<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>FACTION Security Blog</title><description>Product updates, pentest reporting guides, and security engineering notes from the team behind FACTION, the open-source and enterprise pentest management platform.</description><link>https://blog.factionsecurity.com/</link><language>en-us</language><item><title>See You at SecTor Arsenal 2026 in Toronto</title><link>https://blog.factionsecurity.com/blog/see-you-at-sector-arsenal-2026/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/see-you-at-sector-arsenal-2026/</guid><description>We&apos;re heading back to Black Hat SecTor Arsenal on October 8th to demo OWASP Faction 2.0 live. Come say hi, grab some stickers, and tell us what would make your reporting workflow better.</description><pubDate>Fri, 11 Sep 2026 00:00:00 GMT</pubDate><category>News</category><category>SecTor</category><category>Blackhat</category><category>OWASP</category><category>Pentesting</category></item><item><title>Stop Writing Pentest Reports By Hand — Create Custom AI Prompts in OWASP Faction 2.0</title><link>https://blog.factionsecurity.com/blog/stop-writing-pentest-reports-by-hand-create-custom-ai-prompts-in-owasp-faction-2/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/stop-writing-pentest-reports-by-hand-create-custom-ai-prompts-in-owasp-faction-2/</guid><description>Are you a penetration tester? Do you hate writing reports? Yeah, me too. Most of us got into this to break things, not to spend the last three days of an…</description><pubDate>Wed, 09 Sep 2026 00:00:00 GMT</pubDate><category>OWASP</category><category>Application Security</category><category>Penetration Testing</category><category>Information Security</category></item><item><title>Releasing Faction 2.0 at BlackHat Arsenal 2026</title><link>https://blog.factionsecurity.com/blog/releasing-faction-2-0-at-blackhat-arsenal-2026/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/releasing-faction-2-0-at-blackhat-arsenal-2026/</guid><description>I’m excited to announce that I’ll be returning to Black Hat Arsenal 2026 in Las Vegas and SecTor 2026 in Canada to demo OWASP Faction 2.0 — the biggest…</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate><category>Cybersecurity</category><category>Red Team</category><category>Pentesting</category><category>Hacking</category><category>Application Security</category></item><item><title>FACTION Enterprise 1.8.9 — Multi-Format PenTest Reports, Encrypted PDFs, and Faster SSO</title><link>https://blog.factionsecurity.com/blog/faction-enterprise-1-8-9-multi-format-pentest-reports-encrypted-pdfs-and-faster/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/faction-enterprise-1-8-9-multi-format-pentest-reports-encrypted-pdfs-and-faster/</guid><description>Your workflow shouldn’t slow you down when you’re already juggling assessments, client deadlines, and a team that needs answers fast. Over the past few…</description><pubDate>Fri, 03 Jul 2026 00:00:00 GMT</pubDate><category>Application Security</category><category>Penetration Testing</category><category>Hacking</category><category>Red Team</category></item><item><title>Automate Your Pentesting Workflow: Connecting Faction to AI Agents via MCP</title><link>https://blog.factionsecurity.com/blog/automate-your-pentesting-workflow-connecting-faction-to-ai-agents-via-mcp/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/automate-your-pentesting-workflow-connecting-faction-to-ai-agents-via-mcp/</guid><description>OWASP Faction is a free opensource tool that you can use to automate pentest reporting and other workflows. We are going to dig into how you using agentic…</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate><category>AI Cyber Security</category><category>Pentesting</category><category>MCP Server</category><category>Red Team</category></item><item><title>Vibe Coding Faction Extensions at PhreakNic 26</title><link>https://blog.factionsecurity.com/blog/vibe-coding-faction-extensions-at-phreaknic-26/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/vibe-coding-faction-extensions-at-phreaknic-26/</guid><description>I just got back from speaking at PhreakNic 26 where I vibe coded a GitHub Faction Extension live while also speaking about my many misadventures in vibe…</description><pubDate>Fri, 21 Nov 2025 00:00:00 GMT</pubDate><category>AppSec</category><category>Cybersecurity</category><category>Hacking</category><category>Vibe Coding</category><category>Penetration Testing</category></item><item><title>Black Hat 2025 Arsenal Experience</title><link>https://blog.factionsecurity.com/blog/black-hat-2025-arsenal-experience/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/black-hat-2025-arsenal-experience/</guid><description>I know this post is kind of late, but I’m just now getting around to posting about my Black Hat USA 2025 and SECTOR 2025 Arsenal experiences. For context,…</description><pubDate>Tue, 11 Nov 2025 00:00:00 GMT</pubDate><category>Hacking Tools</category><category>AppSec</category><category>Pentesting Tools</category><category>Pentesting</category><category>Blackhat</category></item><item><title>OWASP Faction 1.7 — Major Updates for Enterprise Security Teams</title><link>https://blog.factionsecurity.com/blog/owasp-faction-1-7-major-updates-for-enterprise-security-teams/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/owasp-faction-1-7-major-updates-for-enterprise-security-teams/</guid><description>For enterprise penetration testing teams and security consulting firms managing multiple assessments, staying organized is essential. OWASP Faction 1.7…</description><pubDate>Mon, 27 Oct 2025 00:00:00 GMT</pubDate><category>Redteam Tool</category><category>Penetration Testing</category><category>Cybersecurity</category><category>Application Security</category><category>Web App Pentesting</category></item><item><title>Automate PenTest Reports with Boilerplates</title><link>https://blog.factionsecurity.com/blog/automate-pentest-reports-with-boilerplates/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/automate-pentest-reports-with-boilerplates/</guid><description>If you have been doing penetration testing for any length of time, you probably have a personal database of vulnerability descriptions, recommendations, and…</description><pubDate>Wed, 11 Dec 2024 00:00:00 GMT</pubDate><category>Vulnerability Management</category><category>Penetration Testing</category><category>Red Team</category><category>Hacking Tools</category><category>Application Security</category></item><item><title>How to Automate Pentest Reporting Using Faction</title><link>https://blog.factionsecurity.com/blog/how-to-automate-pentest-reporting-using-faction/</link><guid isPermaLink="true">https://blog.factionsecurity.com/blog/how-to-automate-pentest-reporting-using-faction/</guid><description>Faction is an open-source security assessment collaboration framework designed to streamline and enhance your security workflows. With Faction, you can:</description><pubDate>Thu, 21 Nov 2024 00:00:00 GMT</pubDate><category>Pentesting</category><category>Vulnerability Assessment</category><category>Vulnerability Management</category><category>Ethical Hacking</category><category>Hacking</category></item></channel></rss>