About this project

This repository is a curated collection of publicly available penetration testing reports, published by various consulting firms and academic security groups. It serves as a valuable resource for security professionals, students, and researchers to reference real-world examples of security assessments, methodologies, and findings. The list is maintained by Julio from Blaze Information Security and is based on an earlier compilation by Arne Padmos. It includes links to reports from a variety of sources, offering insights into different testing approaches and reporting styles. This is particularly useful for those looking to understand how professional penetration tests are documented, or for benchmarking their own reporting practices. The repository also points to a related effort on threat modeling by the same original compiler.