Sec. Forge Hub
1.02K subscribers
56 photos
11 files
36 links
Security tools, automation, and insights - from pocket helpers to CI/CD integrations.
Built for red teamers, security engineers, and everyone shaping cyber defense.
Download Telegram
Channel created
Channel name was changed to Β«Sec. Forge HubΒ»
Channel photo updated
🚨 FreePBX SQL Injection & RCE (CVE-2025-57819): I built a safe, read-only checker.
Over the weekend I analyzed a critical SQLi path in a FreePBX AJAX endpoint on a test environment and confirmed which parameters are vulnerable. The result: a compact FreePBX SQL Injection Checker that safely tells you whether your PBX could be at risk of RCE and full server compromise - without writing to the database.

What’s inside?
β–ͺ️ Read-only diagnostics (error/boolean/time-based).
β–ͺ️ Focus on potential vulnerable parameters in /admin/ajax.php.
β–ͺ️ Clear per-parameter verdicts + JSON report for CI/IR.
β–ͺ️ Proxy-friendly (Burp/ZAP), easy to script, easy to review.

Why it matters?
Unpatched SQLi on an Internet-exposed PBX is a straight line to RCE => call interception, credential theft, lateral movement, and full business impact.

Get it here:
πŸ‘‰ GitHub: https://github.com/xV4nd3Rx/CVE-2025-57819_FreePBX-PoC

Use it only on systems you own or are authorized to test. Feedback and PRs welcome!
πŸ‘1πŸ”₯1
🚨 FreePBX SQLi & RCE (CVE-2025-57819) - v1.1.0 Updated!

Read-only checker update: multi-host scans + structured output for fast CI/IR.

Usage:
πŸ—‚οΈ -L / --list - scan hosts from a .txt (one per line, # = comment)
πŸ“„ Per-host JSON reports β†’ out/ (--out-dir)
πŸ”΄ vulnerable.txt - quick list of vulnerable hosts + params
⏱️ --delay - pause between hosts (default 1.5s)
πŸ›‘οΈ Read-only checks (error/boolean/time-based). Proxy-friendly (Burp/ZAP).

Get it here:
πŸ‘‰ GitHub:
πŸ”— https://github.com/xV4nd3Rx/CVE-2025-57819_FreePBX-PoC
πŸ”₯4
πŸš€ Kali Linux 2025.3 Released - New Tools & Wi-Fi Enhancements

The latest update to Kali Linux is here, bringing powerful new tools, Wi-Fi improvements, and NetHunter updates.

πŸ”§ What’s New

β€’ 10 new tools: Caido, DiE, Gemini CLI, krbrelayx, ligolo-mp, llm-tools-nmap, mcp-kali-server, patchleaks, vwifi-dkms, and more.
β€’ Wi-Fi & Nexmon: Expanded support for Broadcom/Cypress chips with monitor & injection modes.
β€’ Kali NetHunter: New device support (Samsung S10), CARsenal improvements, UI fixes.
β€’ Xfce VPN panel: More flexible IP copy options.
β€’ ARMel dropped, Magisk kernel modules added (experimental).

πŸ”„ How to Update

For those updating from a previous version, you can use the following commands to upgrade to the latest version.

echo "deb http://http.kali.org/kali kali-rolling main contrib non-free non-free-firmware" | sudo tee /etc/apt/sources.list

sudo apt update && sudo apt -y full-upgrade

cp -vrbi /etc/skel/. ~/

[ -f /var/run/reboot-required ] && sudo reboot -f
πŸ”₯3❀1
CorsairAPI - async, OpenAPI-aware recon & payload generator for APIs.
It auto-discovers Swagger/OpenAPI, parses robots/sitemap, probes subdomains, and exports clean artifacts (results.csv, oas_endpoints.txt, oas_payloads.jsonl) for Burp/ZAP or pipelines.

Why it’s handy?

πŸ”Ž Smart discovery (OpenAPI, HTML hints, robots/sitemap)
βš™οΈ Modes: stealth / medium / aggressive
πŸ€– Interactive setup (mode, UA, depth) or pure CLI
πŸ§ͺ Schema-driven request/payload generation
πŸ“Š CSV now logs findings even with depth=0 (incl. found tags)

Get it here πŸ‘‰ https://github.com/xV4nd3Rx/CorsairAPI

Stars & feedback welcome! ⭐
πŸ”₯3⚑1
Metasploit Weekly Wrap-Up - Sep 26, 2025

🧩 Cron Persistence refresh - cron-based persistence now aligned with the new persistence mixin (multi/persistence/cron). Cleaner internals, same effect.

πŸ”₯ FreePBX /admin/ajax.php SQLi β†’ RCE (CVE-2025-57819) - new module (unix/http/freepbx_unauth_sqli_to_rce) abuses SQLi to write a cron job for code execution. Auth bypass + SQLi chain, wide impact on v15/16/17. Patch fast.

Update with msfupdate and read the full wrap-up here πŸ‘‰ https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-09-26-2025
πŸ”₯4⚑1πŸ‘1
🚩 The Huntress CTF is back!

πŸ•΅οΈβ€β™€οΈ Now in its third year, the competition runs October 1 – October 31 with new challenges every single day.
πŸ’» Free to play. Register anytime β€” even while the game is live!
⏳ Play at your own pace, whenever you want.

πŸ”— Sign up here: ctf.huntress.com
❀3πŸ‘2πŸ”₯2
🚨 Break into Cybersecurity for FREE 🚨

Want to become a SOC Analyst but don’t know where to start?
Here are free certifications & learning paths to kickstart your career ⬇️

βœ… Cisco – Security Operations Center (SOC)
βœ… Cisco – Junior Cybersecurity Analyst
βœ… TryHackMe – SOC Level 1
βœ… LetsDefend – SOC Analyst Learning Path
βœ… Splunk – Free training on monitoring & SIEM

No excuses now – these resources can help you build real SOC skills without spending a money πŸ’Έ

πŸ“Œ Save this list & start your SOC journey today.
❀3πŸ”₯3πŸ‘1
πŸ“’FREE COMPTIA EXAM VOUCHER!πŸ“’

CompTIA launched a new certification (CompTIA SecAI+) and is offering FREE vouchers for those that qualify.

Domains & weights:
 1) Basic AI Concepts Related to Cyber β€” 17%
 2) Securing AI Systems β€” 40%
 3) AI-assisted Security β€” 24%
 4) AI Governance, Risk & Compliance β€” 19%

βœ… Check eligibility and register here: https://lnkd.in/diQcCAn4

If you qualify, take, and pass the beta exam, you will earn the new CompTIA SecAI+ certification at no cost.

πŸ“… Take the beta exam by October 17, 2025, to receive an incentive.
⏳ The beta exam period ends on October 31, 2025.
🀝3❀2πŸ‘1