CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
APT1 aka Comment Crew code resurfaces in new espionage campaign and a researcher demonstrates a …
Morpheus is an open source framework that can launch multiple attacks on the network using…
Sitadel is a python based web application scanner. It’s flexible and has many different scanning…
Today, we are going to talk about a powerful web application scanner named WAScan. WAScan…
So you have been tasked with performing a penetration test of the internet-facing systems of…
Yuki Chan is an open source tool that automates some of the information gathering and…
XSStrike is an open source tool that detects Cross Site Scripting vulnerabilities and exploits them. …
Photon is a relatively fast crawler designed for automating OSINT (Open Source Intelligence) with a…
Got a huge list of targets that you’d like to enumerate but can’t really visit…
SniffAir is an open source tool made for sophisticated wireless attacks and data capture, it…
Kalitorify is a shell based script for Kali Linux. It uses iptables and TOR to…
MassBleed is an open source tool used for scanning SSL vulnerabilities in web applications. The…
CrackMapExec(CME) is a post exploitation tool that can be used for tasks like cracking administrative…
CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
I found a doozie here ladies and gentlemen, with a little python script called BruteDum. …
Hello Community! We have just completed first vulnhub machine of DC series by DCAU in …
A technical walkthrough of the kerberoasting attack: the Kerberos quirk it abuses, RC4 vs AES, …
APT1 aka Comment Crew code resurfaces in new espionage campaign and a researcher demonstrates a …
Hiding malicious packages in update installers is nothing new. Cyber criminals exploit users’ ignorance/gullibility by …
