Skip to content
AppSec Labs logo
  • Penetration Testing Services
    • Web Applications
    • SaaS & Multi-Tenant
    • APIs
    • Mobile Apps
    • AI & LLM
  • Our Methodology
    • Attacks & Tests
    • Testing modes
  • About
    • Alumni
    • The Book
  • Careers
  • Blog
  • Contact
  • עברית

Contact us

Have a question or comment? Submit your message through our contact form and a member of our team will get back to you within 24 hours.

    Engagements and Process

    • Home
    • Blog
    • Engagements and Process
    Engagements and Process

    I Run a Company of Pentesters, and I Watch AI Bots Doing Their Job

    March 28, 2026 No comments yet

    Faster, cheaper, and far more of it. The question is not whether AI replaces pentesters – it is which pentesters survive, and what they will need to be able to do.

    Engagements and Process

    “Just Send Me a Quote and We’ll See” – Why I Don’t Work That Way

    March 19, 2025 No comments yet

    A prospective client asked for a price before telling me what the systems do. In security testing, a quote without a scope is a guess, and the person who pays for the guess is the client.

    Engagements and Process

    “We Don’t Need a Pentest. You Won’t Find Anything.”

    November 25, 2024 No comments yet

    That was the first sentence out of a client’s mouth. They had tested a month earlier, with a generic vendor, because a customer required a report. Their systems really did look impressive.

    Engagements and Process

    The Previous Test Found Nothing. We Found Account Takeover.

    July 16, 2024 No comments yet

    A client came to us after working with another vendor whose report said everything was fine apart from minor findings. Data theft, identity tampering, denial of service and admin account takeover were all still sitting there.

    Engagements and Process

    “Would You Like to Write a Book About That?” – How One Talk Became a Book and a Company

    January 12, 2023 No comments yet

    Two people from Syngress came up to me as I came off the Black Hat stage in 2009. Saying yes meant leaving a salaried job, with a mortgage and a baby on the way. AppSec Labs exists because of that decision.

    Search

    Categories

    • AI and LLM Security (26)
    • API Security (7)
    • Application Security (18)
    • Authorization and Access Control (11)
    • Black Box Testing (3)
    • Brute Force (1)
    • Cloud Security (13)
    • Engagements and Process (10)
    • Hacking (4)
    • Mobile Security (4)
    • Supply Chain (15)
    • White Box Testing (1)

    Recent posts

    • Somebody Wired the Darknet Into Your AI. What Could Go Wrong?
    • Configured Is Not Enforced
    • Every Week Someone Asks Me When AI Will Replace Pentesters
    AppSec Labs logo

    AppSec Labs offer rapid, modern security penetration testing, utilizing smart solutions to protect against evolving cyber threats.

    Features
    • Home
    Resources
    • Blog
    Company
    • About us
    Get in touch
    • info@appsec-labs.com
    • +972 52-433-9393

    © AppSec Labs 2026. All Rights Reserved.

    • Terms & Conditions
    • Privacy Policy