Abstract dark background with a blurred gradient of red, orange, and black colors blending together.
PAYATU RESEARCH BLOG

The work behind the findings.

Firmware teardowns, exploit chains and hard-won methodology from the researchers who find the bugs - plus the buyer's guides security leaders actually need.
240+
Blogs
100+
CVEs behind them
15+
Years
15,000+
Newsletter subscribers
Red circular arrow icon indicating refresh or reload action on a transparent background.
Black circular refresh icon with arrow pointing counterclockwise, symbolizing reset or reload.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

‍3 out of 6

results
Red Team & infrastructure
Wi-Fi Penetration Testing – Part 2 (PreConnection Attack)
July 6, 2021
8 min
Red Team & infrastructure
Engineers
Researchers
Guides & tutorials
Cloud & AppSec Engineering
AWS IAM Misconfiguration
July 4, 2021
8 min
Cloud & AppSec Engineering
Researchers
Engineers
Guides & tutorials
Web & API
Graphql Exploitation – Part 3- Injection attacks and XSS attacks
June 25, 2021
8 min
Web & API
Researchers
Engineers
Guides & tutorials
Exploit dev & reverse engineering
MineSweeper, with no luck – An Introductory blog to Reverse Engineering
June 16, 2021
8 min
Exploit dev & reverse engineering
Engineers
Researchers
Guides & tutorials
Web & API
Thick Client Pentesting: Architecture, Tools and Testing Approaches
June 2, 2021
8 min
Web & API
Researchers
Engineers
Guides & tutorials
Web & API
PCB Designing – Basics
June 1, 2021
10 min
Web & API
Engineers
Researchers
Guides & tutorials
Cloud & AppSec Engineering
Privilege Escalation Attack : Attacking AWS IAM permission misconfigurations
May 25, 2021
8 min
Cloud & AppSec Engineering
Engineers
Researchers
Guides & tutorials
Web & API
Cloud & AppSec Engineering
Graphql Exploitation – Part 2- Unauthorized Execution of Queries
April 28, 2021
4 mins
Web & API
Cloud & AppSec Engineering
Engineers
Researchers
Guides & tutorials
Web & API
Cloud & AppSec Engineering
5 key take aways from the facebook breach
April 28, 2021
5 mins
Web & API
Cloud & AppSec Engineering
Security leaders
For Security Leaders
Web & API
CTF & Learning
Getting into Cybersecurity : My experience
April 24, 2021
6 mins
Web & API
CTF & Learning
Engineers
Researchers
Guides & tutorials
Cloud & AppSec Engineering
Red Team Assessment
Azure Storage Security: Attacking & Auditing
April 12, 2021
12 mins
Cloud & AppSec Engineering
Red Team Assessment
Engineers
Researchers
Guides & tutorials
Mobile
CTF & Learning
How to find and mitigate XML External Entity (XXE) Injection
April 12, 2021
7 mins
Mobile
CTF & Learning
Engineers
Researchers
Guides & tutorials