CyberMindr in Gartner®’s Threat Exposure Management Reports - Report 1 , Report 2

Webinar

Real-World Vulnerabilities: Insights from Public Pentest Reports

September 16, 2025 | 4PM - 5PM IST

Explore real-world security flaws uncovered in mobile, web, VPN, and cloud applications through public penetration testing reports. These vulnerabilities often found in widely used or sensitive apps reveal how even the most security-conscious projects can expose critical risks when oversights occur. We’ll examine technical examples, including those in LeaveHomeSafe, Hong Kong’s government-mandated COVID-19 tracing app, highlighting how personal data protection can be undermined.

We will also cover flaws in open-source tools built to protect users in restrictive regions like China, Iran, and Russia. These cases demonstrate the challenges of balancing usability and security under hostile conditions, and the dangers posed when vulnerabilities remain unaddressed.

The session will feature detailed analyses and attack scenarios, offering insights into how vulnerabilities were identified, exploited, and the lessons drawn from public security reports.

Join the webinar to understand the importance of transparency and the value of learning from publicly disclosed vulnerabilities.

Key Learnings:

Learning from Public Pentest Reports: Why analyzing disclosed vulnerabilities improves security practices across industries.

REGISTER NOW

Critical Real-World Cases: Flaws in mobile, web, VPN, and cloud apps that exposed sensitive data.

Mobile App Risks: Deep dive into high-profile apps like LeaveHomeSafe, showing how mandated solutions can fail at protecting privacy.

Security in High-Risk Environments: Lessons from open-source tools for at-risk users in restrictive regions.

Attack Scenarios and Lessons Learned: Exploitation paths, root causes, and actionable takeaways for developers, defenders, and pentesters.

REGISTER NOW

Explore real-world security flaws uncovered in mobile, web, VPN, and cloud applications through public penetration testing reports. These vulnerabilities often found in widely used or sensitive apps reveal how even the most security-conscious projects can expose critical risks when oversights occur. We’ll examine technical examples, including those in LeaveHomeSafe, Hong Kong’s government-mandated COVID-19 tracing app, highlighting how personal data protection can be undermined.

We will also cover flaws in open-source tools built to protect users in restrictive regions like China, Iran, and Russia. These cases demonstrate the challenges of balancing usability and security under hostile conditions, and the dangers posed when vulnerabilities remain unaddressed.

The session will feature detailed analyses and attack scenarios, offering insights into how vulnerabilities were identified, exploited, and the lessons drawn from public security reports.

Join the webinar to understand the importance of transparency and the value of learning from publicly disclosed vulnerabilities.

Key Learnings:

Learning from Public Pentest Reports: Why analyzing disclosed vulnerabilities improves security practices across industries.

Critical Real-World Cases: Flaws in mobile, web, VPN, and cloud apps that exposed sensitive data.

Mobile App Risks: Deep dive into high-profile apps like LeaveHomeSafe, showing how mandated solutions can fail at protecting privacy.

Security in High-Risk Environments: Lessons from open-source tools for at-risk users in restrictive regions.

Attack Scenarios and Lessons Learned: Exploitation paths, root causes, and actionable takeaways for developers, defenders, and pentesters.

Speaker

Image 1

Abraham Aranguren

Black Hat Trainer
CEO, 7ASecurity

With 24 years in IT and 17 years in IT Security, Abraham Aranguren leads 7ASecurity as its CEO. He is a passionate security professional, with extensive expertise in mobile, web application, and web server penetration testing. Formerly a lead framework developer, Abraham is now a recognized trainer, co-authoring 7ASecurity’s Mobile, Web, and Desktop (Electron) app security courses. He regularly delivers training at prestigious events including Black Hat USA, HITB, OWASP Global AppSec, and several others worldwide.

What To Expect

Framing the Challenge

Explore the real-world impact of security flaws in mobile, web, VPN, and cloud applications through public pentest reports.

Hands-On Knowledge

Gain practical insights from detailed attack scenarios, exploitation paths, and root-cause analyses of disclosed vulnerabilities.

Ask the Experts

Join an interactive Q&A session to discuss risks, clarify doubts, and learn how to address vulnerabilities in your own projects.

Actionable Guidance

Walk away with lessons and best practices to strengthen app security, protect sensitive data, and reduce real-world risks.

RSVP Now Demo Icon

What To Expect

Framing the Challenge

Explore the real-world impact of security flaws in mobile, web, VPN, and cloud applications through public pentest reports.

Hands-On Knowledge

Gain practical insights from detailed attack scenarios, exploitation paths, and root-cause analyses of disclosed vulnerabilities.

Ask the Experts

Join an interactive Q&A session to discuss risks, clarify doubts, and learn how to address vulnerabilities in your own projects.

Actionable Guidance

Walk away with lessons and best practices to strengthen app security, protect sensitive data, and reduce real-world risks.

RSVP Now Demo Icon