# faradaysec.com > AI-optimized mirror of faradaysec.com containing 50 pages totalling 21,963 words of clean markdown content, structured data, and semantic HTML. Original source: https://faradaysec.com. Last updated: 2026-09-07T03:52:35.689Z. Each page is available as HTML (with JSON-LD structured data) and Markdown (text-only, ideal for LLMs and RAG). ## Homepage - [All-in-One Security Platform | Faraday](/content/site-root.html): One all-in-one security platform to automate, prioritize, and validate vulnerabilities—powered by real offensive security expertise. (565 words) ## Articles & Blog Posts - [CVE | Faraday](/content/cve/index.html) (23 words) - [Pentesting | Faraday](/content/category-pentesting/index.html) (23 words) - [Webinars | Faraday](/content/webinars/index.html) (196 words) - [How to Get Started | Faraday](/content/how-to-get-started/index.html): Rethink vulnerability management (161 words) - [Uncategorized | Faraday](/content/___/index.html) (23 words) - [Vulnerability Management | Faraday](/content/category-vm/index.html) (23 words) - [Gracias | Faraday](/content/gracias/index.html): Rethink vulnerability management (22 words) - [Cybersec | Faraday](/content/category-cybersec/index.html) (23 words) - [Faraday v5.18 Release: Performance, Integrations & Scale](/content/blog-faraday-v5-18-vulnerability-management-release.html): Discover what’s new in Faraday v5.18: performance improvements at scale, better integrations with Nuclei, Tenable IO, and Burp, plus more control for security teams. % %, This release delivers on long-standing client requests and reinforces our mission to make vulnerability management simpler, more transparent, and more actionable.With this new version, we’re giving security teams greater traceability over the entire vulnerability lifecycle, more control over access and permissions, and a smoother way to orchestrate remediation across teams. (446 words, Feb 19, 2026) - [Release v5.9.0 | Faraday](/content/release-v5-9-0/index.html): At Faraday, our focus is on simplifying the complex and delivering solutions that empower security professionals. With these updates, we’re reaffirming our dedication to innovation, automation, and usability while maintainin the highest security standards—because managing risks and vulnerabilities shouldn’t slow you down. (532 words, Dec 12, 2024) - [Faraday at Ekoparty 2024: recap | Faraday](/content/faraday-at-ekoparty-2024-recap/index.html): Ekoparty 2024 was more than just a cybersecurity conference—it became a hub for knowledge sharing, community building, and celebrating the latest discoveries and innovations. Our team played a prominent role across various sessions, showcasing not only their technical expertise but also their commitment to the community. (968 words, Nov 22, 2024) - [Release v5.7.0 | Faraday](/content/release-v5-7-0/index.html): We’ve just released an update that brings significant improvements to Faraday, focusing on solving key challenges in vulnerability management. Here’s what’s new in Release 5.6.0 and Hotfix 5.6.1, and how these enhancements will make your workflow more efficient and secure (543 words, Oct 24, 2024) - [Cybersecurity talks with our CEO Federico Kirschbaum in Uruguay | Faraday](/content/cybersecurity-talks-with-our-ceo-federico-kirschbaum-in-uruguay.html): Our CEO, Federico Kirschbaum, participated in 'Conciencia Digital,' a conference hosted by Netgate Uruguay in Montevideo. Thousands of people gathered to discuss topics around Artificial Intelligence and Cybersecurity.It's hard not to be passionate about the things we love, specially with such a warm crowd.Thank you so much for the invite! It was an honor to be part of this event and connect with the Uruguayan cybersecurity community. (85 words, Oct 10, 2024) - [Release v5.6.0 | Faraday](/content/release-v5-6-0/index.html): We’ve just released an update that brings significant improvements to Faraday, focusing on solving key challenges in vulnerability management. Here’s what’s new in Release 5.6.0 and Hotfix 5.6.1, and how these enhancements will make your workflow more efficient and secure (511 words, Oct 7, 2024) - [Our COO Martín Tartarelli talks about Vulnerabilities at UCEMA | Faraday](/content/our-coo-martin-tartarelli-talks-about-vulnerabilities-at-ucema.html): Last week, our COO, Martin Tartarelli, offered a master class on vulnerabilities. He thoroughly explained what they are, how they work, and how to manage them. Among other things, he discussed attack surfaces, automation tools, the importance of vulnerability management, and different levels of maturity in an organization.You can read the full presentation here.Plus, our CRO Francisco Amato was leading many meeting with Brazilian companies and fellow pentesters. It was an amazing chance to connect with the Brazilian pentesting community, share our work, and have an amazing time in São Pablo. (213 words, Jul 11, 2024) - [Release v5.3.2 | Faraday](/content/release-v5-3-2/index.html): The redesigned user interface (UI) introduces a more fluid, intuitive, and predictable user experience by minimizing manual tasks and enabling efficient cross-referencing of information. The UI provides a visually pleasing user journey and navigation experience within and across workspaces. While navigating, users can now get full visualization of their current location. (377 words, Jun 13, 2024) - [Good practices in Cybersecurity - Part 3 | Faraday](/content/good-practices-in-cybersecurity-part-3/index.html): Good security practices go hand in hand with automation, integration, and collaboration. As dynamic as the threat landscape is, so must our strategy be. With over 26 thousand vulnerabilities reported last year, it’s now more important than ever to shift security from left to right, and then everywhere. (1,483 words, May 29, 2024) - [Good practices in Cybersecurity - Part 2 | Faraday](/content/good-practices-in-cybersecurity-part-2/index.html): Nowadays, we can distinguish various branches within a security team Red Teams, Blue Teams, Purple Teams & Bug Hunters.But what does each team do?This difference in colors, adding a new category related to bug bounty, makes us think about common tasks that all these approaches can have within a company; and the truth is, they have a lot. First, let's talk about the definition of each one. (745 words, Apr 9, 2024) - [Release v5.2.0 | Faraday](/content/release-v5-2-0/index.html): Welcome to another great version of Faraday. This time, we introduce new methods to make your workflow even more seamless. Plus, we've added many other new agents and enhanced plugins to ensure you never have to leave our platform, effortlessly parsing data and incorporating it within our system. (356 words, Mar 27, 2024) - [Release v5.1.1 | Faraday](/content/release-v5-1-1/index.html): For our corporate clients, we've upgraded our notification feature. Previously, you had a basic notification setup based only on the System, but now there's an “Advanced” notification in place. An easy-to-use system designed to keep you ahead of significant changes in your vulnerability status or to be notified when changes should be made to certain vulnerabilities. For instance, users can receive notifications when the vulnerability risk score exceeds the desired level or when critical vulnerabilities don't meet the SLA. (425 words, Feb 28, 2024) - [Good practices in Cybersecurity - Part 1 | Faraday](/content/good-practices-in-cybersecurity-part-1/index.html): Pentesters use a comprehensive and complete toolkit to expose different platforms and evaluate the security of an IT infrastructure. They safely try to exploit vulnerabilities and are experts at reporting failures, data leakage, or other vulnerabilities.In this post, we present these tools and the several ways they can be applied. (738 words, Feb 15, 2024) - [SADProtocol goes to Hollywood | Faraday](/content/sadprotocol-goes-to-hollywood/index.html): This research project started when Javier’s wife, our ex Research leader, told him their IP camera had stopped working. Javier was asked to fix it, but, as a security researcher, the temptation was too great. He brought the camera to the office and discussed the problem with Octavio, another security researcher at Faraday. The situation quickly escalated from some light reverse engineering to a full-fledged vulnerability research project, which ended with two high-severity bugs and an exploitation strategy worthy of the big screen. (526 words, Jan 22, 2024) - [Release v5.0.0 | Faraday](/content/release-v5-0-0/index.html): We understand that security is your top priority, and it is our obsession to protect all your digital assets and footprints. However, we recognize that time is equally valuable. It's with pride that we introduce a significant performance enhancement for our users. (267 words, Jan 5, 2024) - [Faraday goes to Mind The Sec in São Pablo | Faraday](/content/faraday-goes-to-mind-the-sec-in-sao-pablo/index.html): Our Ssr. Researcher, Octavio Gianatiempo, presented his research on the vulnerability that affected thousands of top-selling routers in Latin America at Mind The Sec ⚡You can read the full presentation here.Plus, our CRO Francisco Amato was leading many meeting with Brazilian companies and fellow pentesters. It was an amazing chance to connect with the Brazilian pentesting community, share our work, and have an amazing time in São Pablo. (92 words, Oct 26, 2023) - [Release v4.6.0 | Faraday](/content/release-v4-6-0/index.html): We are thrilled to introduce Faraday v4.6.0. In this release, we've significantly added improvements to our pipeline section performance and introduced new tools useful for DevOps and security professionals, helping them identify security and compliance issues within their code earlier in the development process. (290 words, Oct 3, 2023) - [Use Slash Command in Slack to interact with Faraday | Faraday](/content/use-slash-command-in-slack-to-interact-with-faraday.html): In this blog, we are going to create a Slack app to allow us to interact with Faraday API using its known Slash Commands. This allows for flexibility in performing various security tasks and queries directly from Slack. Providing visibility into Faraday's data and functionality within the Slack environment. Helping security teams stay informed. (759 words, Sep 19, 2023) - [Cybersecurity in the Blockchain and Web3 by Federico Kirschbaum | Faraday](/content/cybersecurity-in-the-blockchain-and-web3-by-federico-kirschbaum.html): Our CEO Federico Kirschbaum participated as a moderator in the “Cybersecurity” panel at Ethereum Argentina, alongside Pablo G. Sabbatella, Santiago Di Paolo, Sergio Demian Lerner, and Sebastian Raul Wain.He was in charge of joining the conversation of one of the hottest topics in the crypto world.See the video of the talk (107 words, Sep 11, 2023) - [Optimize reporting by integrating Faraday into Zoho. | Faraday](/content/optimize-reporting-by-integrating-faraday-into-zoho.html): Integrating Zoho CRM, Zoho Projects, and Faraday into your penetration test service workflow can significantly streamline the process from lead generation to delivering the final report to the client. This well-coordinated approach enhances efficiency, communication, and client satisfaction throughout the engagement. By following the steps outlined in this blog post, you can effectively manage penetration test projects and maintain a high standard of service delivery. (636 words, Sep 4, 2023) - [Prioritization by our COO Martin Tartarelli | Faraday](/content/prioritization-by-our-coo-martin-tartarelli/index.html): In his own words, Martin stated, “Attempting to address all critical vulnerabilities is a mistake, especially for large companies. Are they all equally critical? It's crucial to assess the context within vulnerability management platforms to prioritize effectively.” (327 words, Sep 2, 2023) - [Release v4.5.2 | Faraday](/content/release-v4-5-2/index.html): We're delighted to present to you our newest release, version 4.5.0, along with essential updates 4.5.1 and 4.5.2. This update brings with it an array of compelling improvements, and performance boosts, that will enhance your experienc (290 words, Aug 24, 2023) - [Federico Kirschbaum on a life in the Argentina hacking scene | Faraday](/content/federico-kirschbaum-on-a-life-in-the-argentina-hacking-scene.html): “Hacking is a way of doing things, fixing problems, and understanding technology", explains our CEO, Federico Kirschbaum, when asked about his journey into cybersecurity. (218 words, Jul 26, 2023) - [Tips Nmap Script Engine | Faraday](/content/tips-nmap-script-engine/index.html): Nmap (Network Mapper) is a popular network scanner that allows discovering ports and services, providing relevant information about a network. In addition to basic port scanning, Nmap offers a wide range of options and advanced functionalities. It can perform TCP, UDP, and SCTP scans, operating system detection scans, service version detection, script scans, and much more. It also allows customization of scans and generation of detailed reports. (1,359 words, Jun 28, 2023) - [Release v4.4.0 | Faraday](/content/release-v4-4-0/index.html): In the agent's stepper, we have expanded your options by adding seven extra tools that you can now choose directly from the UI. Previously, you had to activate them using the API, but now they are available in our user-friendly wizard. (421 words, Jun 15, 2023) - [Bugs and working from home, an interview with Federico Kirschbaum | Faraday](/content/bugs-and-working-from-home-an-interview-with-federico-kirschbaum.html): The research states that the team was "seeking and reporting security vulnerabilities in IoT devices, which led to the finding of an exploitable bug in a consumer-grade router popular in Argentina." They also stated in the research that it was escalating quickly and shares about how protecting home networks is important while working remotely. (222 words, Jun 7, 2023) - [Bypassing certificate pinning with Gabriel Franco | Faraday](/content/bypassing-certificate-pinning-with-gabriel-franco/index.html): Many apps implement a security feature called Certificate Pinning, creating some problems when trying to intercept the traffic between the application and the server. Today, we’ll cover the basics about that and give some examples of how to bypass it using an Android mobile. (580 words, Jun 5, 2023) - [Our CEO Federico Kirschbaum at Buenos Aires City Legislature | Faraday](/content/our-ceo-federico-kirschbaum-at-buenos-aires-city-legislature.html): After a cyber-attack on Buenos Aires City Legislature's infrastructure in 2022, they decided to take a greater step toward cybersecurity awareness. They organized a meetup with our CEO Federico Kirschbaum and Defy Education founder Pablo G. Sabbatella.This showcases their willingness and commitment to the security and privacy standards, a mission that is also very dear to us. (82 words, Jun 1, 2023) - [Our co-founder Francisco Amato in Sepa's night | Faraday](/content/our-co-founder-francisco-amato-in-sepas-night/index.html): Our CRO Francisco Amato was part of Sepa's Night. Watch the streaming! (431 words, Jun 1, 2023) - [Release v4.3.5 | Faraday](/content/release-v4-3-5/index.html): We are happy to share the latest updates of our vulnerability management platform.Faraday v4.3.5 is here!It has been planned with our customers in mind. We are redefining productivity and making our platform more powerful and user-friendly than ever to enhance your experience securing your systems. (366 words, May 4, 2023) - [Web Application pentesting: a guide | Faraday](/content/web-application-pentesting-a-guide/index.html): In Security, the concept of attack-surface (or attack surface) refers to the set of entry points that an attacker can use to access a system or application and carry out an attack. In other words, it is the complete map in which a system or application can be violated. They may include software vulnerabilities, insecure configurations, unauthorized access, open ports, application programming interfaces (APIs), among others. The larger the attack surface of a system or application, the greater the risk that an attacker could exploit a vulnerability and compromise the security of the system. (714 words, Apr 20, 2023) - [Nuclei: Attack Surface with Faraday | Faraday](/content/nuclei-attack-surface-with-faraday/index.html): In Security, the concept of attack-surface (or attack surface) refers to the set of entry points that an attacker can use to access a system or application and carry out an attack. In other words, it is the complete map in which a system or application can be violated. They may include software vulnerabilities, insecure configurations, unauthorized access, open ports, application programming interfaces (APIs), among others. The larger the attack surface of a system or application, the greater the risk that an attacker could exploit a vulnerability and compromise the security of the system. (664 words, Apr 6, 2023) - [Yara rule and some python scripts for detection and sanitization of Acropalypse (CVE-2023-21036) affected PNG images | Faraday](/content/yara-rule-and-some-python-scripts-for-detection-and-sanitization-of-acropalypse-cve-2023-21036-affected-png-images.html): We have just released a YARA to detect vulnerable images of Acropalypse in scale. We also added a sanitization script to remove extra information from PNG files. (197 words, Mar 23, 2023) - [Automating Security Tasks | Faraday](/content/automating-security-tasks/index.html): In this second part (part one), we will show a step by step of a security analysis having in mind a basic methodology:- Perform a passive recognition of the target- Go through an active recognition- Identify vulnerabilities coming from an automatic scanning- Exploit these vulnerabilities- Wrap up with an executive report (1,605 words, Mar 16, 2023) - [We updated Faraday Burp extender | Faraday](/content/we-updated-faraday-burp-extender/index.html): We updated the Faraday Burp extender. Connect Burp to Faraday and accelerate reporting. Need Burp integration to JIRA? (141 words, Sep 28, 2022) - [Our team’s vulnerabilities disclosures 2022 | Faraday](/content/our-teams-vulnerabilities-disclosures-2022/index.html): We devote time to reporting vulnerabilities in open-source projects we use every day, but our interests are also linked with IoT, pervasive products that are part of our life. So far, so long, these are the CVEs we reported this year. (147 words, Sep 26, 2022) - [Our team's vulnerability disclosures 2021 | Faraday](/content/our-teams-vulnerability-disclosures-2021/index.html): Pentesters use a comprehensive and complete toolkit to expose different platforms and evaluate the security of an IT infrastructure. They safely try to exploit vulnerabilities and are experts at reporting failures, data leakage, or other vulnerabilities.In this post, we present these tools and the several ways they can be applied. (216 words, Sep 22, 2022) - [v4.1 Released | Faraday](/content/v4-1-released/index.html): Since our last version came out, we have dedicated ourselves to redesign our vulnerability panel for enhanced visualization. Now, you can tag vulns when importing them and identify them easily and fast. Plus, we added a specific risk score for every vuln that can be seen in the CVSS risk information. (394 words, Sep 15, 2022) - [A vulnerability in Realtek´s SDK for eCos OS: pwning thousands of routers | Faraday](/content/a-vulnerability-in-realteks-sdk-for-ecos-os-pwning-thousands-of-routers.html): Pentesters use a comprehensive and complete toolkit to expose different platforms and evaluate the security of an IT infrastructure. They safely try to exploit vulnerabilities and are experts at reporting failures, data leakage, or other vulnerabilities.In this post, we present these tools and the several ways they can be applied. (864 words, Sep 8, 2022) - [AWS Common Issues - Part 2 | Faraday](/content/aws-common-issues-part-2/index.html): Pentesters use a comprehensive and complete toolkit to expose different platforms and evaluate the security of an IT infrastructure. They safely try to exploit vulnerabilities and are experts at reporting failures, data leakage, or other vulnerabilities.In this post, we present these tools and the several ways they can be applied. (1,071 words, Sep 6, 2022) - [New research findings from Faraday goes to DEF CON | Faraday](/content/new-research-findings-from-faraday-goes-to-def-con/index.html): Pentesters use a comprehensive and complete toolkit to expose different platforms and evaluate the security of an IT infrastructure. They safely try to exploit vulnerabilities and are experts at reporting failures, data leakage, or other vulnerabilities.In this post, we present these tools and the several ways they can be applied. (496 words, Aug 11, 2022) ## Resources - [Full Page Index](/index.html): Browse all cached pages with rich metadata - [About This Cache](/about.html): Methodology, technical details, and usage guidelines - [XML Sitemap](/sitemap.xml): Machine-readable sitemap for crawler discovery - [Robots.txt](/robots.txt): Crawler directives - [AgentSite Network](https://agentsite.network/network.html): Public index of AgentSites and their machine-readable resources