CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
OneLogin stated Wednesday that its data centers in the US have been hacked. Customers received …
Damn Small XSS Scanner (DSXS) is a great tool for finding cross site scripting vulnerabilities,…
Commix is a command injection exploitation tool used for testing command injection vulnerabilities in web…
BadKarma is a GUI based network reconnaissance tool that can gather useful network information at…
Reconnaissance is one of the first steps to conduct within a pen test engagement. During…
W3af is a GUI based framework that helps in auditing and identifying vulnerabilities in web…
With Sherlock you can search across a vast number of social platforms for a username.…
Spiderfoot is an open source tool used for reconnaissance purpose. The tool is capable of…
Today I have a tool that exploits insecure file shares and allows penetration testers to…
Getallurls (gau) fetches known URLs from AlienVault’s, the Wayback Machine, and Common Crawl for any…
Vega is a GUID based open source tool used for testing the security of web…
Phishing is a classic favorite attack of hackers. Not only that it provides easy access…
Dirhunt is a python tool that can quickly search directories on target domains to find…
CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
I found a doozie here ladies and gentlemen, with a little python script called BruteDum. …
Hello Community! We have just completed first vulnhub machine of DC series by DCAU in …
A technical walkthrough of the kerberoasting attack: the Kerberos quirk it abuses, RC4 vs AES, …
OneLogin stated Wednesday that its data centers in the US have been hacked. Customers received …
A new malware has been discovered by Check Point security researchers called “Fireball”, the malware …
