<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<title>CyberJuly</title>
<link>https://cyberjuly.com/en/blog/</link>
<atom:link href="https://cyberjuly.com/en/feed.xml" rel="self" type="application/rss+xml"/>
<description>Pentester · Security auditor</description>
<language>en</language>
<item><title>From a soldering iron to smart TVs. IoT and hardware security in practice</title><link>https://cyberjuly.com/en/blog/from-soldering-iron-to-smart-tv/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/from-soldering-iron-to-smart-tv/</guid><pubDate>Wed, 12 Aug 2026 00:00:00 +0000</pubDate><description>How an interest in electronics and some C turned into testing IoT devices, why an open UART is still the norm, and what I do today keeping televisions secure.</description><category>IoT</category><category>Hardware</category><category>Embedded</category><category>Reverse engineering</category><category>Pentest</category></item>
<item><title>Car hacking: how I went from web pentesting to vehicles</title><link>https://cyberjuly.com/en/blog/car-hacking-my-journey/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/car-hacking-my-journey/</guid><pubDate>Wed, 12 Aug 2026 00:00:00 +0000</pubDate><description>Where my interest in automotive security came from, why in-vehicle buses are a different world from web applications, and why this niche is still so lightly explored.</description><category>Automotive</category><category>Car hacking</category><category>Embedded</category><category>CAN</category><category>Pentest</category></item>
<item><title>From a Rubber Duck to Gandalf: My Road into Prompt Injection and Prompt Engineering</title><link>https://cyberjuly.com/en/blog/prompt-injection-my-journey/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/prompt-injection-my-journey/</guid><pubDate>Tue, 11 Aug 2026 00:00:00 +0000</pubDate><description>How Harvard&#x27;s CS50, Lakera&#x27;s Gandalf and the Web Security Academy materials pulled me into LLM security, and why prompt injection is social engineering wearing a new coat.</description><category>prompt injection</category><category>LLM</category><category>AI security</category><category>OWASP</category><category>Social engineering</category></item>
<item><title>How to prepare for a penetration test</title><link>https://cyberjuly.com/en/blog/pentest-preparation/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/pentest-preparation/</guid><pubDate>Tue, 11 Aug 2026 00:00:00 +0000</pubDate><description>What to provide before a penetration test of a network, web and mobile app, IoT device or OT system. Common ground rules, per-type checklists and what not to do beforehand.</description><category>Pentest</category><category>Basics</category><category>Process</category></item>
<item><title>How much does a penetration test cost: networks, apps and devices</title><link>https://cyberjuly.com/en/blog/pentest-cost/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/pentest-cost/</guid><pubDate>Tue, 11 Aug 2026 00:00:00 +0000</pubDate><description>A rate of PLN 150-250 per hour and effort ranges for testing networks, applications, IoT devices and OT systems. The billing model and how to estimate the cost yourself.</description><category>Pentest</category><category>Pricing</category><category>Basics</category></item>
<item><title>Pentest, audit or vulnerability scan: what is the difference</title><link>https://cyberjuly.com/en/blog/pentest-vs-audit-vs-scan/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/pentest-vs-audit-vs-scan/</guid><pubDate>Mon, 10 Aug 2026 00:00:00 +0000</pubDate><description>Three different services that offers often blur together. A comparison of scope, time and outcome, plus guidance on which one fits your situation.</description><category>Pentest</category><category>Audit</category><category>Basics</category></item>
<item><title>Is my product in scope of the CRA? A five question test</title><link>https://cyberjuly.com/en/blog/is-my-product-in-cra-scope/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/is-my-product-in-cra-scope/</guid><pubDate>Mon, 10 Aug 2026 00:00:00 +0000</pubDate><description>Five questions that settle whether a product falls under the Cyber Resilience Act and which category it lands in. The starting point before estimating compliance cost.</description><category>CRA</category><category>Compliance</category></item>
<item><title>CRA: what the Cyber Resilience Act requires from manufacturers</title><link>https://cyberjuly.com/en/blog/cra-manufacturer-obligations/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/cra-manufacturer-obligations/</guid><pubDate>Mon, 10 Aug 2026 00:00:00 +0000</pubDate><description>Product categories, deadlines, Annex I, SBOM and the 24 hour reporting duty. A practical guide to the CRA for manufacturers of products with digital elements.</description><category>CRA</category><category>Compliance</category><category>IoT</category><category>Embedded</category></item>
<item><title>Reporting a vulnerability within 24 hours: who, to whom and what</title><link>https://cyberjuly.com/en/blog/cra-24h-reporting/</link><guid isPermaLink="true">https://cyberjuly.com/en/blog/cra-24h-reporting/</guid><pubDate>Mon, 10 Aug 2026 00:00:00 +0000</pubDate><description>The CRA reporting duty applies from 11 September 2026. The 24 hour, 72 hour and 14 day deadlines, who receives the notification and the readiness the procedure demands.</description><category>CRA</category><category>Compliance</category><category>Process</category></item>
</channel>
</rss>
