<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Ballpoint blog</title><link>https://ballpoint.fr/blog/</link><description>Latest cybersecurity news, tutorials, tools and reviews from Ballpoint, a leading voice in information security.</description><atom:link href="http://ballpoint.fr/en/blog/rss.xml" rel="self"/><language>en</language><lastBuildDate>Tue, 12 May 2026 12:33:30 +0000</lastBuildDate><item><title>Cyberattacks in Space: How Satellites Get Hit (Viasat Case)</title><link>http://ballpoint.fr/en/blog/cyberattacks-in-space-satellite-vulnerabilities-viasat-case</link><description>Space pentesting: a tour of common satellite vulnerabilities and attack paths, followed by a real-world case study: the Viasat incident and key security lessons for space systems.</description><guid>http://ballpoint.fr/en/blog/cyberattacks-in-space-satellite-vulnerabilities-viasat-case</guid></item><item><title>Do you really know AES ?</title><link>http://ballpoint.fr/en/blog/technical-analysis-aes</link><description>AES, or Advanced Encryption Standard, is the benchmark symmetric encryption algorithm. But what are the elements that have made it resistant to attacks for over 20 years?</description><guid>http://ballpoint.fr/en/blog/technical-analysis-aes</guid></item><item><title>CPTS lessons learned as my first certification (HackTheBox)</title><link>http://ballpoint.fr/en/blog/lessons-learned-first-certification-cpts-hackthebox</link><description>Student’s feedback on the CPTS (HackTheBox): a structured, hands-on and affordable path to build strong pentesting skills early in a cybersecurity career.</description><guid>http://ballpoint.fr/en/blog/lessons-learned-first-certification-cpts-hackthebox</guid></item><item><title>Pre-authentication takeover in EzGED3 via Arbitrary File Read</title><link>http://ballpoint.fr/en/blog/ezged3-preauth-file-read-admin-takeover</link><description>During a black-box penetration test, Ballpoint identified critical security weaknesses in EzGED3 that allow full administrative compromise without prior authentication (CVE-2025-51539).</description><guid>http://ballpoint.fr/en/blog/ezged3-preauth-file-read-admin-takeover</guid></item><item><title>Installing GOAD on PROXMOX Part 2: Provisioning</title><link>http://ballpoint.fr/en/blog/installing-goad-on-proxmox-goad-provisioning-part2</link><description>Tutorial for how to install GOAD part 2</description><guid>http://ballpoint.fr/en/blog/installing-goad-on-proxmox-goad-provisioning-part2</guid></item><item><title>Installing GOAD on PROXMOX Part 3: OpenVPN + Trapster</title><link>http://ballpoint.fr/en/blog/installing-goad-on-proxmox-openvpn-part3</link><description>Tutorial for how to install GOAD part 3</description><guid>http://ballpoint.fr/en/blog/installing-goad-on-proxmox-openvpn-part3</guid></item><item><title>Installing GOAD on PROXMOX Part 1: pfSense</title><link>http://ballpoint.fr/en/blog/installing-goad-on-proxmox-pfsense-part1</link><description>Tutorial for how to install GOAD part 1</description><guid>http://ballpoint.fr/en/blog/installing-goad-on-proxmox-pfsense-part1</guid></item><item><title>Best practices in the event of an intrusion into an information system</title><link>http://ballpoint.fr/en/blog/best-practices-in-the-event-of-an-intrusion-into-an-information-system</link><description>In the event of an intrusion on an information system, a swift response is crucial. First, assess the incident to identify its origin, then, implement containment measures.</description><guid>http://ballpoint.fr/en/blog/best-practices-in-the-event-of-an-intrusion-into-an-information-system</guid></item><item><title>Social engineering : the biggest risk for SMEs</title><link>http://ballpoint.fr/en/blog/social-engineering-the-biggest-risk-for-sme</link><description>Social Engineering remains a formidable threat: hackers manipulate human psychology to circumvent technical defenses.</description><guid>http://ballpoint.fr/en/blog/social-engineering-the-biggest-risk-for-sme</guid></item><item><title>Bypassing MFA in a Entra (Azure AD) context</title><link>http://ballpoint.fr/en/blog/pass-the-prt</link><description>The "Pass-the-PRT" attack is a method allowing an attacker to take control of the victim's Office 365 sessions.</description><guid>http://ballpoint.fr/en/blog/pass-the-prt</guid></item><item><title>NIS2: Understanding the Impacts and Implications for Businesses</title><link>http://ballpoint.fr/en/blog/nis2-understanding-the-impacts-and-implications-for-businesses</link><description>Nis 2: An opportunity for innovative companies? Learn how the NIS 2 directive will strengthen the resilience of critical infrastructure and promote the competitiveness of businesses.</description><guid>http://ballpoint.fr/en/blog/nis2-understanding-the-impacts-and-implications-for-businesses</guid></item><item><title>5 most frequent vulnerabilities in the transport industry</title><link>http://ballpoint.fr/en/blog/5-most-frequent-vulnerabilities-in-the-transport-industry</link><description>Transport is a sector exposed to cyber attacks. Learn to identify and correct the 5 most frequent safety flaws thanks to the pentest.</description><guid>http://ballpoint.fr/en/blog/5-most-frequent-vulnerabilities-in-the-transport-industry</guid></item><item><title>Start a phishing campaign in a company</title><link>http://ballpoint.fr/en/blog/start-a-phishing-campaign-in-a-company</link><description>Why and how to preserve your security, notably by launching a phishing campaign in order to raise awareness?</description><guid>http://ballpoint.fr/en/blog/start-a-phishing-campaign-in-a-company</guid></item><item><title>Honeypots and their use in business</title><link>http://ballpoint.fr/en/blog/honeypots-and-their-use-in-business</link><description>Honeypots are today an essential tool in terms of cybersecurity to help companies protect themselves from cyber attacks.</description><guid>http://ballpoint.fr/en/blog/honeypots-and-their-use-in-business</guid></item><item><title>The importance of intrusion tests for companies</title><link>http://ballpoint.fr/en/blog/pentest-for-companies</link><description>Intrusion tests, also known as pentests, are a crucial step allowing companies to assess and improve their defenses in terms of cybersecurity.</description><guid>http://ballpoint.fr/en/blog/pentest-for-companies</guid></item></channel></rss>