Mayhem Case Studies

Expert insights and tips on application security, API security, and other DevSecOps topics.

View All
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
The Hacker Mind Podcast: Hacking OpenWRT

The Hacker Mind Podcast: Hacking OpenWRT

For three years OpenWRT had a severe validation problem with its download package manager, until a fuzz tester found and reported the vulnerability. In this episode, Guido Vranken talks about his approach to hacking, about the differences between memory safe and unsafe languages, and more.
18 Gifts for the Fuzzing Pro in Your Life
No items found.

18 Gifts for the Fuzzing Pro in Your Life

If you haven’t given much thought on what holiday gift to get the fuzzing pro in your life, fear not! Here is a gift guide inspired by the needs and wants of ForAllSecure’s very own security experts.
Why Non-Functional Testing is Equally Important to Functional Testing

Why Non-Functional Testing is Equally Important to Functional Testing

With functional testing, there’s a finite number of ways that a feature can be used. With non-functional testing there’s an infinite number of possibilities. Fuzz testing is an effective solution for addressing those non-functional testing challenges.
The Hacker Mind Podcast: Hunting The Next Heartbleed

The Hacker Mind Podcast: Hunting The Next Heartbleed

For two years Heartbleed was a zero-day in OpenSSL until fuzz testing exposed it. How many others are in the wild now? And how will we find the next one? In this episode I talk about how Heartbleed (CVE 2014-0160) was found and also interview Rauli Kaksonen.
Why Fuzzing Works

Why Fuzzing Works

Find out the fundamental reasons why fuzzing is so effective, and why it remains a useful part of a secure software development lifecycle.
The Hacker Mind Podcast: Bug Bounty Hunters

The Hacker Mind Podcast: Bug Bounty Hunters

You’ve probably heard of bug bounties. But did you know there’s an elite group of bug bounty hunters that travel the world? Meet Stok; he’s one of them. In this episode, Stok talks about his beginnings in enterprise security and his transition into the top tier of bug bounty hunters.
New Reporting Dashboard in Mayhem

New Reporting Dashboard in Mayhem

ForAllSecure, a pioneer in automated application security, announced today the continued innovation behind their flagship product Mayhem with the release of new reporting dashboards.
Your AST Guide for the Disenchanted: Part 6

Your AST Guide for the Disenchanted: Part 6

Learn why SCA and AFT are two ideal solutions for transforming your DevOps workflow to a DevSecOp workflow.
The Hacker Mind Podcast: Hacking Voting Systems

The Hacker Mind Podcast: Hacking Voting Systems

While digital voting systems today are more secure today, what about the larger ecosystem, starting from the moment you register until your vote is counted? Who’s keeping those systems secure? In this episode of The Hacker Mind, Dr. Jared DeMott of VDA Labs talks about his work securing voter registration.

Fancy some inbox Mayhem?

Subscribe to our monthly newsletter for expert insights and news on DevSecOps topics, plus Mayhem tips and tutorials.

By subscribing, you're agreeing to our website terms and privacy policy.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.