home.social

#penetrationtesting — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #penetrationtesting, aggregated by home.social.

fetched live
  1. Is our security getting better?" is a harder question to answer than it sounds, especially when all you've got is this month's scan and a vague memory of last month's.

    This Wednesday's Office Hours is about answering it with proof instead of a guess. Jan Pedersen walks through turning two scans, weeks apart, into evidence: what got fixed, what's new, and what a report looks like when someone outside the security team has to read it.

    We'll cover how scan diff turns your latest scan into an automatic baseline, why a timestamp is what makes "not detected" mean something, and how the same evidence supports compliance requirements like ISO 27001 and SOC 2.

    30 minutes live, 15 minutes of open Q&A, one session.

    Register:
    zoom.us/webinar/register/54178

    Wednesday, August 12: 8:00 AM Los Angeles / 11:00 AM New York / 4:00 PM London / 6:00 PM Bucharest.

    #infosec #penetrationtesting

  2. Is our security getting better?" is a harder question to answer than it sounds, especially when all you've got is this month's scan and a vague memory of last month's.

    This Wednesday's Office Hours is about answering it with proof instead of a guess. Jan Pedersen walks through turning two scans, weeks apart, into evidence: what got fixed, what's new, and what a report looks like when someone outside the security team has to read it.

    We'll cover how scan diff turns your latest scan into an automatic baseline, why a timestamp is what makes "not detected" mean something, and how the same evidence supports compliance requirements like ISO 27001 and SOC 2.

    30 minutes live, 15 minutes of open Q&A, one session.

    Register:
    zoom.us/webinar/register/54178

    Wednesday, August 12: 8:00 AM Los Angeles / 11:00 AM New York / 4:00 PM London / 6:00 PM Bucharest.

    #infosec #penetrationtesting

  3. We surveyed 158 security practitioners on AI-assisted vulnerability testing. 88% of them still end up validating results by hand.

    The pattern: AI gets heavy use in scanning and discovery (74%), a lot less in exploitation and attack chaining (37%), and even less in post-exploitation (25%). The riskier the phase, the less anyone trusts it to work unsupervised.

    The time it saves up front doesn't disappear. It just shows up later, as triage.

    Other findings: false positives and hallucinated exploits were the top named frustration, business logic understanding is the gap AI still can't close, and only 20% of teams have a workflow built to handle high volumes of AI-generated findings.

    Full survey results, free, no account needed:
    pentest-tools.com/insights/ai-

    #infosec #offensivesecurity #penetrationtesting

  4. We surveyed 158 security practitioners on AI-assisted vulnerability testing. 88% of them still end up validating results by hand.

    The pattern: AI gets heavy use in scanning and discovery (74%), a lot less in exploitation and attack chaining (37%), and even less in post-exploitation (25%). The riskier the phase, the less anyone trusts it to work unsupervised.

    The time it saves up front doesn't disappear. It just shows up later, as triage.

    Other findings: false positives and hallucinated exploits were the top named frustration, business logic understanding is the gap AI still can't close, and only 20% of teams have a workflow built to handle high volumes of AI-generated findings.

    Full survey results, free, no account needed:
    pentest-tools.com/insights/ai-

    #infosec #offensivesecurity #penetrationtesting

  5. چگونه یک کاراکتر Wildcard (*) در Bash می‌تواند منجر به Privilege Escalation شود؟

    در پست جدید وبلاگم (به زبان فارسی)، آسیب‌پذیری Wildcard Injection در لینوکس را بررسی کرده‌ام. از نحوه سوءاستفاده از ابزارهایی مانند tar و chown تا راهکارهای ایمن‌سازی اسکریپت‌های Bash.

    درک این مفاهیم برای هر ادمین سیستم و متخصص تست نفوذ ضروری است.

    hesameworks.ir/wildcard-inject

    #Linux #InfoSec #CyberSecurity #PenetrationTesting #Bash #RedTeam #PrivilegeEscalation #SysAdmin #WildcardInjection

  6. An AI tool handed one pentester 300 findings. 250 of them were junk.

    That's a line from our own research: a survey of 158 security practitioners on how AI is actually changing pentesting. The part that surprised us most wasn't speed, it was trust. Almost 9 in 10 practitioners using AI for finding generation still need real manual validation before they'll trust the output, and hallucinated findings, not cost or integration, are the top frustration they named.

    Next Wednesday, Jan Pedersen hosts Office Hours with Robert Tanase, our Lead Product Manager, to break down the triage tax, the trust problem, and what we built in response, benchmark numbers included, not just a claim.

    30 minutes live, 15 minutes of open Q&A.

    Wednesday, July 29
    8:00 AM Los Angeles / 11:00 AM New York / 4:00 PM London / 6:00 PM Bucharest

    Register: zoom.us/webinar/register/54178

    #offensivesecurity #penetrationtesting

  7. An AI tool handed one pentester 300 findings. 250 of them were junk.

    That's a line from our own research: a survey of 158 security practitioners on how AI is actually changing pentesting. The part that surprised us most wasn't speed, it was trust. Almost 9 in 10 practitioners using AI for finding generation still need real manual validation before they'll trust the output, and hallucinated findings, not cost or integration, are the top frustration they named.

    Next Wednesday, Jan Pedersen hosts Office Hours with Robert Tanase, our Lead Product Manager, to break down the triage tax, the trust problem, and what we built in response, benchmark numbers included, not just a claim.

    30 minutes live, 15 minutes of open Q&A.

    Wednesday, July 29
    8:00 AM Los Angeles / 11:00 AM New York / 4:00 PM London / 6:00 PM Bucharest

    Register: zoom.us/webinar/register/54178

    #offensivesecurity #penetrationtesting

  8. Sadly it looks like I habe to use ai soon.

    any tips on setting up an automated agentic pentester?

    I'm running containerized ollama and hermes with an rtx5060Ti passthrough and gemma4-12b.

    looking for skills, (uncensored) models, workflows, Plugins etc to run pentests.

    also set up parrot os security docket and gave the ai ssh access to it.

    #ai #agenticai #hermes #hermesagent #pentesting #penetrationtesting

  9. Sadly it looks like I habe to use ai soon.

    any tips on setting up an automated agentic pentester?

    I'm running containerized ollama and hermes with an rtx5060Ti passthrough and gemma4-12b.

    looking for skills, (uncensored) models, workflows, Plugins etc to run pentests.

    also set up parrot os security docket and gave the ai ssh access to it.

    #ai #agenticai #hermes #hermesagent #pentesting #penetrationtesting

  10. We are proud to have Security Risk Advisors as a Gold Sponsor of Adversary Village at @defcon 34!
    Security Risk Advisors (SRA) provides specialized cybersecurity services, including Penetration Testing, VECTR™ Purple Teams, Cloud Security, Resilience, Cyber Physical Systems Security, Engineering, and 24×7×365 Cybersecurity Operations.
    Thank you to the Security Risk Advisors team for partnering with us and helping make Adversary Village at DEF CON 34 a success.
    More about SRA: sra.io/
    For more information about Adversary Village at DEF CON 34: adversaryvillage.org/adversary
    #SecurityRiskAdvisors #SRA #DEFCON34 #AdversaryVillage #OffensiveSecurity #CyberSecurity #PurpleTeam #PenetrationTesting

  11. We are proud to have Security Risk Advisors as a Gold Sponsor of Adversary Village at @defcon 34!
    Security Risk Advisors (SRA) provides specialized cybersecurity services, including Penetration Testing, VECTR™ Purple Teams, Cloud Security, Resilience, Cyber Physical Systems Security, Engineering, and 24×7×365 Cybersecurity Operations.
    Thank you to the Security Risk Advisors team for partnering with us and helping make Adversary Village at DEF CON 34 a success.
    More about SRA: sra.io/
    For more information about Adversary Village at DEF CON 34: adversaryvillage.org/adversary
    #SecurityRiskAdvisors #SRA #DEFCON34 #AdversaryVillage #OffensiveSecurity #CyberSecurity #PurpleTeam #PenetrationTesting

  12. We are excited to welcome PlexTrac as a Bronze Sponsor of Adversary Village at @defcon 34!
    @plextrac is the #1 AI-powered penetration test reporting tool and platform for real-time threat exposure management.
    Thank you to the @plextrac team for being part of Adversary Village at @defcon 34 and supporting our community.
    More about PlexTrac: ⁠ plextrac.com/
    For more information about Adversary Village at DEF CON 34: adversaryvillage.org/adversary
    #PlexTrac #DEFCON34 #AdversaryVillage #OffensiveSecurity #CyberSecurity #PenetrationTesting #RedTeam

  13. We are excited to welcome PlexTrac as a Bronze Sponsor of Adversary Village at @defcon 34!
    @plextrac is the #1 AI-powered penetration test reporting tool and platform for real-time threat exposure management.
    Thank you to the @plextrac team for being part of Adversary Village at @defcon 34 and supporting our community.
    More about PlexTrac: ⁠ plextrac.com/
    For more information about Adversary Village at DEF CON 34: adversaryvillage.org/adversary
    #PlexTrac #DEFCON34 #AdversaryVillage #OffensiveSecurity #CyberSecurity #PenetrationTesting #RedTeam

  14. 💣 Un despliegue 100% técnico y sin rodeos... explotación real de vulnerabilidades críticas 👨‍💻 🌟 Miércoles 15, Viernes 17, Miércoles 22 y Viernes 24 de Julio 📈 De 8:00 pm a 11:00 pm (UTC -05:00) 🗨️ WhatsApp: https://wa.me/51949304030 🔈 Info: https://www.reydes.com/e/Curso_de_Hacking_Aplicaciones_Web #EthicalHacking #EthicalHacking #AppSec #PenetrationTesting #OWASP #WebDev #VulnerabilityManagement
  15. GhostLock (CVE-2026-43499): a use-after-free in the Linux kernel, shipped by default since 2011 and disclosed this week. Any logged-in user gets full root in about five seconds, and it escapes containers.
    The story isn't that it exists, it's how reliable it is. Daniel Bechenea, security manager at Pentest-Tools.com:
    "An exploit reported at 97% reliable, with public code anyone can run, changes that math."
    Kernel privesc used to be the exploit you thought twice about firing. A near-deterministic one with public code removes the hesitation.
    Patch to a fixed kernel now. Until it reaches every host, treat any code execution on an unpatched box as root and verify the kernel version per system. Don't assume the April fix propagated.
    Full breakdown by Emma Woollacott at ITPro: itpro.com/software/linux/cyber
    #offensivesecurity #penetrationtesting #cybersecurity

  16. GhostLock (CVE-2026-43499): a use-after-free in the Linux kernel, shipped by default since 2011 and disclosed this week. Any logged-in user gets full root in about five seconds, and it escapes containers.
    The story isn't that it exists, it's how reliable it is. Daniel Bechenea, security manager at Pentest-Tools.com:
    "An exploit reported at 97% reliable, with public code anyone can run, changes that math."
    Kernel privesc used to be the exploit you thought twice about firing. A near-deterministic one with public code removes the hesitation.
    Patch to a fixed kernel now. Until it reaches every host, treat any code execution on an unpatched box as root and verify the kernel version per system. Don't assume the April fix propagated.
    Full breakdown by Emma Woollacott at ITPro: itpro.com/software/linux/cyber
    #offensivesecurity #penetrationtesting #cybersecurity

  17. 🕸️ Curso Hacking Aplicaciones Web 2026 🪓 Miércoles 15, Viernes 17, Miércoles 22 y Viernes 24 de Julio 🛜 De 8:00 pm a 11:00 pm (UTC -05:00) 👀 WhatsApp: https://wa.me/51949304030 🆗 Info: https://www.reydes.com/archivos/cursos/Curso_Hacking_Aplicaciones_Web.pdf #WebSecurity #AppSec #EthicalHacking #PenetrationTesting #VulnerabilityManagement
  18. Here we go. Product updates - the June edition.

    This month your coverage got a LOT wider.

    80 new detections landed in the Network Scanner, including pre-auth RCE in Oracle PeopleSoft and an auth bypass in Palo Alto PAN-OS. If any are in your scope, you know where to look.

    The rest of June:

    🌐 Our research team found two authentication flaws in phpBB, one buried in the code for over a decade. There's a working PoC for each, and the Network Scanner now detects the most critical one - CVE-2026-48611 (9.4).

    🤖 AI where it earns its place in the Website Scanner and URL Fuzzer: smarter logins, deeper crawling, fewer fake 200 pages.

    🎯 the XSS Exploiter now gives you two delivery options: script tag or fetch plus eval.

    🔌 API: a new info_text key on /scans tells you why a scan didn't start.

    ☁️ We're now on the Microsoft Azure Marketplace, so you can add us to your existing Azure billing.

    Our colleague Stefan Perju walks you through all of it in the video.

    Until next time: stay sharp. Stay human.

    Everything that shipped can be found in the change-log: pentest-tools.com/change-log

    The phpBB PoCs and full write-up: pentest-tools.com/research/php

    #offensivesecurity #vulnerabilitymanagement #infosec #penetrationtesting

  19. Here we go. Product updates - the June edition.

    This month your coverage got a LOT wider.

    80 new detections landed in the Network Scanner, including pre-auth RCE in Oracle PeopleSoft and an auth bypass in Palo Alto PAN-OS. If any are in your scope, you know where to look.

    The rest of June:

    🌐 Our research team found two authentication flaws in phpBB, one buried in the code for over a decade. There's a working PoC for each, and the Network Scanner now detects the most critical one - CVE-2026-48611 (9.4).

    🤖 AI where it earns its place in the Website Scanner and URL Fuzzer: smarter logins, deeper crawling, fewer fake 200 pages.

    🎯 the XSS Exploiter now gives you two delivery options: script tag or fetch plus eval.

    🔌 API: a new info_text key on /scans tells you why a scan didn't start.

    ☁️ We're now on the Microsoft Azure Marketplace, so you can add us to your existing Azure billing.

    Our colleague Stefan Perju walks you through all of it in the video.

    Until next time: stay sharp. Stay human.

    Everything that shipped can be found in the change-log: pentest-tools.com/change-log

    The phpBB PoCs and full write-up: pentest-tools.com/research/php

    #offensivesecurity #vulnerabilitymanagement #infosec #penetrationtesting

  20. We are excited to have OffSec on board as the Platinum Sponsor of Adversary Village at @defcon 34!
    OffSec is a leading cyber security training and certification company, known for its hands-on, adversarial approach to developing world-class offensive security professionals.
    A huge thank you to the OffSec team for their incredible support and commitment to the offensive security community. We are proud to have them helping bring Adversary Village at DEF CON 34 to life.
    More about OffSec: offsec.com/
    For more information about Adversary Village at DEF CON 34: adversaryvillage.org/adversary
    #OffSec #DEFCON34 #AdversaryVillage #OffensiveSecurity #CyberSecurity #PenetrationTesting #RedTeam #SecurityTraining

  21. We are excited to have OffSec on board as the Platinum Sponsor of Adversary Village at @defcon 34!
    OffSec is a leading cyber security training and certification company, known for its hands-on, adversarial approach to developing world-class offensive security professionals.
    A huge thank you to the OffSec team for their incredible support and commitment to the offensive security community. We are proud to have them helping bring Adversary Village at DEF CON 34 to life.
    More about OffSec: offsec.com/
    For more information about Adversary Village at DEF CON 34: adversaryvillage.org/adversary
    #OffSec #DEFCON34 #AdversaryVillage #OffensiveSecurity #CyberSecurity #PenetrationTesting #RedTeam #SecurityTraining

  22. Our SQL Injection Scanner is a bit of a skeptic. It won't take a hunch for an answer.

    It fires a real payload, watches how the database actually responds, and _only then_ calls it a finding.

    It's free to try, and it catches:

    ✅ Error-based, when the database spills its structure in an error
    ✅ Blind, when only a true or false response gives it away
    ✅ Time-based, when a deliberate delay is the only tell
    ✅ Union-based, when someone's pulling data from tables they shouldn't touch

    Every finding comes with the parameter, the payload, and the database response. Enough to reproduce it, not just believe it.

    Try it as a test, no account needed. Link is here pentest-tools.com/website-vuln

    #offensivesecurity #penetrationtesting #ethicalhacking

  23. Our SQL Injection Scanner is a bit of a skeptic. It won't take a hunch for an answer.

    It fires a real payload, watches how the database actually responds, and _only then_ calls it a finding.

    It's free to try, and it catches:

    ✅ Error-based, when the database spills its structure in an error
    ✅ Blind, when only a true or false response gives it away
    ✅ Time-based, when a deliberate delay is the only tell
    ✅ Union-based, when someone's pulling data from tables they shouldn't touch

    Every finding comes with the parameter, the payload, and the database response. Enough to reproduce it, not just believe it.

    Try it as a test, no account needed. Link is here pentest-tools.com/website-vuln

    #offensivesecurity #penetrationtesting #ethicalhacking

  24. We have an XSS Scanner. It doesn't DO maybes, and on top of that, it's free to try.

    Here's what it ACTUALLY does:
    ✅ Fires real JavaScript payloads, not pattern matches
    ✅ Flags a parameter only when the payload runs
    ✅ Catches reflected and stored XSS, logged in or out
    ✅ Gives you the request, payload, and response as proof

    Try it as a test, no account needed. pentest-tools.com/website-vuln

    #offensivesecurity #penetrationtesting #ethicalhacking

  25. We have an XSS Scanner. It doesn't DO maybes, and on top of that, it's free to try.

    Here's what it ACTUALLY does:
    ✅ Fires real JavaScript payloads, not pattern matches
    ✅ Flags a parameter only when the payload runs
    ✅ Catches reflected and stored XSS, logged in or out
    ✅ Gives you the request, payload, and response as proof

    Try it as a test, no account needed. pentest-tools.com/website-vuln

    #offensivesecurity #penetrationtesting #ethicalhacking

  26. 📊 Mapea tus ciberataques con MITRE ATT&CK 🎯 y eleva el nivel de tus auditorías 🔥 🗓️ Domingos 5, 12, 19, y 26 de Julio 2026 ⏰ De 9:00 am a 12:00 pm (UTC -05:00) 📲 WhatsApp: https://wa.me/51949304030 🌐 https://www.reydes.com/e/Curso_de_Hacking_con_Kali_Linux #ethicalhacking #penetrationtesting #whitehat #cyberdefense #cybersecuritytraining #cyberattack
  27. iX-Workshop IT-Sicherheit: Pentests methodisch planen, anfordern und analysieren

    Schritt für Schritt zum sicheren System: Penetrationstests methodisch planen, beauftragen und auswerten, um Schwachstellen in der eigenen IT aufzuspüren.

    heise.de/news/iX-Workshop-IT-S

    #BSI #IT #ITInfrastruktur #iXWorkshops #NIST #PenetrationTesting #Test #news

  28. iX-Workshop IT-Sicherheit: Pentests methodisch planen, anfordern und analysieren

    Schritt für Schritt zum sicheren System: Penetrationstests methodisch planen, beauftragen und auswerten, um Schwachstellen in der eigenen IT aufzuspüren.

    heise.de/news/iX-Workshop-IT-S

    #BSI #IT #ITInfrastruktur #iXWorkshops #NIST #PenetrationTesting #Test #news

  29. Knowing something was _off_ before you could prove it.
    Knowing when the _obvious_ path was the wrong one.
    Knowing _when_ to keep pulling.

    No dashboard tracks any of that.

    Which means the skills that actually separate good practitioners from the rest stay invisible.

    Which underrated skill improved your offsec intuition & attacker mindset?

    #offensivesecurity #penetrationtesting #ethicalhacking

  30. Knowing something was _off_ before you could prove it.
    Knowing when the _obvious_ path was the wrong one.
    Knowing _when_ to keep pulling.

    No dashboard tracks any of that.

    Which means the skills that actually separate good practitioners from the rest stay invisible.

    Which underrated skill improved your offsec intuition & attacker mindset?

    #offensivesecurity #penetrationtesting #ethicalhacking

  31. The traditional annual penetration test is increasingly out of step with today’s threat landscape. As attackers probe systems continuously, organisations are looking for more proactive approaches. Hadrian’s Nova platform reflects that shift, bringing AI-driven, on-demand penetration testing to help identify weaknesses before attackers do.

    Read the full story: techfinitive.com/features/how-

    #AI #CISO #Cybersecurity #PenetrationTesting #VulnerabilityManagement

  32. heise+ | Penetrationstest: Warum physische Sicherheit scheitert – und wie man das ändert

    Ein Penetrationstester kommt in die meisten Unternehmen hinein. Nicht durch Hacking, nicht durch Zero Days – sondern weil Menschen höflich sind.

    heise.de/hintergrund/Penetrati

    #IT #PenetrationTesting #Security #news

  33. heise+ | Penetrationstest: Warum physische Sicherheit scheitert – und wie man das ändert

    Ein Penetrationstester kommt in die meisten Unternehmen hinein. Nicht durch Hacking, nicht durch Zero Days – sondern weil Menschen höflich sind.

    heise.de/hintergrund/Penetrati

    #IT #PenetrationTesting #Security #news

  34. CW: ⚠️ InfoSec / CTF Disclaimer / Snapped - HTB / For Educational Purposes Only⚠️

    ⚠️ Disclaimer: For educational use only. All activities shown were performed legally on an authorized CTF platform. Unauthorized access to systems is illegal and carries severe criminal penalties.

    This video demonstrates a Time-of-Check to Time-of-Use (TOCTOU) race condition exploit (CVE-2026-3888), which was a key component of the "Snapped" machine on Hack The Box.

    "Local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's private /tmp directory when systemd-tmpfiles is configured to automatically clean up this directory. This issue affects Ubuntu 16.04 LTS, 18.04 LTS, 20.04 LTS, 22.04 LTS, and 24.04 LTS" (Common Vulnerabilities and Exposures, 2026).

    cve.org/CVERecord?id=CVE-2026-

    #EthicalHacking #offsec #penetrationtesting #Linux #cybersecurity

    :ablobcatbongokeyboard: :cyber_hacking: :galaxy_brain:

  35. iX-Workshop IT-Sicherheit: Pentests methodisch planen, anfordern und analysieren

    Schritt für Schritt zum sicheren System: Penetrationstests methodisch planen, beauftragen und auswerten, um Schwachstellen in der eigenen IT aufzuspüren.

    heise.de/news/iX-Workshop-IT-S

    #BSI #IT #ITInfrastruktur #iXWorkshops #NIST #PenetrationTesting #Test #news

  36. Your compliance audit is coming. Your last scan was three weeks ago.

    The Website Scanner from Pentest-Tools.com scans for 75+ vuln types, cuts FPs by 50%, and automatically diffs results against previous scans.

    Go into that meeting with proof: pentest-tools.com/website-vuln

    #offensivesecurity #penetrationtesting

  37. Banks' Annual Testing Model Leaves 345 Days of Unvalidated Exposure

    Imagine having 345 days of potential vulnerability, with hackers free to exploit your defenses while you wait for your annual security test. That's the harsh reality of the traditional annual testing model, which leaves your business exposed for nearly 11 months of the year.

    osintsights.com/banks-annual-t

    #FinancialServices #VpnVulnerability #PenetrationTesting #AnnualTestingModel #UnvalidatedExposure

  38. AI didn't make code more secure. It made the obvious mistakes rarer and the subtle ones more common.

    241 devs surveyed. The pattern: fewer typos, more copied patterns with weak auth, unsafe input handling, and insecure defaults.

    The validation layer that runs against the deployed app just got a more important job.

    Full report: pentest-tools.com/insights

    #penetrationtesting #offensivesecurity

  39. iX-Workshop IT-Sicherheit: Pentests methodisch planen, anfordern und analysieren

    Schritt für Schritt zum sicheren System: Penetrationstests methodisch planen, beauftragen und auswerten, um Schwachstellen in der eigenen IT aufzuspüren.

    heise.de/news/iX-Workshop-IT-S

    #BSI #IT #ITInfrastruktur #iXWorkshops #NIST #PenetrationTesting #Test #news