#securitytools β Public Fediverse posts
Live and recent posts from across the Fediverse tagged #securitytools, aggregated by home.social.
-
Microsoft Patch Tuesday, March 2026 Edition
https://krebsonsecurity.com/2026/03/microsoft-patch-tuesday-march-2026-edition/
#MicrosoftPatchTuesdayMarch2026 #MicrosoftOffice #TheComingStorm #CVE-2026-21262 #CVE-2026-24289 #CVE-2026-24291 #CVE-2026-24294 #CVE-2026-25187 #CVE-2026-26110 #CVE-2026-26113 #CVE-2026-26127 #mozillafirefox #SecurityTools #SatnamNarang #TimetoPatch #AdamBarnett #BenMcCarthy #Immersive #Tenable #adobe #XBOW
-
π Introducing frida-ui
A lightweight, web-based user interface built for Frida - designed to make Android application penetration testing more intuitive and efficient.
π¦ Easy to get started:
> uv tool install frida-ui
> frida-uiCheck it out on GitHub - https://github.com/adityatelange/frida-ui
Available on PyPI: https://pypi.org/project/frida-ui
-
NiamonX Internet Surface (Beta) is now live β a passive, privacy-respecting OSINT & attack-surface intelligence platform built to map real-world exposure at global scale.
Instead of noisy scans or shallow datasets, the platform merges:
β’ internet-wide scanning (β3,000 ports)
β’ multi-source enrichment (WHOIS/RDAP, public registries, partner crawlers)
β’ deep tech fingerprinting
β’ graph-based topology mapping
β’ AI-driven risk reportsThe topology graph reveals relationships between IP ranges, domains, ASNs, software stacks, libraries, misconfigurations, and exposed services β not just βopen portsβ.
Patterns and systemic weaknesses become visible instantly.The built-in AI Auditor produces contextual security reports:
β’ attack-path analysis
β’ CVE clustering & prioritization
β’ business impact breakdown
β’ actionable remediation roadmap
A process that normally takes days can now be done in hours.The entire system is designed with security & privacy in mind:
β’ hardened infrastructure
β’ zero request logging
β’ no user tracking
β’ only quota counters for rate enforcementAvailable across all plans β including the free tier.
If youβre doing OSINT, threat hunting, red/blue team work, or asset discovery, this is a tool worth exploring.
π dash.niamonx.io/internet_surface
π is.niamonx.io#OSINT #ThreatIntel #Infosec #AttackSurface #SecurityTools #CyberSecurity #Recon #AI #PassiveRecon #NiamonX
-
NiamonX Internet Surface (Beta) is now live β a passive, privacy-respecting OSINT & attack-surface intelligence platform built to map real-world exposure at global scale.
Instead of noisy scans or shallow datasets, the platform merges:
β’ internet-wide scanning (β3,000 ports)
β’ multi-source enrichment (WHOIS/RDAP, public registries, partner crawlers)
β’ deep tech fingerprinting
β’ graph-based topology mapping
β’ AI-driven risk reportsThe topology graph reveals relationships between IP ranges, domains, ASNs, software stacks, libraries, misconfigurations, and exposed services β not just βopen portsβ.
Patterns and systemic weaknesses become visible instantly.The built-in AI Auditor produces contextual security reports:
β’ attack-path analysis
β’ CVE clustering & prioritization
β’ business impact breakdown
β’ actionable remediation roadmap
A process that normally takes days can now be done in hours.The entire system is designed with security & privacy in mind:
β’ hardened infrastructure
β’ zero request logging
β’ no user tracking
β’ only quota counters for rate enforcementAvailable across all plans β including the free tier.
If youβre doing OSINT, threat hunting, red/blue team work, or asset discovery, this is a tool worth exploring.
π dash.niamonx.io/internet_surface
π is.niamonx.io#OSINT #ThreatIntel #Infosec #AttackSurface #SecurityTools #CyberSecurity #Recon #AI #PassiveRecon #NiamonX
-
βοΈ Cloud Security Toolkit β What Modern Teams Actually Need π‘οΈ
The cloud changed everything β speed, scale, AND attack surface. Security now happens at runtime, at identity level, and inside every pipeline. If your tools canβt see everything, theyβre already failing.Core Categories to Lock In:
β’ CSPM β Posture & misconfig checks (Prisma Cloud, Wiz, Dome9)
β’ CWPP β Runtime protection for VMs & containers (CrowdStrike, Aqua, Trend Micro)
β’ CASB β SaaS visibility & data control (Netskope, MS Defender for Cloud Apps)
β’ IAM β Hardening identity (AWS IAM, Azure AD, Okta, BeyondTrust)
β’ SIEM / Threat Detection β Splunk, Sumo Logic, Datadog + cloud logs
β’ Vuln & Config Scanning β Tenable, Trivy, Qualys for IaC & images
β’ Secrets Management β HashiCorp Vault, AWS Secrets Manager
β’ CI/CD Supply Chain Defense β Snyk, Checkov, GitHub Advanced Securityπ§ Cloud Rule:
Attackers donβt break in β they log in. Identity is the new perimeter.Always what do you guys think ?
β οΈ Use responsibly. Test in staging before production. Map every tool to your threat model, compliance framework, and provider stack.
#CloudSecurity #DevSecOps #CSPM #IAM #CWPP #SIEM #ContainerSecurity #InfoSec #CyberDefense #HacktivateLabs #SecurityTools
-
βοΈ Cloud Security Tools β Essential Toolkit for Modern Teams π‘οΈπ
Cloud environments introduce new risks and require specialized tooling to secure workloads, configurations, and data. Use a mix of CSP-native and third-party tools to cover posture management, runtime protection, identity, and visibility. Key categories and examples: Cloud Security Posture Management (CSPM) β Prisma Cloud, Dome9, Wiz for misconfig & compliance checks π; Cloud Workload Protection (CWPP) β CrowdStrike, Trend Micro, Aqua for container and VM runtime defense π³π‘οΈ; Cloud Access Security Broker (CASB) β Netskope, Microsoft Defender for Cloud Apps for SaaS visibility & data control βοΈπ; Identity & Access Management β AWS IAM/Azure AD hardening, BeyondTrust, Okta for strong auth & least privilege π; Threat Detection & SIEM β Splunk, Sumo Logic, Datadog + cloud-native logging for alerting and forensics π; Vulnerability & Configuration Scanning β Qualys, Tenable, Trivy for images and infra-as-code scanning βοΈ; Secrets Management β HashiCorp Vault, AWS Secrets Manager for safe key handling π; and Supply-chain & CI/CD security β Snyk, Checkov, GitHub Advanced Security to catch insecure deps and pipelines π§©.
β οΈ Disclaimer:
For educational & defensive use only. Evaluate tools against your cloud provider, compliance needs, and threat model before deploying. Always test changes in staging before production. π«π#CloudSecurity #CSPM #CWPP #IAM #DevSecOps #InfoSec #Cloud #CyberSecurity #SecurityTools #Compliance #ContainerSecurity βοΈπ‘οΈ
-
β‘ FREE Tool: Stop Wasting Time on SIEM Rule Conversions!
Converting between Snort and Suricata rules? Analyzing complex rule sets?
da signature parser does it in seconds - not hours! οΏ½οΏ½
β One-click conversions
β Smart rule analysis
β Security-validated
β 100% FREE
Built by a security engineer, for security engineers.
Try it: https://chickenpwny.github.io/DaSignatureParser/
What's your biggest SIEM pain point? Let's discuss!
#Cybersecurity #SIEM #SecurityTools #FreeTools -
Senator Chides FBI for Weak Advice on Mobile Security https://krebsonsecurity.com/2025/06/senator-chides-fbi-for-weak-advice-on-mobile-security/ #InternationalComputerScienceInstitute #FederalBureauofInvestigation #LorenzoFrancheschiBicchierai #EmeritaMelissaHortman #TheWallStreetJournal #ALittleSunshine #LatestWarnings #TheComingStorm #NicholasWeaver #SecurityTools #CVE202543200 #LockdownMode #TimetoPatch #BillMarczak #JohnHoffman #SenRonWyden #CitizenLab #SusieWiles #KashPatel #google #apple
-
Senator Chides FBI for Weak Advice on Mobile Security
https://krebsonsecurity.com/2025/06/senator-chides-fbi-for-weak-advice-on-mobile-security/
#InternationalComputerScienceInstitute #LorenzoFrancheschi-Bicchierai #FederalBureauofInvestigation #EmeritaMelissaHortman #TheWallStreetJournal #ALittleSunshine #LatestWarnings #TheComingStorm #CVE-2025-43200 #NicholasWeaver #SecurityTools #LockdownMode #Sen.RonWyden #TimetoPatch #BillMarczak #JohnHoffman #CitizenLab #SusieWiles #KashPatel #google
-
Linux Privilege Escalation Cheat Sheet: Techniques and Prevention
https://denizhalil.com/2025/06/30/linux-privilege-escalation-cheat-sheet/
#cheatsheet #cronjob #ethicalhacking #linuxenumeration #prilegeescalation #linuxsecurity #securitytools
-
π‘οΈ Security Scanner for Web Applications
π Privacy-First Security Analysis π©βπ» Built by Developers, for DevelopersTry it now: https://webscan.dev