CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
May be you logged into your Facebook account in your friend’s computer and you are not …
Modlishka is a go based phishing proxy that takes your phishing campaigns to the next…
Net Creds is a free tool that sniffs passwords and hashes from a network interface.…
Today, we are going to talk about a powerful web application scanner named WAScan. WAScan…
Dnsx is a fast and multi-purpose DNS toolkit that allows you to run multiple probers…
Morpheus is an open source framework that can launch multiple attacks on the network using…
Reconnaissance is one of the first steps to conduct within a pen test engagement. During…
Galileo is a free web application auditing framework that can perform various penetration testing tasks,…
What is JFScan? JFScan is a great enumeration tool created by nullt3r written mainly in…
I came across this python script that can perform SSH login bruteforce attacks and decided…
Wapiti is an open source tool that scans web applications for multiple vulnerabilities including data…
Every reconnaissance phase has a standard checklist that is to be followed. If you’ve ever…
Commix is a command injection exploitation tool used for testing command injection vulnerabilities in web…
CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
I found a doozie here ladies and gentlemen, with a little python script called BruteDum. …
Hello Community! We have just completed first vulnhub machine of DC series by DCAU in …
A technical walkthrough of the kerberoasting attack: the Kerberos quirk it abuses, RC4 vs AES, …
May be you logged into your Facebook account in your friend’s computer and you are not …
A young India hacker received $16,000 bounty for finding a vulnerability in Facebook website. Arun …
