CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
While a large variety of mobile threats exist, especially for Android users, the GhostCtrl backdoor …
I came across this python script that can perform SSH login bruteforce attacks and decided…
CrackMapExec(CME) is a post exploitation tool that can be used for tasks like cracking administrative…
Note that InfoG 1 is now deprecated, use version 2 instead: https://github.com/Tech-Sec/InfoG.git InfoG is a Shellscript…
Commix is a command injection exploitation tool used for testing command injection vulnerabilities in web…
Webpwn3r is a powerful scanning tool, written in Python, to detect remote command execution vulnerabilities,…
Today I have a tool that exploits insecure file shares and allows penetration testers to…
Tmux is a terminal multiplexer: which in lamen terms means it is able to create…
Protect your Facebook Password Found this one while I was on Safari. Its a pretty…
Tulpar is an open source penetration testing tool that can find web application vulnerabilities such…
Evilginx is framework that is able to steal user credentials through a man in the…
W3af is a GUI based framework that helps in auditing and identifying vulnerabilities in web…
What is Infection Monkey? Infection Monkey is an open-source breach and attack simulation tool for…
CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
I found a doozie here ladies and gentlemen, with a little python script called BruteDum. …
Hello Community! We have just completed first vulnhub machine of DC series by DCAU in …
A technical walkthrough of the kerberoasting attack: the Kerberos quirk it abuses, RC4 vs AES, …
While a large variety of mobile threats exist, especially for Android users, the GhostCtrl backdoor …
AlphaBay might be down, but dozens of black markets are still thriving on the dark …
