#pentesting — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #pentesting, aggregated by home.social.
-
El lado del mal - CONVEX 2026: Hacking (With | The) AI https://elladodelmal.com/2026/08/convex-2026-hacking-with-ai.html #Hacking #AI #IA #Pentesting #RedTeam #InteligenciaArtificial #Eventos #Charlas #Conferencias
-
El lado del mal - CONVEX 2026: Hacking (With | The) AI https://elladodelmal.com/2026/08/convex-2026-hacking-with-ai.html #Hacking #AI #IA #Pentesting #RedTeam #InteligenciaArtificial #Eventos #Charlas #Conferencias
-
was haltet Ihr von #pentesting durch eine #KI an der eigenen Software in einer Sandbox?
-
🌐 WEB SECURITY TESTING ROADMAP
From HTTP & reconnaissance to authentication, access control, APIs and reporting. 🔍🛡️ A practical path for understanding how modern web applications are tested and secured.
⚡ Learn the process. Test responsibly. Build secure.
-
🌐 WEB SECURITY TESTING ROADMAP
From HTTP & reconnaissance to authentication, access control, APIs and reporting. 🔍🛡️ A practical path for understanding how modern web applications are tested and secured.
⚡ Learn the process. Test responsibly. Build secure.
-
🔍 What happens after you book a pentest?
From scoping and testing to reporting, remediation, and retesting, here’s what to expect from the full process. 🔐
👉 https://7asecurity.com/blog/2026/08/what-to-expect-from-a-penetration-test/
-
🛡️ METASPLOIT CHEAT SHEET
Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.
This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀
⚠️ For cybersecurity education and authorized security testing only.
💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.
#Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid
-
🛡️ METASPLOIT CHEAT SHEET
Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.
This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀
⚠️ For cybersecurity education and authorized security testing only.
💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.
#Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid
-
🔥 STRYKEROSS — YOUR MOBILE SECURITY LAB, ANYWHERE 📱⚡
Turn your Android device into a powerful penetration testing platform. StrykerOSS brings Wi-Fi security, local network analysis, handshake management, Nmap, Nuclei, Metasploit integration, web scanning and more into one mobile toolkit. 🛡️🐉
⚡ Built for both ROOT & ROOTLESS Android devices — giving security researchers the flexibility to learn, test and experiment wherever they go. Rootless Wi-Fi testing can also work with a compatible external wireless adapter. 📡💻
⚠️ Use responsibly and only on devices, networks and systems you own or have explicit permission to test.
💬 Comment “STRYKER” and I’ll send you the download link. 📥🔥
#StrykerOSS #CyberSecurity #AndroidSecurity #Pentesting #EthicalHacking
-
🔥 STRYKEROSS — YOUR MOBILE SECURITY LAB, ANYWHERE 📱⚡
Turn your Android device into a powerful penetration testing platform. StrykerOSS brings Wi-Fi security, local network analysis, handshake management, Nmap, Nuclei, Metasploit integration, web scanning and more into one mobile toolkit. 🛡️🐉
⚡ Built for both ROOT & ROOTLESS Android devices — giving security researchers the flexibility to learn, test and experiment wherever they go. Rootless Wi-Fi testing can also work with a compatible external wireless adapter. 📡💻
⚠️ Use responsibly and only on devices, networks and systems you own or have explicit permission to test.
💬 Comment “STRYKER” and I’ll send you the download link. 📥🔥
#StrykerOSS #CyberSecurity #AndroidSecurity #Pentesting #EthicalHacking
-
Final-year CS student pivoting hard into offensive security. Currently working through the TryHackMe Jr Pentester path and learning Burp Suite properly instead of clicking buttons and
hoping.Also grinding DSA in Java, which I am worse at than I'd like.
Here to learn from people who actually do this for a living. Posting writeups, dumb questions, and things I got wrong.
#infosec #pentesting #ctf #linux #cybersecurity #introduction
-
Final-year CS student pivoting hard into offensive security. Currently working through the TryHackMe Jr Pentester path and learning Burp Suite properly instead of clicking buttons and
hoping.Also grinding DSA in Java, which I am worse at than I'd like.
Here to learn from people who actually do this for a living. Posting writeups, dumb questions, and things I got wrong.
#infosec #pentesting #ctf #linux #cybersecurity #introduction
-
Sucks that I’m not at #defcon, but I’m making up for it by semi-impromptu tutoring some people in #pentesting, so I guess that all works out :)
-
Sucks that I’m not at #defcon, but I’m making up for it by semi-impromptu tutoring some people in #pentesting, so I guess that all works out :)
-
🛡️ Exploit Database — Top Exploits by Category
Explore some of the most important vulnerabilities across major Exploit-DB categories, with CVE references, vulnerability types, and impact explained in one visual guide.
💬 Comment “EXPLOIT” if you want more cybersecurity cheat sheets like this.
#CyberSecurity #ExploitDB #InfoSec #SecurityResearch #Pentesting
-
🛡️ Exploit Database — Top Exploits by Category
Explore some of the most important vulnerabilities across major Exploit-DB categories, with CVE references, vulnerability types, and impact explained in one visual guide.
💬 Comment “EXPLOIT” if you want more cybersecurity cheat sheets like this.
#CyberSecurity #ExploitDB #InfoSec #SecurityResearch #Pentesting
-
Are we just drawing a line in the sand and writing up APIs that just have a static key in the header for insufficient auth? Or are we still giving people a break? I go back and forth.
-
Are we just drawing a line in the sand and writing up APIs that just have a static key in the header for insufficient auth? Or are we still giving people a break? I go back and forth.
-
El lado del mal - Cómo los Agentes IA de Red Team hacen ataques de Ingeniería Social con Fake Accounts https://www.elladodelmal.com/2026/08/como-los-agentes-ia-de-red-team-hacen.html #IA #AI #AgenticAI #RedTeam #Hacking #Pentest #Pentesting #GitHub #SpearPhishing #IngenieriaSocial
-
El lado del mal - Cómo los Agentes IA de Red Team hacen ataques de Ingeniería Social con Fake Accounts https://www.elladodelmal.com/2026/08/como-los-agentes-ia-de-red-team-hacen.html #IA #AI #AgenticAI #RedTeam #Hacking #Pentest #Pentesting #GitHub #SpearPhishing #IngenieriaSocial
-
Claude Code pentest-ai-agents in v3.4.0 released
-
Claude Code pentest-ai-agents in v3.4.0 released
-
🛡️ Not all pentest services are the same.
🔍 Learn which security assessment fits your situation—from web apps and cloud to AI, code audits, and internal testing.
👉 https://7asecurity.com/blog/2026/07/pentest-services-business-risk/
-
Została wydana nowa wersja NetHydra 1.1.0 „leopard”. NetHydra (poprzednio: HydraPWK) to dystrybucja Linux oparta na Debianie testowym, przeznaczona głównie do testów... https://linuxiarze.pl/nethydra-1-1-0/ #linux #debian #pentesting
-
Została wydana nowa wersja NetHydra 1.1.0 „leopard”. NetHydra (poprzednio: HydraPWK) to dystrybucja Linux oparta na Debianie testowym, przeznaczona głównie do testów... https://linuxiarze.pl/nethydra-1-1-0/ #linux #debian #pentesting
-
Nightcrawler – A local AI pentesting agent running on a smartphone
https://github.com/garagehq/nightcrawler/
Comments: https://news.ycombinator.com/item?id=49154127
#HackerNews #Nightcrawler #AI #pentesting #smartphone #cybersecurity #tech #innovation
-
Nightcrawler – A local AI pentesting agent running on a smartphone
https://github.com/garagehq/nightcrawler/
Comments: https://news.ycombinator.com/item?id=49154127
#HackerNews #Nightcrawler #AI #pentesting #smartphone #cybersecurity #tech #innovation
-
Georgia and Michigan report cyberattacks on water systems
https://www.youtube.com/watch?v=2IV_oqT5BGg
#Cyber #Cybersecurity #Datasecurity
#Datasecurity #Exploit #FBI #Hack
#Hacked #Hacker #Hackers #Infosec
#Iran #Lies #Malware #Minnesota
#OSINT #Pentesting #Political
#Tech #Technology #Trump #Georgia #Michigan -
Georgia and Michigan report cyberattacks on water systems
https://www.youtube.com/watch?v=2IV_oqT5BGg
#Cyber #Cybersecurity #Datasecurity
#Datasecurity #Exploit #FBI #Hack
#Hacked #Hacker #Hackers #Infosec
#Iran #Lies #Malware #Minnesota
#OSINT #Pentesting #Political
#Tech #Technology #Trump #Georgia #Michigan -
Trump accuses Minnesota of Iran Cyberattack - CISA Paycuts
Trump Panics as Hackers Expose Him
https://www.youtube.com/watch?v=fU_yk5B74w8
#Cyber #Cybersecurity #Datasecurity
#Datasecurity #Exploit #FBI #Hack
#Hacked #Hacker #Hackers #Infosec
#Iran #Lies #Malware #Minnesota
#OSINT #Pentesting #Political
#Tech #Technology #Trump -
Trump accuses Minnesota of Iran Cyberattack - CISA Paycuts
Trump Panics as Hackers Expose Him
https://www.youtube.com/watch?v=fU_yk5B74w8
#Cyber #Cybersecurity #Datasecurity
#Datasecurity #Exploit #FBI #Hack
#Hacked #Hacker #Hackers #Infosec
#Iran #Lies #Malware #Minnesota
#OSINT #Pentesting #Political
#Tech #Technology #Trump -
VulNyx CTF War Writeup
The War machine is an easy-level Windows system that runs on a Tomcat web server with unsecured credentials. By using an upload function, we can gain a foothold on the system. After that, we can escalate our privileges by exploiting the SeImpersonatePrivilege, which enables us to become the root user and capture the flag.
https://thecybercraft.medium.com/vulnyx-war-writeup-b18f3fff41c5
-
The OSI model is not just for networking. It is also a great way to understand cybersecurity threats across the different layers of the OSI model 😎👇
Find high-res pdf books with all my cybersecurity infographics at https://study-notes.org
-
El lado del mal - Bootcamp de Ciberseguridad Defensiva y Ofensiva en HackBySecurity https://www.elladodelmal.com/2026/07/bootcamp-de-ciberseguridad-defensiva-y.html #BootCamp #Ciberseguridad #Pentest #Pentesting #0xWord #MyPublicInbox #Online
-
El lado del mal - Bootcamp de Ciberseguridad Defensiva y Ofensiva en HackBySecurity https://www.elladodelmal.com/2026/07/bootcamp-de-ciberseguridad-defensiva-y.html #BootCamp #Ciberseguridad #Pentest #Pentesting #0xWord #MyPublicInbox #Online
-
🐛 Java Spring Boot "heapdump" scans, (Mon, Jul 27th)
📝 Spring Boot exposes the endpoint "/actuator/heapdump" to collect debug information. By default, the endpoin...
https://isc.sans.edu/diary/rss/33188
📰 SANS Internet Storm Center, InfoCON: green
-
🐛 Java Spring Boot "heapdump" scans, (Mon, Jul 27th)
📝 Spring Boot exposes the endpoint "/actuator/heapdump" to collect debug information. By default, the endpoin...
https://isc.sans.edu/diary/rss/33188
📰 SANS Internet Storm Center, InfoCON: green
-
SSH (Secure Shell) - Attacks and Best Practices by Compass Security
- Recon & Info Leakage
- Authentication, CAs, MFA & FIDO2
- Port Forwarding / Tunneling, Agent Forwarding
- Hardening, Post-Quantum Crypto, Auditing & more -
SSH (Secure Shell) - Attacks and Best Practices by Compass Security
- Recon & Info Leakage
- Authentication, CAs, MFA & FIDO2
- Port Forwarding / Tunneling, Agent Forwarding
- Hardening, Post-Quantum Crypto, Auditing & more -
Master SMB enumeration with SMBMap! Learn how to scan shares, map permissions, use Pass-the-Hash, and execute commands in this complete guide & cheat sheet. 🚀
Read more: https://denizhalil.com/2023/10/27/smbmap-guide-and-cheat-sheet/
-
Netcat is one of those Linux tools networking and security people keep coming back to. It can open TCP/UDP connections, test ports reachability, move data between systems, and create quick listeners or reverse shells.
Here are some practical Netcat commands worth knowing 😎👇
Find high-res pdf ebooks with all my Linux related infographics at https://study-notes.org
-
#AdversaryToolDemo
Adversary Village at @defcon 34!
Dhruva Goyal, Founder of Bugbase, and Sitaraman Subramanian, Co-Founder & CTO of Bugbase, will demonstrate “Hands-On Autonomous Pentesting with Pentest Copilot” on 8 Aug 2026 at the Adversary Village Hands-on Activity Stage.
Adversary Village schedule:
https://adversaryvillage.org/adversary-events/DEFCON-34/
More info on the session and speakers: https://adversaryvillage.org/adversary-events/DEFCON-34/Dhruva-Goyal
https://adversaryvillage.org/adversary-events/DEFCON-34/Sitaraman-Subramanian
#AdversaryVillage #DEFCON34
#AdversaryToolDemo #Pentesting #AutonomousSecurity
#AIAgents #AdversaryTactics -
#AdversaryToolDemo
Adversary Village at @defcon 34!
Dhruva Goyal, Founder of Bugbase, and Sitaraman Subramanian, Co-Founder & CTO of Bugbase, will demonstrate “Hands-On Autonomous Pentesting with Pentest Copilot” on 8 Aug 2026 at the Adversary Village Hands-on Activity Stage.
Adversary Village schedule:
https://adversaryvillage.org/adversary-events/DEFCON-34/
More info on the session and speakers: https://adversaryvillage.org/adversary-events/DEFCON-34/Dhruva-Goyal
https://adversaryvillage.org/adversary-events/DEFCON-34/Sitaraman-Subramanian
#AdversaryVillage #DEFCON34
#AdversaryToolDemo #Pentesting #AutonomousSecurity
#AIAgents #AdversaryTactics -
Sadly it looks like I habe to use ai soon.
any tips on setting up an automated agentic pentester?
I'm running containerized ollama and hermes with an rtx5060Ti passthrough and gemma4-12b.
looking for skills, (uncensored) models, workflows, Plugins etc to run pentests.
also set up parrot os security docket and gave the ai ssh access to it.
#ai #agenticai #hermes #hermesagent #pentesting #penetrationtesting
-
Released BashCoreV, a tiny Buildroot‑based Linux micro‑VM for fast IT & security practice.
~100 MB ISO, 2 s boot, ~300 MB RAM, Linux 6.19.
Includes essential networking, diagnostics and scripting tools.
Lightweight, disposable, perfect for labs and learning.Repo: https://github.com/bashcore/bashcorev
#linux #buildroot #vm #infosec #pentesting #virtualbox #minimalism
-
We kept getting asked the same handful of questions before people would trust us with a scan against prod.
So we answered them properly instead of one at a time on sales calls.
Non-destructive by default. Our own detection engines, not a wrapper around someone else's open source tools. Findings come with evidence, not just a severity label. Data stays on EU infrastructure, workspaces isolated.
Full FAQ: https://pentest-tools.com/product/faq
-
The average pentest validates a system that stopped existing weeks ago, because the code kept shipping after the testers went home.
Our sponsor Aikido Security asked 400 security and engineering leaders what's actually broken in security testing, and whether AI fixes it or makes it worse. The answers are in the State of AI in Pentesting 2026.
A solid resource ahead of @defcon 34!
-
#Pentesting reizt dich und du willst es lernen? Beim HackHERthon vom 07.–09.09.2026 in Berlin kannst du dich ausprobieren – ohne Leistungsdruck, mit Fokus auf Teamarbeit und persönlicher Weiterentwicklung. Unser Kollege und Deutschland bester Pentester Cass Rebellin unterstützt dich an Tag 1 im Capture‑the‑Flag-Wettbewerb. Tage 2–3 drehen sich um kreative Problemlösung.
Kostenfrei, inklusiv und offen für alle, die sich als Frau identifizieren – von Einsteigerin bis Profi! Unsere Expertinnen und Experten sind vor Ort und teilen Tools, Methoden und Mindset aus echten Einsätzen.
Jetzt Platz sichern: https://www.hisolutions.com/hackherthon
#CTF #HackHERthon #WomenInTech #CyberSecurity