Mentorship, Leadership, and Raising the Bar
By Dana Hehl When I was interviewing with Anvil, something Chris Elbring, the CEO and co-founder, said really stayed with me. He talked about wanting to build a company that…
Digging Into Go Internals: Low-Level Insights for Reverse Engineers
By Jacopo Ferrigno Sooner or later, whether in your penetration testing career or when playing a CTF, you will end up having to reverse engineer some binary executable, be it…
Scanning for Post-Quantum Cryptographic Support
By Vincent Berg TL;DR The Issue: Organizations need to be aware of looming deadlines for Post-Quantum Cryptographic (PQC) compliance. The Solution: Anvil Secure is launching a free and open-source scanner…
Introducing HANAlyzer: An Open-Source Tool to Secure Your HANA databases
By Alex Conti TL;DR The problem: SAP publishes a long and time-consuming checklist to securely configure your HANA database instances. The solution: Anvil Secure is launching the first version of…
Glitching STM32 Read Out Protection
By Luigi Fragale In this blog post, we will demonstrate how to prepare the target and perform a fault injection attack to bypass the Read Out Protection, a security feature…
One Bug Wasn’t Enough: Escalating Twice Through SAP’s Setuid Landscape
By Tao Sauvage SAP setuid It's not every day you get a chance to one-up your CTO and co-founder of the company you work for. In 2020, Vincent Berg published…
Behind the Scenes at Hammercon 2025: The CTF Challenge
By Tao Sauvage Anvil has concluded another successful Hammercon Conference for 2025. For the past three years, Anvil has organized an annual private conference for its employees. As a hybrid…
Trends in Security Vulnerabilities: Insights from Anvil
This post explores insights and trends gathered from data that Anvil Secure collected while delivering projects to a wide range of clients. The Types of Issues We Analyzed The statistical…
Spoofing Internal Packets for Multihomed Linux Devices
During several assessments, we’ve encountered interactions between multihomed Linux devices and common firewall configurations, with Linux’s stateful firewall (conntrack module). We have successfully exploited this vulnerability on multiple occasions, allowing…

