g3n3r4l11
-
Read More (sploitify.haxx.it)
Sploitify - A tool for security researchers and penetration testers.
-
Read More (media.defcon.org)
The DEF CON® Media Server - Archives of the DEF CON 32 conference presentations.
-
Read More (gamehacking.academy)
Game Hacking Academy - A resource for learning game hacking techniques.
-
Read More (cryptobook.nakov.com)
Practical Cryptography for Developers - A comprehensive guide to cryptography for developers.
-
Beyond.com (beyond.com)
Hacking — Enumerating Private TLDs - An exploration of enumerating private top-level domains.
-
Read More (portswigger.net)
Listen to the whispers: web timing attacks that actually work - A deep dive into effective web timing attacks.
-
Read More (blog.calif.io)
Wormable Substack XSS - An analysis of a cross-site scripting vulnerability on Substack.
-
Read More (pentestpartners.com)
Insights and highlights from DEF CON 32 - Key takeaways from the DEF CON 32 conference.
-
Read More (freenet.org)
Introducing Ghost Keys - A new feature in Freenet for enhanced privacy.
-
Read More (portswigger.net)
Gotta cache 'em all: bending the rules of web cache exploitation - Techniques for exploiting web caches.
-
Read More (senayakut.com)
Multi-Tenant Architectures with AWS Cognito - A guide to implementing multi-tenant architectures using AWS Cognito.
y0utube1
-
Watch Here (youtube.com)
Jeff Man: From NSA to Pentesting - An interview with Jeff Man about his journey from the NSA to penetration testing.
g1thub7
-
Explore on GitHub (github.com)
EgeBalci/proton-poc - A proof of concept Proton CAPTCHA solver.
-
Explore on GitHub (github.com)
dshieble/playwright\xss\scanner - A tool for scanning XSS vulnerabilities using Playwright.
-
Explore on GitHub (github.com)
aws/karpenter-provider-aws - Karpenter, a Kubernetes Node Autoscaler for AWS.
-
Explore on GitHub (github.com)
gmatuz/inthewilddb - An hourly updated database of exploit and exploitation reports.
-
Explore on GitHub (github.com)
doyensec/CSPTBurpExtension - A Burp Suite extension for finding and exploiting Client-Side Path Traversal.
-
Explore on GitHub (github.com)
mbrg/power-pwn - An offensive security toolset for Microsoft 365 focusing on Copilot and Power Platform.
-
Explore on GitHub (github.com)
BushidoUK/Ransomware-Tool-Matrix - A resource listing tools used by various ransomware gangs.