CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
Abraham Masri (security researcher and software developer) has found a security issue called “chaiOS Text …
Thinking someone is spying on you is one of the most unsettling feelings ever, I…
I found a doozie here ladies and gentlemen, with a little python script called BruteDum. …
So what is this subfinder tool all about? Subfinder is a subdomain discovery tool that…
Reconnaissance is one of the first steps to conduct within a pen test engagement. During…
Commix is a command injection exploitation tool used for testing command injection vulnerabilities in web…
Wapiti is an open source tool that scans web applications for multiple vulnerabilities including data…
XAttacker is a perl tool capable of scanning and auto-exploiting vulnerabilities in web applications. By…
Evilginx is framework that is able to steal user credentials through a man in the…
The Operative Framework tool can be used within a red team/social engineering engagement to collect…
Empire is regarded as one of the most useful frameworks by many penetration testers. It…
CMSeek is a python tool that is used to detect Content Management System (CMS) within…
Note that InfoG 1 is now deprecated, use version 2 instead: https://github.com/Tech-Sec/InfoG.git InfoG is a Shellscript…
CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
I found a doozie here ladies and gentlemen, with a little python script called BruteDum. …
Hello Community! We have just completed first vulnhub machine of DC series by DCAU in …
A technical walkthrough of the kerberoasting attack: the Kerberos quirk it abuses, RC4 vs AES, …
Abraham Masri (security researcher and software developer) has found a security issue called “chaiOS Text …
Lawmakers in lands like New York, Washington, and Massachusetts have introduced bills in recent weeks to support the principles …
