home.social

#securitytools — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #securitytools, aggregated by home.social.

fetched live
  1. Automator 17.1.1 introduces new features, security updates and bug fixes.

    - The [keeper-automator.jar] file is now minimized. Unused classes have been removed, resulting in a smaller deployment footprint and faster startup time.
    - The Windows build has been hardened to ensure the [build\wix] directory exists before running heat, and the [automator_heat.bat] script is now more robust against edge-case failures.

    #KeeperSecurity #SecurityTools

  2. Automator 17.1.1 introduces new features, security updates and bug fixes.

    - The [keeper-automator.jar] file is now minimized. Unused classes have been removed, resulting in a smaller deployment footprint and faster startup time.
    - The Windows build has been hardened to ensure the [build\wix] directory exists before running heat, and the [automator_heat.bat] script is now more robust against edge-case failures.

    #KeeperSecurity #SecurityTools

  3. Keeper Gateway 1.8.7 introduces new features and bug fixes, including enhanced discovery with performance improvements, Azure GovCloud support and Windows authentication for KeeperDB 2.3.0.

    #KeeperSecurity #SecurityTools

  4. Keeper Gateway 1.8.7 introduces new features and bug fixes, including enhanced discovery with performance improvements, Azure GovCloud support and Windows authentication for KeeperDB 2.3.0.

    #KeeperSecurity #SecurityTools

  5. The Keeper Security Desktop and Web Vault 18.5.0 introduces new features and improvements across security, stability and platform health.

    - A Connection Dock provides visibility into active and recently closed connections.
    - KeeperPAM Configurations are accessible directly in the My Vault screen within the existing records list, giving them the full functionality of standard vault records including sharing, organization and management from a single interface.

    #KeeperSecurity #PrivilegedAccessManagement #SecurityTools

  6. The Keeper Security Desktop and Web Vault 18.5.0 introduces new features and improvements across security, stability and platform health.

    - A Connection Dock provides visibility into active and recently closed connections.
    - KeeperPAM Configurations are accessible directly in the My Vault screen within the existing records list, giving them the full functionality of standard vault records including sharing, organization and management from a single interface.

    #KeeperSecurity #PrivilegedAccessManagement #SecurityTools

  7. SentinelForge is an open-source defensive toolkit (MEDIUM severity) for authorized lab use. No CVE, no known threats. Features: scanning, honeypots, vuln feeds, reporting. Use only on systems you control. radar.offseq.com/threat/just-m #OffSeq #BlueTeam #SecurityTools

  8. I was tired of digging through endless random cybersecurity lists, so naturally I built another random cybersecurity list - just cleaner, prettier and actually organized.

    Hack Hub is a curated directory of useful security resources.

    hackhub.fyi

    #CyberSecurity #InfoSec #Hacking #EthicalHacking #Pentesting #RedTeam #BlueTeam #DFIR #OSINT #ThreatIntel #MalwareAnalysis #BugBounty #CloudSecurity #MobileSecurity #OpenSource #SecurityTools #SecurityResearch #Linux #Hackers #Tech

  9. I was tired of digging through endless random cybersecurity lists, so naturally I built another random cybersecurity list - just cleaner, prettier and actually organized.

    Hack Hub is a curated directory of useful security resources.

    hackhub.fyi

    #CyberSecurity #InfoSec #Hacking #EthicalHacking #Pentesting #RedTeam #BlueTeam #DFIR #OSINT #ThreatIntel #MalwareAnalysis #BugBounty #CloudSecurity #MobileSecurity #OpenSource #SecurityTools #SecurityResearch #Linux #Hackers #Tech

  10. What is Web Security and Web Penetration Testing Tools

    In this article, I cover essential web penetration testing tools and how they fit into different stages of the assessment process.
    denizhalil.com/2024/12/19/web-

    #CyberSecurity #WebSecurity #Pentesting #BurpSuite #Nmap #SQLMap #BugBounty #RedTeam #InfoSec #EthicalHacking #SecurityTools #DenizHalil

  11. What is Web Security and Web Penetration Testing Tools

    In this article, I cover essential web penetration testing tools and how they fit into different stages of the assessment process.
    denizhalil.com/2024/12/19/web-

    #CyberSecurity #WebSecurity #Pentesting #BurpSuite #Nmap #SQLMap #BugBounty #RedTeam #InfoSec #EthicalHacking #SecurityTools #DenizHalil

  12. Keeper Endpoint Privilege Manager v1.1 brings structured approval workflows, enforceable expiration controls, and full visibility and auditing across environments. The platform has advanced to meet the operational and compliance requirements of large organizations.

    Our release notes share more about these updates ➡️ bit.ly/4tFzrlx.

    #KeeperSecurity #Cybersecurity #EndpointPrivilegeManagement #SecurityTools

  13. Keeper Endpoint Privilege Manager v1.1 brings structured approval workflows, enforceable expiration controls, and full visibility and auditing across environments. The platform has advanced to meet the operational and compliance requirements of large organizations.

    Our release notes share more about these updates ➡️ bit.ly/4tFzrlx.

    #KeeperSecurity #Cybersecurity #EndpointPrivilegeManagement #SecurityTools

  14. 📢 I have just released , a Burp Suite extension that redacts PII, credentials, tokens and other sensitive data from HTTP requests/responses.

    With one click, safely share requests and responses in reports, presentations, team reviews, or AI workflows, without exposing secrets and minimizing manual redactions.

    🔗 Explore it here: github.com/sv1sjp/BurpAnonymiz

    PortSwigger

  15. NordVPN launches Scam Text Checker
    AI + threat intel
    Scans text, links, screenshots
    User-side phishing defense ↑
    Source: nordvpn.com/blog/nordvpn-scam-
    💬 Worth using? Follow TechNadu
    #Phishing #SecurityTools #InfoSec

  16. NordVPN launches Scam Text Checker
    AI + threat intel
    Scans text, links, screenshots
    User-side phishing defense ↑
    Source: nordvpn.com/blog/nordvpn-scam-
    💬 Worth using? Follow TechNadu
    #Phishing #SecurityTools #InfoSec

  17. New Caetra release; Fix bug related with bcc adding missing struct bpf_wq to support kernel 6.14.0-37 on 24.04.1-Ubuntu (noble)

    github.com/carvilsi/caetra

    #eBPF #physicalSecurity #securityTools #monitoring

  18. 🔐 Introducing frida-ui

    A lightweight, web-based user interface built for Frida - designed to make Android application penetration testing more intuitive and efficient.

    📦 Easy to get started:
    > uv tool install frida-ui
    > frida-ui

    Check it out on GitHub - github.com/adityatelange/frida

    Available on PyPI: pypi.org/project/frida-ui

    #AndroidSecurity #infosec #Frida #SecurityTools #OpenSource

  19. 🔐 Introducing frida-ui

    A lightweight, web-based user interface built for Frida - designed to make Android application penetration testing more intuitive and efficient.

    📦 Easy to get started:
    > uv tool install frida-ui
    > frida-ui

    Check it out on GitHub - github.com/adityatelange/frida

    Available on PyPI: pypi.org/project/frida-ui

    #AndroidSecurity #infosec #Frida #SecurityTools #OpenSource

  20. 🚀 Behold, the latest buzzword salad from GitHub's trendy kitchen: Z-Image, a 6-billion-parameter monstrosity that promises to churn out images faster than you can say "overhyped AI model." 🌟✨ But wait, there's more! You can now manage prompts and fix vulnerabilities like never before—because who wouldn't want their security tools tangled with image generation? 😂🔧
    github.com/Tongyi-MAI/Z-Image #ZImage #OverhypedAI #ImageGeneration #GitHub #SecurityTools #TrendingTech #HackerNews #ngated

  21. 🚀 Behold, the latest buzzword salad from GitHub's trendy kitchen: Z-Image, a 6-billion-parameter monstrosity that promises to churn out images faster than you can say "overhyped AI model." 🌟✨ But wait, there's more! You can now manage prompts and fix vulnerabilities like never before—because who wouldn't want their security tools tangled with image generation? 😂🔧
    github.com/Tongyi-MAI/Z-Image #ZImage #OverhypedAI #ImageGeneration #GitHub #SecurityTools #TrendingTech #HackerNews #ngated

  22. ☁️ Cloud Security Toolkit – What Modern Teams Actually Need 🛡️
    The cloud changed everything — speed, scale, AND attack surface. Security now happens at runtime, at identity level, and inside every pipeline. If your tools can’t see everything, they’re already failing.

    Core Categories to Lock In:
    • CSPM → Posture & misconfig checks (Prisma Cloud, Wiz, Dome9)
    • CWPP → Runtime protection for VMs & containers (CrowdStrike, Aqua, Trend Micro)
    • CASB → SaaS visibility & data control (Netskope, MS Defender for Cloud Apps)
    • IAM → Hardening identity (AWS IAM, Azure AD, Okta, BeyondTrust)
    • SIEM / Threat Detection → Splunk, Sumo Logic, Datadog + cloud logs
    • Vuln & Config Scanning → Tenable, Trivy, Qualys for IaC & images
    • Secrets Management → HashiCorp Vault, AWS Secrets Manager
    • CI/CD Supply Chain Defense → Snyk, Checkov, GitHub Advanced Security

    🧠 Cloud Rule:
    Attackers don’t break in — they log in. Identity is the new perimeter.

    Always what do you guys think ?

    ⚠️ Use responsibly. Test in staging before production. Map every tool to your threat model, compliance framework, and provider stack.

    #CloudSecurity #DevSecOps #CSPM #IAM #CWPP #SIEM #ContainerSecurity #InfoSec #CyberDefense #HacktivateLabs #SecurityTools

  23. 🛠️ Best Cybersecurity Tools for Every Role — From Blue Team to Red Team 🚀

    Cybersecurity isn’t one-size-fits-all. Different roles require different tools, whether you’re defending networks, hunting threats, testing applications, or managing policies. Here’s a breakdown of the most valuable tools by role — all framed for authorized, ethical use.

    🔵 Blue Team (Defense & Monitoring)
    Defenders rely on visibility and rapid detection. Tools like Splunk, ELK, and Wazuh centralize logs, while Suricata and Zeek analyze traffic in depth. Endpoint tools like CrowdStrike or Microsoft Defender ATP provide EDR, and Security Onion ties it together for SOC workflows. 📊👀

    🔴 Red Team (Offense & Simulation)
    In authorized engagements, red teams simulate adversaries to test resilience. Metasploit and Cobalt Strike (licensed) provide frameworks for controlled exploitation, while Impacket and BloodHound help map Active Directory environments. Tools like Burp Suite and OWASP ZAP uncover web flaws in safe labs. ⚡🧪

    🟣 Purple Team (Collaboration)
    Purple teams blend red & blue to improve detection. Using MITRE ATT&CK Navigator, Atomic Red Team, and Caldera, they run adversary emulations while defenders fine-tune alerts. 🤝🛡️

    🔍 Threat Hunting & DFIR
    Analysts use Volatility and Autopsy for forensics, YARA for malware hunting, and MISP or AlienVault OTX for threat intel sharing. Sandboxes like Cuckoo and platforms like Any.Run safely analyze suspicious files. ☣️🔎

    ☁️ Cloud & DevSecOps
    For cloud, Wiz, Prisma Cloud, and Trivy scan for misconfigs and vulnerabilities. Developers secure pipelines with Snyk, Checkov, and GitHub Advanced Security. 🐳☁️

    ⚠️ Disclaimer:
    For educational & defensive use only. Tools should only be used in labs, on your own systems, or under explicit written permission during authorized engagements. 🚫🔒

    #CyberSecurity #InfoSec #BlueTeam #RedTeam #PurpleTeam #SOC #DFIR #EthicalHacking #SecurityTools #CloudSecurity

  24. 🛠️ Best Cybersecurity Tools for Every Role — From Blue Team to Red Team 🚀

    Cybersecurity isn’t one-size-fits-all. Different roles require different tools, whether you’re defending networks, hunting threats, testing applications, or managing policies. Here’s a breakdown of the most valuable tools by role — all framed for authorized, ethical use.

    🔵 Blue Team (Defense & Monitoring)
    Defenders rely on visibility and rapid detection. Tools like Splunk, ELK, and Wazuh centralize logs, while Suricata and Zeek analyze traffic in depth. Endpoint tools like CrowdStrike or Microsoft Defender ATP provide EDR, and Security Onion ties it together for SOC workflows. 📊👀

    🔴 Red Team (Offense & Simulation)
    In authorized engagements, red teams simulate adversaries to test resilience. Metasploit and Cobalt Strike (licensed) provide frameworks for controlled exploitation, while Impacket and BloodHound help map Active Directory environments. Tools like Burp Suite and OWASP ZAP uncover web flaws in safe labs. ⚡🧪

    🟣 Purple Team (Collaboration)
    Purple teams blend red & blue to improve detection. Using MITRE ATT&CK Navigator, Atomic Red Team, and Caldera, they run adversary emulations while defenders fine-tune alerts. 🤝🛡️

    🔍 Threat Hunting & DFIR
    Analysts use Volatility and Autopsy for forensics, YARA for malware hunting, and MISP or AlienVault OTX for threat intel sharing. Sandboxes like Cuckoo and platforms like Any.Run safely analyze suspicious files. ☣️🔎

    ☁️ Cloud & DevSecOps
    For cloud, Wiz, Prisma Cloud, and Trivy scan for misconfigs and vulnerabilities. Developers secure pipelines with Snyk, Checkov, and GitHub Advanced Security. 🐳☁️

    ⚠️ Disclaimer:
    For educational & defensive use only. Tools should only be used in labs, on your own systems, or under explicit written permission during authorized engagements. 🚫🔒

    #CyberSecurity #InfoSec #BlueTeam #RedTeam #PurpleTeam #SOC #DFIR #EthicalHacking #SecurityTools #CloudSecurity

  25. ☁️ Cloud Security Tools — Essential Toolkit for Modern Teams 🛡️🚀

    Cloud environments introduce new risks and require specialized tooling to secure workloads, configurations, and data. Use a mix of CSP-native and third-party tools to cover posture management, runtime protection, identity, and visibility. Key categories and examples: Cloud Security Posture Management (CSPM) — Prisma Cloud, Dome9, Wiz for misconfig & compliance checks 🔍; Cloud Workload Protection (CWPP) — CrowdStrike, Trend Micro, Aqua for container and VM runtime defense 🐳🛡️; Cloud Access Security Broker (CASB) — Netskope, Microsoft Defender for Cloud Apps for SaaS visibility & data control ☁️🔐; Identity & Access Management — AWS IAM/Azure AD hardening, BeyondTrust, Okta for strong auth & least privilege 🔑; Threat Detection & SIEM — Splunk, Sumo Logic, Datadog + cloud-native logging for alerting and forensics 📊; Vulnerability & Configuration Scanning — Qualys, Tenable, Trivy for images and infra-as-code scanning ⚙️; Secrets Management — HashiCorp Vault, AWS Secrets Manager for safe key handling 🔐; and Supply-chain & CI/CD security — Snyk, Checkov, GitHub Advanced Security to catch insecure deps and pipelines 🧩.

    ⚠️ Disclaimer:
    For educational & defensive use only. Evaluate tools against your cloud provider, compliance needs, and threat model before deploying. Always test changes in staging before production. 🚫🔒

    #CloudSecurity #CSPM #CWPP #IAM #DevSecOps #InfoSec #Cloud #CyberSecurity #SecurityTools #Compliance #ContainerSecurity ☁️🛡️

  26. ☁️ Cloud Security Tools — Essential Toolkit for Modern Teams 🛡️🚀

    Cloud environments introduce new risks and require specialized tooling to secure workloads, configurations, and data. Use a mix of CSP-native and third-party tools to cover posture management, runtime protection, identity, and visibility. Key categories and examples: Cloud Security Posture Management (CSPM) — Prisma Cloud, Dome9, Wiz for misconfig & compliance checks 🔍; Cloud Workload Protection (CWPP) — CrowdStrike, Trend Micro, Aqua for container and VM runtime defense 🐳🛡️; Cloud Access Security Broker (CASB) — Netskope, Microsoft Defender for Cloud Apps for SaaS visibility & data control ☁️🔐; Identity & Access Management — AWS IAM/Azure AD hardening, BeyondTrust, Okta for strong auth & least privilege 🔑; Threat Detection & SIEM — Splunk, Sumo Logic, Datadog + cloud-native logging for alerting and forensics 📊; Vulnerability & Configuration Scanning — Qualys, Tenable, Trivy for images and infra-as-code scanning ⚙️; Secrets Management — HashiCorp Vault, AWS Secrets Manager for safe key handling 🔐; and Supply-chain & CI/CD security — Snyk, Checkov, GitHub Advanced Security to catch insecure deps and pipelines 🧩.

    ⚠️ Disclaimer:
    For educational & defensive use only. Evaluate tools against your cloud provider, compliance needs, and threat model before deploying. Always test changes in staging before production. 🚫🔒

    #CloudSecurity #CSPM #CWPP #IAM #DevSecOps #InfoSec #Cloud #CyberSecurity #SecurityTools #Compliance #ContainerSecurity ☁️🛡️

  27. ⚔️ Awesome Hacking Tools — Essential Toolkit

    Security pros rely on a mix of tools to discover weaknesses and defend systems. From reconnaissance to recovery, these tools help teams test, learn, and improve security — always in authorized labs or engagements. 🛠️🔒

    🔍 Key categories & examples: reconnaissance & scanning (Nmap, Shodan), web testing (Burp Suite, OWASP ZAP), exploitation frameworks (Metasploit — lab only), password auditing (Hashcat, John the Ripper — authorized use), wireless & IoT (Wireshark, Kismet), forensics & IR (Volatility, Autopsy), and monitoring/SIEM (Security Onion, Splunk). ⚡️🧰

    ⚠️ Disclaimer:
    For educational & defensive use only. Use these tools only on systems you own or have explicit written permission to test — unauthorized use is illegal and unethical. 🚫📝

    #InfoSec #CyberSecurity #EthicalHacking #PenTesting #BlueTeam #RedTeam #SecurityTools #TechEducation #SecurityAwareness

  28. ⚔️ Awesome Hacking Tools — Essential Toolkit

    Security pros rely on a mix of tools to discover weaknesses and defend systems. From reconnaissance to recovery, these tools help teams test, learn, and improve security — always in authorized labs or engagements. 🛠️🔒

    🔍 Key categories & examples: reconnaissance & scanning (Nmap, Shodan), web testing (Burp Suite, OWASP ZAP), exploitation frameworks (Metasploit — lab only), password auditing (Hashcat, John the Ripper — authorized use), wireless & IoT (Wireshark, Kismet), forensics & IR (Volatility, Autopsy), and monitoring/SIEM (Security Onion, Splunk). ⚡️🧰

    ⚠️ Disclaimer:
    For educational & defensive use only. Use these tools only on systems you own or have explicit written permission to test — unauthorized use is illegal and unethical. 🚫📝

    #InfoSec #CyberSecurity #EthicalHacking #PenTesting #BlueTeam #RedTeam #SecurityTools #TechEducation #SecurityAwareness

  29. ⚡ FREE Tool: Stop Wasting Time on SIEM Rule Conversions!
    Converting between Snort and Suricata rules? Analyzing complex rule sets?
    da signature parser does it in seconds - not hours! ��
    ✅ One-click conversions
    ✅ Smart rule analysis
    ✅ Security-validated
    ✅ 100% FREE
    Built by a security engineer, for security engineers.
    Try it: chickenpwny.github.io/DaSignat
    What's your biggest SIEM pain point? Let's discuss!
    #Cybersecurity #SIEM #SecurityTools #FreeTools

  30. Why Your Security Team Needs Geographic Threat Intelligence Visualization 🗺️
    Traditional security dashboards show you WHAT happened, but not WHERE it's happening or HOW threats are connected geographically. Your SOC analysts are drowning in isolated alerts while missing the bigger picture - attack campaigns that span multiple IPs and locations. This geographic blind spot is costing companies millions in delayed detection and response times.
    🎯 Five Reasons to Use Geographic Threat Intelligence:
    Faster Incident Response - See attack patterns immediately, not after hours of analysis
    Better Resource Allocation - Focus security resources on high-risk geographic areas
    Enhanced Threat Hunting - Spot attack campaigns across multiple IPs and locations
    Improved Prioritization - Group related threats by geography and risk level
    Better Communication - Show executives the threat landscape visually
    Don't let your security team fight blind. Give them the geographic intelligence they need to win the battle against cyber threats.
    #Cybersecurity #ThreatIntelligence #SOC #IncidentResponse #SecurityOperations #CyberDefense #ThreatHunting #SecurityAnalytics #InfoSec #CyberThreats #SecurityTools #DataVisualization #SecurityInnovation #CyberAwareness #SecurityLeadership #RiskManagement #SecurityMonitoring #ThreatDetection #CyberResilience #SecurityStrategy

    chickenpwny.github.io/AzureOrd