Hamza Darghouth’s Post

View profile for Hamza Darghouth

Application Security/DevSecOps Engineer

CISO: no need for a pentest for this app , it's already covered by the DAST. Me: Not so sure... A Dast will never replace an experienced pentester (at least for mid term) - Pentesters use logic, chaining, and context to exploit complex vulnerabilities. - They identify business logic flaws, authorization bypasses, privilege escalations, etc - They can adapt and pivot quickly. What do you think ?

Abdelkarim Fitouri

Senior CyberSecurity Specialist & Founder @ExpertNow 🚀 I help companies securing their Cloud workloads and infrastructures 🌤️

3w

A DAST with AI and a context will probably do :D

Julie C.

Responsable Sécurité Applicative | AppSec | Assistante RSSI

3w

Completely agree with you, especially for logic flaws ! A Dast won't replace a human brain well trained

See more comments

To view or add a comment, sign in

Explore content categories