<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>LRL Blog</title>
    <link>https://blogs.lostrabbitlabs.com</link>
    <description>Lost Rabbit Labs Infosec Security Hacking Blog</description>
    <language>en</language>
    <pubDate>Wed, 14 Jan 2026 00:07:54 GMT</pubDate>
    <dc:date>2026-01-14T00:07:54Z</dc:date>
    <dc:language>en</dc:language>
    <item>
      <title>Why Continuous Security Is the New Standard for Audit Readiness</title>
      <link>https://blogs.lostrabbitlabs.com/why-continuous-security-is-the-new-standard-for-audit-readiness</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blogs.lostrabbitlabs.com/why-continuous-security-is-the-new-standard-for-audit-readiness" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blogs.lostrabbitlabs.com/hubfs/compass-1.png" alt="Why Continuous Security Is the New Standard for Audit Readiness" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div style="overflow-x: auto; max-width: 100%; width: 100%; margin-left: auto; margin-right: auto;"&gt; 
 &lt;table style="width: 100%; border-collapse: collapse; table-layout: fixed; border: 1px solid #99acc2;"&gt; 
  &lt;tbody&gt; 
   &lt;tr&gt; 
    &lt;td style="width: 26.2222%; padding: 4px;"&gt;&lt;/td&gt; 
    &lt;td style="width: 73.7222%; padding: 4px;"&gt;For years, organizations have treated security audits as annual events: a brief surge of activity, a frantic scramble for documentation, and a collective exhale once the auditor signs off. That pattern no longer fits the reality of modern threats, customer expectations, or regulatory requirements.&lt;br&gt;&lt;br&gt;Audit readiness used to mean organizing evidence once a year. Today, it means demonstrating that your security program is alive, measurable, and operating continuously.&lt;br&gt;&lt;br&gt;The shift is clear. Continuous security is rapidly becoming the new baseline for proving trust.&lt;/td&gt; 
   &lt;/tr&gt; 
  &lt;/tbody&gt; 
 &lt;/table&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;br&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blogs.lostrabbitlabs.com/why-continuous-security-is-the-new-standard-for-audit-readiness" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blogs.lostrabbitlabs.com/hubfs/compass-1.png" alt="Why Continuous Security Is the New Standard for Audit Readiness" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;div style="overflow-x: auto; max-width: 100%; width: 100%; margin-left: auto; margin-right: auto;"&gt; 
 &lt;table style="width: 100%; border-collapse: collapse; table-layout: fixed; border: 1px solid #99acc2;"&gt; 
  &lt;tbody&gt; 
   &lt;tr&gt; 
    &lt;td style="width: 26.2222%; padding: 4px;"&gt;&lt;/td&gt; 
    &lt;td style="width: 73.7222%; padding: 4px;"&gt;For years, organizations have treated security audits as annual events: a brief surge of activity, a frantic scramble for documentation, and a collective exhale once the auditor signs off. That pattern no longer fits the reality of modern threats, customer expectations, or regulatory requirements.&lt;br&gt;&lt;br&gt;Audit readiness used to mean organizing evidence once a year. Today, it means demonstrating that your security program is alive, measurable, and operating continuously.&lt;br&gt;&lt;br&gt;The shift is clear. Continuous security is rapidly becoming the new baseline for proving trust.&lt;/td&gt; 
   &lt;/tr&gt; 
  &lt;/tbody&gt; 
 &lt;/table&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;br&gt;&lt;/p&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=48319231&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblogs.lostrabbitlabs.com%2Fwhy-continuous-security-is-the-new-standard-for-audit-readiness&amp;amp;bu=https%253A%252F%252Fblogs.lostrabbitlabs.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <pubDate>Thu, 01 Jan 2026 00:45:09 GMT</pubDate>
      <author>hunt@lostrabbitlabs.com (Dave Hunt)</author>
      <guid>https://blogs.lostrabbitlabs.com/why-continuous-security-is-the-new-standard-for-audit-readiness</guid>
      <dc:date>2026-01-01T00:45:09Z</dc:date>
    </item>
    <item>
      <title>Lost Rabbit Labs Year-End Security Guide</title>
      <link>https://blogs.lostrabbitlabs.com/lost-rabbit-labs-year-end-security-guide</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blogs.lostrabbitlabs.com/lost-rabbit-labs-year-end-security-guide" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blogs.lostrabbitlabs.com/hubfs/Picture3.png" alt="Lost Rabbit Labs Year-End Security Guide" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span style="font-weight: bold;"&gt;&lt;em&gt;&lt;span style="font-size: 24px;"&gt;For Teams That Already Know the Basics &lt;/span&gt;&lt;/em&gt;&lt;/span&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blogs.lostrabbitlabs.com/lost-rabbit-labs-year-end-security-guide" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blogs.lostrabbitlabs.com/hubfs/Picture3.png" alt="Lost Rabbit Labs Year-End Security Guide" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span style="font-weight: bold;"&gt;&lt;em&gt;&lt;span style="font-size: 24px;"&gt;For Teams That Already Know the Basics &lt;/span&gt;&lt;/em&gt;&lt;/span&gt;&lt;/p&gt;  
&lt;img src="https://track.hubspot.com/__ptq.gif?a=48319231&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblogs.lostrabbitlabs.com%2Flost-rabbit-labs-year-end-security-guide&amp;amp;bu=https%253A%252F%252Fblogs.lostrabbitlabs.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <pubDate>Wed, 10 Dec 2025 22:17:08 GMT</pubDate>
      <author>hunt@lostrabbitlabs.com (Dave Hunt)</author>
      <guid>https://blogs.lostrabbitlabs.com/lost-rabbit-labs-year-end-security-guide</guid>
      <dc:date>2025-12-10T22:17:08Z</dc:date>
    </item>
    <item>
      <title>New Tool Release:   LRL-SCAN</title>
      <link>https://blogs.lostrabbitlabs.com/new-release-lrl-scan</link>
      <description>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blogs.lostrabbitlabs.com/new-release-lrl-scan" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blogs.lostrabbitlabs.com/hubfs/image-png-3.png" alt="New Tool Release:&amp;nbsp; &amp;nbsp;LRL-SCAN" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span style="text-decoration: underline; font-size: 18px;"&gt;&lt;span style="font-weight: bold;"&gt;What is LRL-SCAN?&lt;br&gt;&lt;/span&gt;&lt;/span&gt;&amp;nbsp;&amp;nbsp;&lt;br&gt;&lt;span style="font-weight: bold; color: #9fc5e8;"&gt; LRL-Scan&lt;/span&gt; (https://gitlab.com/lostrabbitlabs/lrl-scan) is a free open-source Vulnerability Scanner based off of Hacker Target's 'nmap-did-what' project (https://github.com/hackertarget/nmap-did-what). Our team has added improvements to the original schema, UI, and functionality by integrating SSLScan, Nuclei, NIST NVD lookups, and more. Perform full network, services, and vulnerability scanning on your network and discover hidden threats in your environment.&amp;nbsp;&lt;br&gt;&lt;br&gt;&lt;span style="text-decoration: underline;"&gt;&lt;span style="font-weight: normal;"&gt;External Network vs. Internal Network scanning:&lt;/span&gt;&lt;/span&gt;&lt;br&gt;LRL-Scan is equipped to scan both public IPv4 addresses and the internal RFC1918 address space (along with hostnames and domain names). Running 'LRL-Scan' on an internal network will result in the collection of MAC Addresses which will be used to perform OUI Vendor lookups. In addition, mDNS hostname discovery is performed to find additional hostnames. Running 'LRL-Scan' on an external network will result in ASN &amp;amp; Geo Lookups that will be used to generate plots on the Grafana dashboard map.&lt;/p&gt; 
&lt;br&gt;</description>
      <content:encoded>&lt;div class="hs-featured-image-wrapper"&gt; 
 &lt;a href="https://blogs.lostrabbitlabs.com/new-release-lrl-scan" title="" class="hs-featured-image-link"&gt; &lt;img src="https://blogs.lostrabbitlabs.com/hubfs/image-png-3.png" alt="New Tool Release:&amp;nbsp; &amp;nbsp;LRL-SCAN" class="hs-featured-image" style="width:auto !important; max-width:50%; float:left; margin:0 15px 15px 0;"&gt; &lt;/a&gt; 
&lt;/div&gt; 
&lt;p&gt;&lt;span style="text-decoration: underline; font-size: 18px;"&gt;&lt;span style="font-weight: bold;"&gt;What is LRL-SCAN?&lt;br&gt;&lt;/span&gt;&lt;/span&gt;&amp;nbsp;&amp;nbsp;&lt;br&gt;&lt;span style="font-weight: bold; color: #9fc5e8;"&gt; LRL-Scan&lt;/span&gt; (https://gitlab.com/lostrabbitlabs/lrl-scan) is a free open-source Vulnerability Scanner based off of Hacker Target's 'nmap-did-what' project (https://github.com/hackertarget/nmap-did-what). Our team has added improvements to the original schema, UI, and functionality by integrating SSLScan, Nuclei, NIST NVD lookups, and more. Perform full network, services, and vulnerability scanning on your network and discover hidden threats in your environment.&amp;nbsp;&lt;br&gt;&lt;br&gt;&lt;span style="text-decoration: underline;"&gt;&lt;span style="font-weight: normal;"&gt;External Network vs. Internal Network scanning:&lt;/span&gt;&lt;/span&gt;&lt;br&gt;LRL-Scan is equipped to scan both public IPv4 addresses and the internal RFC1918 address space (along with hostnames and domain names). Running 'LRL-Scan' on an internal network will result in the collection of MAC Addresses which will be used to perform OUI Vendor lookups. In addition, mDNS hostname discovery is performed to find additional hostnames. Running 'LRL-Scan' on an external network will result in ASN &amp;amp; Geo Lookups that will be used to generate plots on the Grafana dashboard map.&lt;/p&gt; 
&lt;br&gt;   
&lt;img src="https://track.hubspot.com/__ptq.gif?a=48319231&amp;amp;k=14&amp;amp;r=https%3A%2F%2Fblogs.lostrabbitlabs.com%2Fnew-release-lrl-scan&amp;amp;bu=https%253A%252F%252Fblogs.lostrabbitlabs.com&amp;amp;bvt=rss" alt="" width="1" height="1" style="min-height:1px!important;width:1px!important;border-width:0!important;margin-top:0!important;margin-bottom:0!important;margin-right:0!important;margin-left:0!important;padding-top:0!important;padding-bottom:0!important;padding-right:0!important;padding-left:0!important; "&gt;</content:encoded>
      <pubDate>Fri, 14 Nov 2025 04:25:44 GMT</pubDate>
      <guid>https://blogs.lostrabbitlabs.com/new-release-lrl-scan</guid>
      <dc:date>2025-11-14T04:25:44Z</dc:date>
      <dc:creator>the Lost Rabbits</dc:creator>
    </item>
  </channel>
</rss>
