ImHex : A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM : github.com/WerWolv/ImHex credits @WerWolv
Ever wanted to trigger a #NTLM authentication to a machine using every possible RPC call ? You can do this using #Coercer 🥳🎉
This tool automatically detects available pipes and protocols and call every possible functions to trigger an #authentication.
github.com/p0dalirius/Coe…
Hey, do you like tokens? Have you always wanted to "harvest" tokens for offensive purposes? If so check out my new post posts.specterops.io/koh-the-token-… where I show I can (finally) write a technical post without memes, and then check out the Koh toolset at github.com/GhostPack/Koh
Introducing KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
All credits go to @tiraniddo@cube0x0@harmj0y, most of the code was taken from their tools.
github.com/Dec0ne/KrbRela…
If you or more importantly a vendor that you are looking at using, uploads potentially malicious files to VirusTotal, many times that file can later be accessed by 3rd parties (AV companies, “researchers”, etc). These can be your company’s financials (macro enabled XLSX)
#Hancitor affiliates brought their own signed vulnerable Avast driver into intrusions which allowed them to terminate processes from the Kernel using a tool labeled by #MITRE as #BURNTCIGAR, here's my version written in powershell
virustotal.com/gui/file/4b522… - Avast driver
For those looking into the #ContiLeaks, I've prepared a network relationship map, that shows the relationships between users, based on the leaked chat logs.
bit.ly/JGEU_CLNETMAP
An attacker stole $30m from MonoX across their ethereum and polygon deployments a few hours ago.
One of the tx: polygonscan.com/tx/0x5a03b9c03…
The exploit was caused by a smart contract bug that led to incorrect price updates when doing token swaps. 🧵👇
I've created an overview of the Smart Contract Auditing Process for pentesters, devs, bug bounty, or anyone vested in blockchain security.
Shoutout @Mudit__Gupta who really helped solidify this process from his walkthroughs.
#bugbountytips#infosec#web3#CyberSecurity
#OSINT#Hacking#OffSec#InfoSec resource lists of online sites allowing you to search the Internet for open/public web directories, FTP servers & various file types vs keywords/targets
Some of these can search entire sites (Reddit, Twitter, Tumblr, YouTube, etc) vs. keywords
292 Followers 357 FollowingSecurity stuff and shitposting; ex security consultant turned security engineer; come for the tech stay for the memes; mostly lurking 🌚
13K Followers 10K FollowingMost companies only realise they are breached when informed by a 3rd party. This is a stupid problem! Thinkst Canary. Know. When it Matters.
11K Followers 728 Following// unethical hacker
// cybersecurity leader: megacorp, usa
// ex big tech, else
// @redteamvillage_ & @sec_defcon daemon
// take sincerely at your own risk
45K Followers 1K FollowingCTO at @Databricks and CS prof at @UCBerkeley. Working on data+AI, including @ApacheSpark, @DeltaLakeOSS, @MLflow, https://t.co/94gROE5Xa0. https://t.co/nmRYAKG0LZ
4K Followers 344 FollowingSecurity Engineer @ Somewhere
ex-Google, ex-Cloudflare
I use bad software and bad machines for the wrong things.
My writing: https://t.co/Z7uucr5BYW
11K Followers 258 Followingsecurity enthusiast that loves hunting for bugs in the wild. co-founder and player of @justCatTheFish.
infosec at @google. opinions are mine.
18K Followers 519 FollowingHacker, bearer of the 2017 Pwnie Lifetime Achievement Award, Experiment 626 type
Otherwise applicable: I can neither confirm nor deny.
3K Followers 483 FollowingTargeted Ops @TrustedSec. Hacker, lock picker, writer of bad code. This is our world now... the world of the electron and the switch, the beauty of the baud.
1K Followers 1K FollowingAssociate Professor@Northwestern University. lead of 42-b3yond-6ug. Many Ph.D./internship/visiting scholar openings in software/system security. DM/email me.
11K Followers 482 FollowingGoose, James Goose. Made some open source software you might already be using. Shipping C and cooking Rust with OCaml. Working on @fframes_rust.
129K Followers 399 FollowingI own 12,000 businesses | Passive Income coming out my ass | My course is only $12,995) | created by @charliewrich | Work with me: https://t.co/AgEhJJpT7M
898 Followers 0 FollowingMapping the internet - turning DNS/host data into intel for sec teams, OSINT & bug-bounty hunters. Automated recon & real-time alerts.
157K Followers 0 FollowingThe free and flexible app for your private thoughts. For help and deeper discussions, join our community: https://t.co/QsDArfFkkv
772 Followers 20 Following- Archiving tools for League of Legends, nHentai and Twitch.
(Dodge tracker, username, chat history etc)
- Reverse Email/Phone lookup tools
22K Followers 9 FollowingYour new async coding agent by @GoogleLabs. Built for devs, open to feedback, evolving with you. Dive in → https://t.co/iIzFEMmWgv
17K Followers 941 FollowingCo-founder and CTO of @CoreViewHQ GenAI/LLM addicted, Apple MLX, Microsoft 365, Azure, Kubernetes, Investor in innovation and Mensa member.
14K Followers 996 FollowingA colorful sphere, here to grudge.
Its opinions will never budge.
A vibrant orb, with hues so bright,
Unwavering in its stances and might.
7K Followers 241 Following🤖 AI Jobs - https://t.co/iYjxLn2VCx
✍️ Grammarly alternative - https://t.co/pJedyUqlX7
📸 Pro headshots at home - https://t.co/o3dm4fidM6
🌍 Work from anywhere - https://t.co/YULsc8wRpv