A Practical Guide to Connecting Burp Suite to Claude Code via MCP ๐
Read more๐
๐ @RootAccessClub
Read more
Please open Telegram to view this post
VIEW IN TELEGRAM
Please open Telegram to view this post
VIEW IN TELEGRAM
โคโ๐ฅ4๐ฅ2
LeaksForums โ ๏ธ
A series of leaks from hacker forums๐จโ๐ป
GitHub๐งโ๐ป
๐ @RootAccessClub
A series of leaks from hacker forums
GitHub
Please open Telegram to view this post
VIEW IN TELEGRAM
โคโ๐ฅ3 2
๐๐ฎ๐ซ๐ฉ๐๐๐๐๐๐๐ฎ๐ซ๐ข๐ญ๐ฒ๐๐ฎ๐ข๐ญ๐ โญ๏ธ
Professional grade Burp Suite extension for comprehensive API reconnaissance, intelligent fuzzing, and AI powered security testing๐ก
Features๐ช
๐ต Reconnaissance
โก๏ธ Advanced Fuzzing
๐ Discovery Tools
๐ฅ Export & Integration
Installation๐ฅ
1๏ธโฃ ๐ฅ Burp โก๏ธ Extender โก๏ธ Extensions โก๏ธ Add โก๏ธ Python
2๏ธโฃ Select๐ฅ BurpAPISecuritySuite.py
Extension loads and starts capturing automatically
Requirementsโ๏ธ
Burp Suite (Professional or Community Edition)โ
Jython Standalone JARโ
GitHub๐ฑ
๐ @RootAccessClub
๐ @BugCod3
Professional grade Burp Suite extension for comprehensive API reconnaissance, intelligent fuzzing, and AI powered security testing
Features
Installation
Extension loads and starts capturing automatically
Requirements
Burp Suite (Professional or Community Edition)
Jython Standalone JAR
GitHub
Please open Telegram to view this post
VIEW IN TELEGRAM
UsingBYOVD โค๏ธ
A C++ based BYOVD (Bring Your Own Vulnerable Driver) security research and testing project๐ฅ
It supports kernel-level operations including privilege escalation, physical memory R/W, and removing process protection via vulnerable drivers๐ป
โ๏ธ Disclaimer: This project is created strictly for educational purposes, authorized security auditing, and malware research
Github๐ฑ
๐ @RootAccessClub
A C++ based BYOVD (Bring Your Own Vulnerable Driver) security research and testing project
It supports kernel-level operations including privilege escalation, physical memory R/W, and removing process protection via vulnerable drivers
Github
Please open Telegram to view this post
VIEW IN TELEGRAM
Bug Bounty Dorks ๐คฉ
๐ @RootAccessClub
inurl /bug bounty
inurl : / security
inurl:security.txt
inurl:security "reward"
inurl : /responsible disclosure
inurl : /responsible-disclosure/ reward
inurl : / responsible-disclosure/ swag
inurl : / responsible-disclosure/ bounty
Please open Telegram to view this post
VIEW IN TELEGRAM
โคโ๐ฅ2
unKover โ 403 bypass tester ๐ค
unKover tests a URL returning 403 Forbidden against a set of proven bypass techniques and stops at the first successful one, returning a ready-to-run curl PoCโ
GitHub๐ป
๐ @RootAccessClub
unKover tests a URL returning 403 Forbidden against a set of proven bypass techniques and stops at the first successful one, returning a ready-to-run curl PoC
GitHub
Please open Telegram to view this post
VIEW IN TELEGRAM
FluxER โ Fluxion Easy Runner for Termux ๐ฒ
Automated installer and launcher for Fluxion โ a wireless security auditing toolkit for WPA/WPA2 testing and network analysis in Termux environmentsโญ๏ธ
Featuresโญ๏ธ
โช๏ธ Automated Setup :
One-command installation of Ubuntu (proot) and Fluxion
โช๏ธ Optimized for Termux : Efficient resource usage and mobile-friendly
โช๏ธ No Root Required : Works on non-rooted Android devices
โช๏ธ Smart Package Management : Only installs necessary dependencies
โช๏ธ Error Handling: Robust installation with detailed progress feedback
โช๏ธ Storage Efficient:
Optional components to minimize space usage
โ๏ธ Requirements :
๐ Minimum Requirements
OS: Termux on Android 9.0+
Architecture: ARM64 (64-bit)
Storage: ~500MB-1GB free space
Internet: Stable connection for downloads
Permissions: Storage access (granted during setup)
๐ข Recommended
Android 9.0 or higher
2GB+ free storage for optimal performance
Wi-Fi connection for faster downloads
โณ Installation
โก๏ธ Install Termux from F Droid (recommended) or GitHub
โก๏ธ Update Termux packages :
โก๏ธ Clone the repository :
โก๏ธ Make the script executable :
โก๏ธ Run FluxER :
๐ฑ @RootAccessClub
Automated installer and launcher for Fluxion โ a wireless security auditing toolkit for WPA/WPA2 testing and network analysis in Termux environments
Features
One-command installation of Ubuntu (proot) and Fluxion
Optional components to minimize space usage
OS: Termux on Android 9.0+
Architecture: ARM64 (64-bit)
Storage: ~500MB-1GB free space
Internet: Stable connection for downloads
Permissions: Storage access (granted during setup)
Android 9.0 or higher
2GB+ free storage for optimal performance
Wi-Fi connection for faster downloads
pkg update && pkg upgrade -ygit clone https://github.com/0n1cOn3/FluxER.gitcd FluxERchmod +x fluxer.sh./fluxer.shPlease open Telegram to view this post
VIEW IN TELEGRAM
New Web Based Subdomain Discovery Service ๐
crt.name is a new web based service for discovering subdomains through Certificate Transparency (CT) logs๐
It searches publicly available certificate records to identify subdomains associated with a target domain๐ต
Useful forโ
โข Subdomain Enumeration
โข Reconnaissance
โข Asset Discovery
โข Bug Bounty Recon
crt.name๐
๐ @RootAccessClub
๐ @BugCod3
crt.name is a new web based service for discovering subdomains through Certificate Transparency (CT) logs
It searches publicly available certificate records to identify subdomains associated with a target domain
Useful for
โข Subdomain Enumeration
โข Reconnaissance
โข Asset Discovery
โข Bug Bounty Recon
crt.name
Please open Telegram to view this post
VIEW IN TELEGRAM
PDF Exploit Defense Toolkit ๐ก
Two clean, pure-Python tools for handling malicious PDFs:
1๏ธโฃ PDF Exploit Scanner
Detects high risk indicators (OpenAction, JS, Launch, XFA, heap spraysโฆ)๐ค
โก๏ธ Structural patcher + full image based sanitizer included
GitHub๐จ
2๏ธโฃ IP Scanner for Exploited PDFs
Pulls hidden IPs/ranges from hijacked PDFs (byte-level)๐ค
โก๏ธ Scans common ports + temporary firewall to block them
GitHub๐จ
๐ฉ @RootAccessClub
Two clean, pure-Python tools for handling malicious PDFs:
Detects high risk indicators (OpenAction, JS, Launch, XFA, heap spraysโฆ)
GitHub
Pulls hidden IPs/ranges from hijacked PDFs (byte-level)
GitHub
Please open Telegram to view this post
VIEW IN TELEGRAM
DroneSploit โ Opensource Metasploit alternative for drone pentesting ๐
GitHub๐ฑ
๐ @RootAccessClub
GitHub
Please open Telegram to view this post
VIEW IN TELEGRAM
โก3
numasec โ The open source AI security agent ๐ง
numasec is an AI security agent that runs in your terminalโช๏ธ
It uses the tools already installed on your machine, follows security runbooks, switches between cyber agents, keeps the operation context alive, tracks findings, stores evidence and helps turn the work into reports๐ค
GitHub๐ฑ
๐ @RootAccessClub
numasec is an AI security agent that runs in your terminal
It uses the tools already installed on your machine, follows security runbooks, switches between cyber agents, keeps the operation context alive, tracks findings, stores evidence and helps turn the work into reports
GitHub
Please open Telegram to view this post
VIEW IN TELEGRAM
โก3
AutoCVE โ One Click CVE Discovery: Select Projects, Audit Source Code, Verify Vulnerabilities, Generate Reports, Fully Automated ๐ฅ
GitHub๐
๐ฑ @RootAccessClub
GitHub
Please open Telegram to view this post
VIEW IN TELEGRAM
๐ฅ2
PentestCode ๐ฅ
AI penetration testing agent in your terminal
Multi-agent architecture Engagement state tracking , 20+ LLM providers โจ
GitHub ๐
๐ @RootAccessClub
AI penetration testing agent in your terminal
Multi-agent architecture Engagement state tracking , 20+ LLM providers โจ
GitHub ๐
๐ @RootAccessClub
๐ฅ4
How I Found 7 XSS Using a Custom Nuclei Template ๐ฌ
Read Here ๐
#CyberSecurity #BugBounty #xss
โก๏ธ@RootAccessClub
Read Here ๐
#CyberSecurity #BugBounty #xss
โก๏ธ@RootAccessClub
DarkTortilla RAT โ Telegram Exfiltration & Payload Extraction โข
GitHub ๐
#Payload #CyberSecurity
๐ช @RootAccessClub
GitHub ๐
#Payload #CyberSecurity
๐ช @RootAccessClub
โก2
BugScanner ๐ฉป
Automated web security reconnaissance & vulnerability assessment tool for bug bounty hunters. Discover attack surfaces, fingerprint technologies, detect common web vulnerabilities, and generate actionable security reports ๐
GitHub
๐@RootAccessClub
Automated web security reconnaissance & vulnerability assessment tool for bug bounty hunters. Discover attack surfaces, fingerprint technologies, detect common web vulnerabilities, and generate actionable security reports ๐
GitHub
๐@RootAccessClub
๐ฅ3
๐ฆ Stuxnet
A new GitHub project provides an educational reconstruction of the infamous Stuxnet worm, based on years of reverse engineering research into the original 2010 samples ๐ฌ
The project explores components such as rootkits, privilege escalation, Step7/S7 hooks, propagation mechanisms, and PLC-related functionality โ๏ธ๐ป
๐งช Intended for malware analysis, security research, and academic study
GitHub ๐
๐ @RootAccessClub
A new GitHub project provides an educational reconstruction of the infamous Stuxnet worm, based on years of reverse engineering research into the original 2010 samples ๐ฌ
The project explores components such as rootkits, privilege escalation, Step7/S7 hooks, propagation mechanisms, and PLC-related functionality โ๏ธ๐ป
๐งช Intended for malware analysis, security research, and academic study
GitHub ๐
๐ @RootAccessClub
๐ฅ3โคโ๐ฅ1
PSAITO โ New PS5 WebKit Research ToolExperimental toolkit for PS5 ๐ซฏ
firmware 9.00 โ 13.60 โ
Browser only exploit that gives memory read/write + syscall primitives inside the WebKit process โจ
Research only โ ๏ธ
GitHub ๐
๐ฅ@RootAccessClub
firmware 9.00 โ 13.60 โ
Browser only exploit that gives memory read/write + syscall primitives inside the WebKit process โจ
Research only โ ๏ธ
GitHub ๐
๐ฅ@RootAccessClub
knife โ A reverse engineer's toolkit in Rust ๐ช
Parse, triage, disassemble, and audit PE, ELF, and Mach-O from one small binary. Static only: it reads the bytes on disk and never runs the target ๐ฏ
GitHub ๐
ยฉ @RootAccessClub
Parse, triage, disassemble, and audit PE, ELF, and Mach-O from one small binary. Static only: it reads the bytes on disk and never runs the target ๐ฏ
GitHub ๐
ยฉ @RootAccessClub
โคโ๐ฅ2โก1
Claude Red ๐ช
Offensive security skills for Claude a collection of "SKILL.md" files designed to turn Claude into a more context aware red team assistant
Covers areas like web security, AD, cloud, recon, exploit development, EDR evasion, and more โญ๏ธ
GitHub ๐
๐ก๏ธ@RootAccessClub
Offensive security skills for Claude a collection of "SKILL.md" files designed to turn Claude into a more context aware red team assistant
Covers areas like web security, AD, cloud, recon, exploit development, EDR evasion, and more โญ๏ธ
GitHub ๐
๐ก๏ธ@RootAccessClub
๐ฅ3
XSS Labs๐ฌ
An intentionally vulnerable lab environment for practicing XSS across different contexts, including Reflected, Stored, DOM-based, and JavaScript based XSS
A practical resource for learning how XSS works and how to mitigate it ๐ท๏ธ
Github ๐งช
โก๏ธ @RootAccessClub
An intentionally vulnerable lab environment for practicing XSS across different contexts, including Reflected, Stored, DOM-based, and JavaScript based XSS
A practical resource for learning how XSS works and how to mitigate it ๐ท๏ธ
Github ๐งช
โก๏ธ @RootAccessClub
โคโ๐ฅ4