Dusan Jevtic
AboutBlogContact

Blog

Technical Articles

Latest Articles

In-depth technical writeups, research findings, and practical guides on penetration testing, vulnerability research, and offensive security techniques.

The Ultimate Guide to Cybersecurity Frameworks: MITRE, OWASP, NIST, CWE/CVE, and Compliance
Cybersecurity

The Ultimate Guide to Cybersecurity Frameworks: MITRE, OWASP, NIST, CWE/CVE, and Compliance

A detailed guide to the major cybersecurity frameworks, MITRE ATT&CK, OWASP, NIST, CWE/CVE, and compliance standards, and how they fit together to describe attacker behavior, weaknesses, vulnerabilities, and organizational security.

Security FrameworksMITREOWASPNISTCWECVECompliance
November 27, 2025•14 min read
A Pentester's Guide to File Upload Vulnerabilities
Web Security

A Pentester's Guide to File Upload Vulnerabilities

Understanding file upload vulnerabilities from a pentester's perspective, including common pitfalls, attack techniques, and exploitation methods.

PentestingFile UploadWeb SecurityGuide
September 1, 2025•12 min read
A Complete Guide to Access Control Vulnerabilities
Web Security

A Complete Guide to Access Control Vulnerabilities

A clear breakdown of access control vulnerabilities, untangling confusing terms like IDOR, BOLA, and BFLA, with real examples that show how they appear in modern applications.

PentestingAccess ControlWeb Security
August 27, 2025•18 min read
A Strong Penetration Test Needs a Strong Report
Mobile Security

A Strong Penetration Test Needs a Strong Report

Why a penetration test reaches its full value only when paired with a clear, actionable report that turns findings into real security improvements.

PentestingReportingBest PracticesSecurity
August 22, 2025•15 min read
Web Application Penetration Tester eXtreme (eWPTXv3) Review
Web Security

Web Application Penetration Tester eXtreme (eWPTXv3) Review

My eWPTX review: prep strategy, lab difficulty, exam workflow, and whether it's worth it for web app pentesting.

CertificationWebPentestingReview
July 27, 2025•8 min read
Mobile Application Pentest Tester (eMAPT) Review (Old Version)
Mobile Security

Mobile Application Pentest Tester (eMAPT) Review (Old Version)

A detailed review of the old version of the eMAPT certification, covering exam structure, and my personal experience earning it.

CertificationMobilePentestingReview
July 22, 2025•10 min read
Practical Mobile Pentest Associate (PMPA) Review
Mobile Security

Practical Mobile Pentest Associate (PMPA) Review

A detailed review of the PMPA certification, covering exam structure, preparation tips, and my personal experience earning it.

CertificationMobilePentestingReview
July 21, 2025•8 min read