blog.guillaumebonnet.fr
About
Archive
Tags
15 Apr 2026
Vulnerability Scanning Is Not Vulnerability Management
I have seen organizations with 50,000 findings and zero remediation. Scanning without triage, prioritization, and tracking is just generating PDFs nobody reads.
13 Apr 2026
Dear Bots, Welcome to My Blog
51% of web traffic is automated. Most of my readers are scrapers, crawlers, and AI agents. This post is for them.
11 Apr 2026
Caido Is the Burp Alternative I Actually Enjoy Using
I used Burp Suite for 8 years. Caido is faster, lighter, and built by people who understand that Java GUIs in 2026 are not acceptable. My proxy workflow finally feels modern.
08 Apr 2026
NIS2 Compliance Starts with Asset Inventory, Not Policies
I have reviewed a dozen NIS2 readiness programs. They all start with writing policies. They should start with knowing what they have. You cannot protect assets you have not inventoried.
05 Apr 2026
CrowdSec Is the Fail2Ban Replacement I Wish I Found Sooner
I ran Fail2Ban for years. CrowdSec does the same thing but shares threat intelligence across its community of users. My server blocks attacks before they reach my logs.
next