foxglovesec
-
1
Hot Potato – Windows Privilege Escalation
-
2
When Whales Fly – Building a Wireless Pentest Environment using Docker
-
3
Fuzzing workflows; a fuzz job from start to finish
-
4
Why DoS isn’t compromise – 5 Years of Real Penetration Test Data to Stand Behind
-
5
Finding pearls; fuzzing ClamAV
-
6
Rotten Potato – Privilege Escalation from Service Accounts to SYSTEM
-
7
Hacking JasperReports – The Hidden Shell Feature
-
8
Type Juggling and PHP Object Injection, and SQLi, Oh My!
-
9
Abusing Token Privileges For Windows Local Privilege Escalation
-
10
A Sheep in Wolf’s Clothing – Finding RCE in HP’s Printer Fleet
NetSPI Blog
-
1
“StyleSmuggler” – Adobe Commerce, Adobe Commerce B2B, and Magento RCE (CVE-2026-75650): Overview and Takeaways
-
2
A New Era for Offensive Security
-
3
Modern Adventures in Azure Privilege Escalation
-
4
Verifying the Verifier – Assessing Identity Verification Services
-
5
Introducing EchoBench: A Human Calibrated Benchmark for Autonomous Pentesting
-
6
BOFScale: A CDN-Fronted Tailnet from a BOF-PE
-
7
Stealing the Artifact – JFrog Artifactory Vulnerability
-
8
Azure VM Command Execution using Third-Party Extensions – Salt Minion
-
9
CVE-2026-63030 & CVE-2026-60137: WordPress Core Pre-Authentication RCE Overview & Takeaways
-
10
Azure VM Command Execution using Third-Party Extensions – Chef
pentestmonkey
-
1
“Hackers for Charity” Needs You
-
2
Reverse Shell Cheat Sheet
-
3
Post-Exploitation in Windows: From Local Admin To Domain Admin (efficiently)
-
4
Exposing only part of C: over Terminal Services
-
5
timing-attack-checker
-
6
The Science of Safely Finding an Unused IP Address
-
7
gateway-finder
-
8
Finding IP Addresses of Other Network Interfaces on Linux
-
9
windows-privesc-check
-
10
mimikatz: Tool To Recover Cleartext Passwords From Lsass
SecTools
-
1
★★★★★ soc commented on OpenVAS
-
2
★★★★★ Hack Craze commented on Aircrack
-
3
★★★★★ Michael Pei commented on Burp Suite
-
4
★★★★★ Clint commented on Wapiti
-
5
★★★★★ Dule74 commented on Firefox
-
6
★★★★★ Jonathan Cano commented on Scapy
-
7
Mat Ludlam commented on Core Impact
-
8
★★★★★ Dmytro Redchuk commented on Scapy
-
9
★★★★★ Mark Taylor Bennet commented on Nexpose
-
10
RaHoWarrior commented on Aircrack
Security Through Education
-
1
Sowing Confusion: The Social Engineering Behind Gaslighting
-
2
Inside the Mind of a Social Engineer: What FASE Teaches About Human Psychology and Security
-
3
The Art of Listening in a Distracted World
-
4
A Fresh Start: Why New Beginnings Motivate Us
-
5
Why Non-Punitive Cultures Strengthen Your Security Program
-
6
The Quiet Compliance Gap: Why Risk Persists Despite Security Training
-
7
Protecting the Elderly in a Digital Age
-
8
Zero Trust and the Human Element: Why Social Engineering Still Bypasses Modern Security
-
9
Meta Lawsuits and Children’s Online Safety: What Parents Need to Know About Social Media and Teen Mental Health
-
10
The Polite Social Engineering Attack: How Courtesy and Empathy Are Weaponized in Cybersecurity Threats
tssci-security
-
1
Web application security incident handling
-
2
Virtual appliances for the security professional
-
3
Appsec industry trends - looking forward
-
4
Blackhat USA 2009 / Defcon 17
-
5
What makes a solid security program?
-
6
Pentesting Flex
-
7
Extending Burp with Jython Burp API
-
8
Projects
-
9
web2py: Key as Initialization Vector
-
10
Decoding and Tampering Protobuf Serialized Messages in Burp
城市美學新態度kaiak.tw
-
1
「他的創作至今沒有得到足夠的關注」 Frieze Seoul 新設 Spotlight 專區,補上 12 個 20 世紀的名字
-
2
從 5 家長到 38 家|法國馬賽 Art-o-rama 用20年撐出一個新興藝術現場
-
3
真鍋大度海外首個大型個展10月月登場!3 件沉浸式新作,帶你進入「關係時態」
-
4
蕭博駿「莊周夢蝶」個展:在工筆斑斕的蝶翼下,打開穿越時代焦慮的幻境之門
-
5
「圓點女王」草間彌生97歲辭世:以近一世紀創作,留下跨世代的藝術語彙
-
6
《Bound Species》 重現夢裡那個各自美麗的綻放花朵
-
7
自然還是文化?歐元新鈔 10 組設計提案開放全民投票
-
8
葛飾北齋的浪,在布魯塞爾鮮活綻開
-
9
與大英博物館貝葉掛毯同期 Hurvin Anderson 新作領銜倫敦《Beyond Bayeux》
-
10
把全世界的館藏擺進一個搜尋框 : The Last Museum