Blog

Writing

Opinions, analysis, and insights from real engagements. No vendor fluff.

Latest Posts

All Posts

AD Attacks
Jul 16, 2024 Vid Grosek

Why I Get Domain Admin in Every Penetration Test

The uncomfortable truth about AD security that vendors won't tell you.

Read More
AD Attacks
Jul 11, 2024 Vid Grosek

The Active Directory Security Mistakes I See in Every Slovenian Company

After 50+ penetration tests in Slovenia, these are the AD misconfigurations that give me Domain Admin access every single time.

Read More
Authority
Jul 06, 2024 Vid Grosek

Building a Security Culture That Actually Works

Technical controls fail without human awareness. Build culture that scales.

Read More
Authority
Jul 01, 2024 Vid Grosek

Why Hackers Choose Their Targets (It Might Be You)

Understanding target selection helps you assess your own risk.

Read More
Authority
Jun 26, 2024 Vid Grosek

Assessing Your Security Maturity: Where Do You Stand?

A framework for understanding your organization security posture.

Read More
Authority
Jun 21, 2024 Vid Grosek

Vulnerability vs Risk: What Decision Makers Need to Know

Not every vulnerability is a risk. Learn to prioritize what matters.

Read More
Authority
Jun 16, 2024 Vid Grosek

How to Buy Security Testing: A Guide for Decision Makers

What to look for when purchasing penetration testing services.

Read More
Authority
Jun 11, 2024 Vid Grosek

How Attackers Think: The Mindset Behind Breaches

Understanding attacker methodology helps defenders build better security.

Read More
Authority
Jun 06, 2024 Vid Grosek

Red Team vs Penetration Test: Which Do You Need?

Understanding the key differences between red team engagements and penetration tests.

Read More
Authority
Jun 01, 2024 Vid Grosek

What Penetration Testers Actually Do (And Why It Matters)

A clear explanation of penetration testing methodology, deliverables, and business value.

Read More

Explore More

Read my expertise pages, research, or prepare for a pentest.

Expertise Research Pentest Preparation

Have Security Questions?

I help companies understand their risks and fix them.

Get in Touch