kalilinux

31 Tips from Inon Shkedy’s Challenge – Mastering API Security

This challenge is Inon Shkedy's 31 days API Security Tips -API TIP: 1/31- Older APIs versions tend to be more…

10 months ago

InfoSec Black Friday Deals – “Friday Hack Fest” 2023 Edition

All the deals for InfoSec related software/tools this Black Friday / Cyber Monday. Just 2023 Things Quality over quantity -…

10 months ago

Hades Command And Control – Learning Malware Development and CTFsHades Command & Control

Hades is a basic Command & Control server built using Python. It is currently extremely bare bones, but I plan…

10 months ago

Forbidden Buster: Mastering HTTP 401 and 403 Bypass Techniques

Forbidden Buster is a tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes…

10 months ago

Goblob: Azure Blob Storage Enumeration Tool

Goblob is a lightweight and fast enumeration tool designed to aid in the discovery of sensitive information exposed publicy in…

10 months ago

Padre: A Powerful Tool for Exploiting Padding Oracle Attacks

Padre is a sophisticated and efficient software tool specifically engineered to leverage the inherent weaknesses in CBC mode encryption through…

10 months ago

LightsOut: Disabling AMSI & ETW with an Obfuscated DLL

LightsOut will generate an obfuscated DLL that will disable AMSI & ETW while trying to evade AV. This is done…

10 months ago

CrossLinked: Mastering LinkedIn Enumeration with Search Engine Scraping

CrossLinked is a LinkedIn enumeration tool that uses search engine scraping to collect valid employee names from an organization. This…

10 months ago

Splunk RCE – PoC: In-Depth Analysis and Exploitation Methodology

This article delves into a critical vulnerability in Splunk, identified as CVE-2023-46214. It provides a detailed analysis and a Proof…

10 months ago

CVE Half-Day Watcher

CVE Half-Day Watcher is a security tool designed to highlight the risk of early exposure of Common Vulnerabilities and Exposures…

10 months ago