News

Tasos Laskos
Codename SCNR v1.7.2 with Introspector for .NET, Java & Ruby

Codename SCNR v1.7.2 with Introspector for .NET, Java & Ruby

Hello all!   I wanted to let you know that Codename SCNR v1.7.2 is out and includes several bug fixes and optimizations.   More importantly, however, Introspector support has been added for .NET and Java; now covering .NET, Java and Ruby web applications, with more to come. The instrumentation allows the capture of: Server-side code execution. Server-side data flow (-- not for Java unfortunately). Client-side code execution. Client-side data flow. This in turn allows for immense context to be attached to each identified vulnerability, thus making narrowing down bugs easier than ever.   In addition, with AI and this much...

Read more


Codename SCNR v1.7.0: Introspector + OpenAI

Codename SCNR v1.7.0: Introspector + OpenAI

Hello all, There is a new release of Codename SCNR, v1.7.0, and it includes some really spectacular updates. Let's dive in. The Introspector The Introspector is middleware that you use in your web application in order to provide immense context to identified issues: Execution flow Which parts of the web application code were executed. File paths Source code Methods/functions Data flow Which parts of the web application the audit payloads traversed through. File paths Source code Methods functions Arguments at the time. Source code for those methods. Backtrace. Hunting down issues just became easier than ever. In addition, armed with...

Read more


Codename RKN is now available for free!

Codename RKN is now available for free!

Hello all and happy holidays! As a gift that will keep on giving, we at Ecsypno wanted to brighten your every-day worklife from here on out!   Nothing makes or breaks a manual pentest like proper, thorough reconnaissance notes, agreed? However, going over every characteristic of a web application by hand and taking notes is a hell of a tedious process, and I can't imagine everyone's favorite.   Well, fret no longer! Codename RKN to the rescue.   Codename RKN, in essence, performs an inside out analysis of a web application based on its inputs/outputs and presents that data in...

Read more


Multi-platform Docker images for the Ecsypno product line

Multi-platform Docker images for the Ecsypno product line

Hello all,   I wanted to take a moment to inform you of the new official release format. From now on, it is recommended to use the official Docker Compose based releases, so as to enjoy a well-tested and stable environment for Codename SCNR and Codename RKN.   For more information regarding the installation process for each product please consult: Codename SCNR Codename RKN   These containers provide a homogeneous environment that runs smoothly on Mac OSX (Intel and Apple Silicon), Linux and MS Windows, allowing you enjoy our products on pretty much any platform supported by Docker.   After...

Read more