Security articles from Sintropyc
Practical explanations of security testing, evidence and application boundaries. Start with a topic, then explore the related vulnerability guides and case study.
Testing and evidence
Proof of concept vs proof of exploitSintropyc explains PoC and exploit evidence: what a security finding demonstrates, how to rule out false positives, and what to record for a useful retest.Why AI-generated code still needs security testingA Sintropyc guide to reviewing AI-generated apps: check authorization, database queries, secrets and dependencies, then verify fixes with targeted tests.How to test an Electron app for vulnerabilitiesSintropyc’s Electron security guide: review renderer isolation, preload and IPC boundaries, packaged secrets, and the evidence needed to verify a fix.
Explore the vulnerability testing guides or read the Sintropyc IDOR case study.