g3n3r4l14
-
Meshtastic (meshtastic.org)
An open-source, encrypted mesh networking communication protocol.
-
LOLC2 (lolc2.github.io)
A lightweight and easy-to-use command and control (C2) framework.
-
LOTTunnels (lottunnels.github.io)
A proxy-based security tunneling tool for penetration testers and researchers.
-
Infosec 101 for Activists (infosecforactivists.org)
A cybersecurity guide tailored for activists and journalists.
-
Elon Musk’s X blocks links to Signal (disruptionist.com)
X is reportedly blocking links to Signal, the encrypted messaging service.
-
Hacking cars in JavaScript (charliegerard.dev)
Running replay attacks in the browser with HackRF to manipulate vehicle systems.
-
Removing Jeff Bezos From My Bed (trufflesecurity.com)
An unusual cybersecurity investigation uncovering security flaws.
-
Achieving RCE in a Japanese chat tool (flatt.tech)
Exploiting an outdated Electron feature to achieve remote code execution.
-
How to Backdoor Large Language Models (blog.sshh.io)
Exploring methods of injecting backdoors into AI models.
-
SSRF on Sliver C2 teamserver (blog.chebuya.com)
A new vulnerability (CVE-2025-27090) allowing SSRF via spoofed callbacks.
-
AWS IAM User Enumeration Vulnerability (rhinosecuritylabs.com)
A newly discovered issue (CVE-2025-0693) allowing unauthorized AWS IAM user enumeration.
-
NSA Cyber Tactics Exposed (inversecos.com)
A look at NSA’s cyber strategies from China’s perspective.
-
Fun with Timing Attacks (ostro.ws)
A deep dive into timing-based cybersecurity exploits.
-
Boofuzz (boofuzz.readthedocs.io)
A powerful network protocol fuzzing tool for security testing. Explore on GitHub
X1
-
The Importance of Penetration Testing Reports (@BHinfoSecurity)
A pentester’s primary job is writing a great report; hacking is just the fun part.
g1thub6
-
AI-Infra-Guard (github.com)
A security assessment tool for discovering risks in AI infrastructure. Explore on GitHub
-
OpenSSH Account Takeover (CVE-2023-38408) (github.com)
A proof-of-concept exploit for an OpenSSH vulnerability. Explore on GitHub
-
Subtrace (github.com)
A Wireshark-like tool for monitoring traffic in Docker containers. Explore on GitHub
-
Passkey Raider (github.com)
A Burp Suite extension for testing Passkey authentication systems. Explore on GitHub
-
Tailpipe (github.com)
An open-source SIEM tool for instant log insights using SQL and DuckDB. Explore on GitHub
-
M365TokenRepeater (github.com)
A tool for analyzing authentication flows in Microsoft 365. Explore on GitHub