides Atlanta 2020 explores the unprecedented level of exposures in the Cloud and how they can be found.

Cover slide attacking the data before the decision Rhett Greenhagen

Attacking the Data Before the Decision

Presentation from BSides Tampa 2020 explores the vulnerabilities of machine learning systems and how to mitigate them.

Cover slide how to write like it's your job

How to Write Like It's Your Job

Presentation from BSides San Francisco 2020 offers practical advice for security writers.

Sonos engaged Bishop Fox to secure their new voice-enabled speaker. Sonos Makes Secure Moves with Bishop Fox.
Customer Story

Sonos Makes Secure Moves with Bishop Fox

When Sonos was bringing a new voice-enabled speaker to the market, they turned to Bishop Fox to ensure that new features didn’t put customers at risk.
Watch our Zivideobee hacking smarter home invasion with zigdiggity video
Video

Zigbee Hacking: Smarter Home Invasion with ZigDiggity

Existing Zigbee hacking solutions have fallen into disrepair, having barely been maintained, let alone improved upon. Left without a practical way to evaluate the security of Zigbee networks, we've created ZigDiggity, a new open-source pentest arsenal from Bishop Fox.
Watch our Def con 27 2019 finding secrets in publicly exposed ebs volumes video
Video

DEF CON 27 (2019) - Finding Secrets In Publicly Exposed EBS Volumes

In this talk, Ben Morris shows how he found all sorts of secrets and associated data—passwords, SSH private keys, TLS certificates, application source code, API keys, and anything else that might be stored on a server hard disk.
Cover slide of presentation ZigDiggity: ZigBee Hacking Toolkit with black hat, Defcon, Bishop Fox and ZigDiggity logos

ZigDiggity: ZigBee Hacking Toolkit

Presentation from Black Hat USA 2019 reveals an open-source pentest arsenal for Zigbee networks.

This site uses cookies to provide you with a great user experience. By continuing to use our website, you consent to the use of cookies. To find out more about the cookies we use, please see our Privacy Policy.