Compass Security Blog

Offensive Defense

Hitchhiker’s Guide to Managed Security

Over the past few years, we have had the opportunity to conduct several Purple Teaming exercises together with our customers.

Particularly after Purple Teaming exercises involving external providers, we often see a mismatch between the customer’s expectations and the service provided.

This blog post attempts to summarize how to prevent the most prevalent issues with a managed security service as early as possible.

Continue reading

101 for lateral movement detection

The article discusses the very basics to keep systems ready for analysis of lateral movement. We present some guidelines in form of a cheat sheet and a tool (Readinizer) that you can run, to ensure that everything is set up as in the guidelines provided.

Continue reading

Jailbreak detection – curse or blessing?

“Jailbreak Detection” is a set of checks, mostly performed by Mobile Device Management solutions like MobileIron / Good Technologies or other third party Apps to determine if a device is jailbroken or not. It checks if all security controls of Apple’s iOS are still in place and if we can / should / want “trust” […]

Continue reading