CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
The terrible Log4j bug mayhem goes on as the Belgium Defense Ministry has emerged as …
Wifiphisher is an open source framework that can be utilised for red team engagements for…
XSStrike is an open source tool that detects Cross Site Scripting vulnerabilities and exploits them. …
YAWAST is a web application penetration testing toolkit that can perform information gathering and basic…
Today, we talk about SSLyze. SSLyze is a Python tool that can analyze the SSL…
Hacktronian is an open-source penetration testing framework designed for social engineering and multiple server…
PhishX is a python tool that can capture user credentials using a spear phishing attack.…
Evilginx is framework that is able to steal user credentials through a man in the…
Evilgrade is a modular framework that takes over target machines by injecting fake updates in…
Thinking someone is spying on you is one of the most unsettling feelings ever, I…
The Evil Access Point (AP) attack has been around for a long time. There are…
Cloakify Factory is a tool to transforms any file type into a list of harmless…
Nuclei is a tool that is used to send requests across the given target based…
CISA added CVE-2026-48939 and CVE-2026-56291 to its Known Exploited Vulnerabilities catalog after automated attackers exploited …
I found a doozie here ladies and gentlemen, with a little python script called BruteDum. …
Hello Community! We have just completed first vulnhub machine of DC series by DCAU in …
A technical walkthrough of the kerberoasting attack: the Kerberos quirk it abuses, RC4 vs AES, …
The terrible Log4j bug mayhem goes on as the Belgium Defense Ministry has emerged as …
A researcher discovered a security vulnerability affecting Meta’s Facebook platform, winning him a hefty bounty. …
