Human in the loop for AI Pentesting Co-Pilot
https://www.reddit.com/r/Pentesting/comments/1mk4a0z/human_in_the_loop_for_ai_pentesting_copilot/
<!-- SC_OFF -->Hi all, we took lots of feedback from our original post on here with our AI Pentesting copilot. We have now added a feature that can be toggled so our AI Pentester can run in a "user approve" mode. This allows users to feel more comfortable with the software as this requires user approval before executing commands on target. You can also switch it back to agentic mode and it will go back to being autonomous. As we had previously, you can still give it tasks which will be put in a queue to increase thoroughness. Cheers. www.vulnetic.ai (http://www.vulnetic.ai/) We are looking to build out a more permanent beta testing group for early features, so if you are interested, it is a free way to use the product. Email us at [contact@vulnetic.ai (mailto:contact@vulnetic.ai)](mailto:contact@vulnetic.ai (mailto:contact@vulnetic.ai)) if you want to be a beta tester. <!-- SC_ON --> submitted by /u/Pitiful_Table_1870 (https://www.reddit.com/user/Pitiful_Table_1870)
[link] (https://www.reddit.com/r/Pentesting/comments/1mk4a0z/human_in_the_loop_for_ai_pentesting_copilot/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mk4a0z/human_in_the_loop_for_ai_pentesting_copilot/)
https://www.reddit.com/r/Pentesting/comments/1mk4a0z/human_in_the_loop_for_ai_pentesting_copilot/
<!-- SC_OFF -->Hi all, we took lots of feedback from our original post on here with our AI Pentesting copilot. We have now added a feature that can be toggled so our AI Pentester can run in a "user approve" mode. This allows users to feel more comfortable with the software as this requires user approval before executing commands on target. You can also switch it back to agentic mode and it will go back to being autonomous. As we had previously, you can still give it tasks which will be put in a queue to increase thoroughness. Cheers. www.vulnetic.ai (http://www.vulnetic.ai/) We are looking to build out a more permanent beta testing group for early features, so if you are interested, it is a free way to use the product. Email us at [contact@vulnetic.ai (mailto:contact@vulnetic.ai)](mailto:contact@vulnetic.ai (mailto:contact@vulnetic.ai)) if you want to be a beta tester. <!-- SC_ON --> submitted by /u/Pitiful_Table_1870 (https://www.reddit.com/user/Pitiful_Table_1870)
[link] (https://www.reddit.com/r/Pentesting/comments/1mk4a0z/human_in_the_loop_for_ai_pentesting_copilot/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mk4a0z/human_in_the_loop_for_ai_pentesting_copilot/)
Easy machines to pwn in HTB.
https://www.reddit.com/r/Pentesting/comments/1mk4cfp/easy_machines_to_pwn_in_htb/
submitted by /u/AffectionateTown5059 (https://www.reddit.com/user/AffectionateTown5059)
[link] (https://www.reddit.com/r/Pentesting/comments/1mk4cfp/easy_machines_to_pwn_in_htb/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mk4cfp/easy_machines_to_pwn_in_htb/)
https://www.reddit.com/r/Pentesting/comments/1mk4cfp/easy_machines_to_pwn_in_htb/
submitted by /u/AffectionateTown5059 (https://www.reddit.com/user/AffectionateTown5059)
[link] (https://www.reddit.com/r/Pentesting/comments/1mk4cfp/easy_machines_to_pwn_in_htb/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mk4cfp/easy_machines_to_pwn_in_htb/)
Pentesting for startups
https://www.reddit.com/r/Pentesting/comments/1mk6cqw/pentesting_for_startups/
<!-- SC_OFF -->Hey everyone, When it comes to startups and pentesting What’s the best way to approach pentesting for startups? Are there affordable or phased options that still give real value? Any recommendations for tools, services, or freelancers? How often should we test if we’re still making changes to the product? Would love to hear how others have handled this or what worked well for you. Thanks! <!-- SC_ON --> submitted by /u/NinjaMode777 (https://www.reddit.com/user/NinjaMode777)
[link] (https://www.reddit.com/r/Pentesting/comments/1mk6cqw/pentesting_for_startups/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mk6cqw/pentesting_for_startups/)
https://www.reddit.com/r/Pentesting/comments/1mk6cqw/pentesting_for_startups/
<!-- SC_OFF -->Hey everyone, When it comes to startups and pentesting What’s the best way to approach pentesting for startups? Are there affordable or phased options that still give real value? Any recommendations for tools, services, or freelancers? How often should we test if we’re still making changes to the product? Would love to hear how others have handled this or what worked well for you. Thanks! <!-- SC_ON --> submitted by /u/NinjaMode777 (https://www.reddit.com/user/NinjaMode777)
[link] (https://www.reddit.com/r/Pentesting/comments/1mk6cqw/pentesting_for_startups/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mk6cqw/pentesting_for_startups/)
The Forgotten SSRF Vector (CVE-2020–10770)
How a single OIDC parameter opened the door to internal services in Keycloak servers worldwideContinue reading on T3CH »
Read more...
How a single OIDC parameter opened the door to internal services in Keycloak servers worldwideContinue reading on T3CH »
Read more...
Medium
The Forgotten SSRF Vector (CVE-2020–10770)
How a single OIDC parameter opened the door to internal services in Keycloak servers worldwide
Bug Bounty Journey — Valid Report Part 9
https://medium.com/@0xF3r4t/bug-bounty-journey-valid-report-part-9-879e35be5ff6?source=rss------bug_bounty-5
https://medium.com/@0xF3r4t/bug-bounty-journey-valid-report-part-9-879e35be5ff6?source=rss------bug_bounty-5
In this journey, I will share my experience with a valid report I submitted. This will be a series until I discover new vulnerabilities…Continue reading on Medium » (https://medium.com/@0xF3r4t/bug-bounty-journey-valid-report-part-9-879e35be5ff6?source=rss------bug_bounty-5)
Server-Side Request Forgery (SSRF — OWASP A10): Guía para Hacking y Bug Bounty
https://medium.com/@jpablo13/server-side-request-forgery-ssrf-owasp-a10-gu%C3%ADa-para-hacking-y-bug-bounty-3705bbc5f283?source=rss------bug_bounty-5
https://medium.com/@jpablo13/server-side-request-forgery-ssrf-owasp-a10-gu%C3%ADa-para-hacking-y-bug-bounty-3705bbc5f283?source=rss------bug_bounty-5
Descubre cómo el SSRF permite a un atacante acceder a la red interna, leer metadatos de la nube y escalar privilegios.Continue reading on Medium » (https://medium.com/@jpablo13/server-side-request-forgery-ssrf-owasp-a10-gu%C3%ADa-para-hacking-y-bug-bounty-3705bbc5f283?source=rss------bug_bounty-5)
The Forgotten SSRF Vector (CVE-2020–10770)
https://medium.com/h7w/the-forgotten-ssrf-vector-cve-2020-10770-8bf04bfd4be9?source=rss------bug_bounty-5
https://medium.com/h7w/the-forgotten-ssrf-vector-cve-2020-10770-8bf04bfd4be9?source=rss------bug_bounty-5
How a single OIDC parameter opened the door to internal services in Keycloak servers worldwideContinue reading on T3CH » (https://medium.com/h7w/the-forgotten-ssrf-vector-cve-2020-10770-8bf04bfd4be9?source=rss------bug_bounty-5)
I'm one of those shitty pentesters that people complain about
https://www.reddit.com/r/Pentesting/comments/1mkkjpv/im_one_of_those_shitty_pentesters_that_people/
<!-- SC_OFF -->I don't think I deserve to be here. I started as a pentester doing external tests. Worked my way up to red team operator then to red team leader but I don't think I deserve to lead. Whenever I work with other people I find they're so much smarter than me. I have all the certs everyone wants but they're just certs, it doesn't mean I know squat. I can bypass Crowdstrike but it's usually when working with someone else. I've written my own tools but they were just a copy of other people's stuff with modifications I wanted. It's not coming from my brain. I get domain admin sometimes and fail miserably other times. I know someone will say imposter syndrome but I honestly don't think I'm good enough to be at this level. Here's an example. I was doing a red team where I was responsible for everything external: recon, external pentesting and social engineering. The attack surface spans literally hundreds of domains, thousands of IPs. So I'm working away, trying to figure out how to get in and completely miss a bend new vulnerability in an externally facing piece of software that could have gotten me creds. I get asked in the standup "So did you test X?" And I had weeks earlier, found nothing and moved on. "Well there goes your chance. We patched already." That mistake has literally haunted me. I set myself up a set of feeds on the latest threat Intel and check them every day now. But this is what I'm saying. I should have been doing that for years, not starting now! I'm a straight up shitty pentester. You're probably going to laugh but I'm thinking of moving into management because I think pretty much everyone is smarter than me and I'm not cut out for this. It's only a matter of time before I get found out as a fraud. Honestly I'm surprised it hasn't happened by now. Thanks for reading. I really just needed to get this off my chest. <!-- SC_ON --> submitted by /u/petapex (https://www.reddit.com/user/petapex)
[link] (https://www.reddit.com/r/Pentesting/comments/1mkkjpv/im_one_of_those_shitty_pentesters_that_people/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mkkjpv/im_one_of_those_shitty_pentesters_that_people/)
https://www.reddit.com/r/Pentesting/comments/1mkkjpv/im_one_of_those_shitty_pentesters_that_people/
<!-- SC_OFF -->I don't think I deserve to be here. I started as a pentester doing external tests. Worked my way up to red team operator then to red team leader but I don't think I deserve to lead. Whenever I work with other people I find they're so much smarter than me. I have all the certs everyone wants but they're just certs, it doesn't mean I know squat. I can bypass Crowdstrike but it's usually when working with someone else. I've written my own tools but they were just a copy of other people's stuff with modifications I wanted. It's not coming from my brain. I get domain admin sometimes and fail miserably other times. I know someone will say imposter syndrome but I honestly don't think I'm good enough to be at this level. Here's an example. I was doing a red team where I was responsible for everything external: recon, external pentesting and social engineering. The attack surface spans literally hundreds of domains, thousands of IPs. So I'm working away, trying to figure out how to get in and completely miss a bend new vulnerability in an externally facing piece of software that could have gotten me creds. I get asked in the standup "So did you test X?" And I had weeks earlier, found nothing and moved on. "Well there goes your chance. We patched already." That mistake has literally haunted me. I set myself up a set of feeds on the latest threat Intel and check them every day now. But this is what I'm saying. I should have been doing that for years, not starting now! I'm a straight up shitty pentester. You're probably going to laugh but I'm thinking of moving into management because I think pretty much everyone is smarter than me and I'm not cut out for this. It's only a matter of time before I get found out as a fraud. Honestly I'm surprised it hasn't happened by now. Thanks for reading. I really just needed to get this off my chest. <!-- SC_ON --> submitted by /u/petapex (https://www.reddit.com/user/petapex)
[link] (https://www.reddit.com/r/Pentesting/comments/1mkkjpv/im_one_of_those_shitty_pentesters_that_people/) [comments] (https://www.reddit.com/r/Pentesting/comments/1mkkjpv/im_one_of_those_shitty_pentesters_that_people/)
Exploiting XSS to Bypass CSRF Defenses: Change Victim’s Email
Learn how a stored XSS flaw can be weaponized to defeat CSRF defenses and perform unauthorized actions on behalf of users.Continue reading on InfoSec Write-ups »
Read more...
Learn how a stored XSS flaw can be weaponized to defeat CSRF defenses and perform unauthorized actions on behalf of users.Continue reading on InfoSec Write-ups »
Read more...
Medium
Exploiting XSS to Bypass CSRF Defenses: Change Victim’s Email
Learn how a stored XSS flaw can be weaponized to defeat CSRF defenses and perform unauthorized actions on behalf of users.
Exploiting XSS to Bypass CSRF Defenses: Change Victim’s Email
https://infosecwriteups.com/exploiting-xss-to-bypass-csrf-defenses-change-victims-email-dcdcbfe1d5df?source=rss------bug_bounty-5
https://infosecwriteups.com/exploiting-xss-to-bypass-csrf-defenses-change-victims-email-dcdcbfe1d5df?source=rss------bug_bounty-5
Learn how a stored XSS flaw can be weaponized to defeat CSRF defenses and perform unauthorized actions on behalf of users.Continue reading on InfoSec Write-ups » (https://infosecwriteups.com/exploiting-xss-to-bypass-csrf-defenses-change-victims-email-dcdcbfe1d5df?source=rss------bug_bounty-5)
How I Bypassed a Strict WAF Using SQL Injection Tricks
The Silent SQL Injection Cloudflare Almost Hid From MeContinue reading on InfoSec Write-ups »
Read more...
The Silent SQL Injection Cloudflare Almost Hid From MeContinue reading on InfoSec Write-ups »
Read more...
Medium
How I Bypassed a Strict WAF Using SQL Injection Tricks
The Silent SQL Injection Cloudflare Almost Hid From Me
Bug Bounty Methodology for Finding Bugs Easily
Welcome, bug bounty hunters! 🕵️♂️ Whether you’re just starting out or looking to sharpen your methodology, this guide will help you…Continue reading on InfoSec Write-ups »
Read more...
Welcome, bug bounty hunters! 🕵️♂️ Whether you’re just starting out or looking to sharpen your methodology, this guide will help you…Continue reading on InfoSec Write-ups »
Read more...
Medium
Bug Bounty Methodology for Finding Bugs Easily 🐞💰
Welcome, bug bounty hunters! 🕵️♂️ Whether you’re just starting out or looking to sharpen your methodology, this guide will help you…
Think Fast: How Auto-Complete Suggested Me Passwords That Weren’t Mine ᾒf
Hey there!😁Continue reading on Medium »
Read more...
Hey there!😁Continue reading on Medium »
Read more...
Medium
🧠 Think Fast: How Auto-Complete Suggested Me Passwords That Weren’t Mine ᾒf🔐
Hey there!😁
“Day 5: SSRF — How I Hacked AWS Keys & Stole $15,000 in Cloud Credits”
Three months ago, I found a “low-severity” SSRF (Server-Side Request Forgery) in a SaaS company’s API. What started as a simple internal…Continue reading on InfoSec Write-ups »
Read more...
Three months ago, I found a “low-severity” SSRF (Server-Side Request Forgery) in a SaaS company’s API. What started as a simple internal…Continue reading on InfoSec Write-ups »
Read more...
Medium
“Day 5: SSRF — How I Hacked AWS Keys & Stole $15,000 in Cloud Credits”
Three months ago, I found a “low-severity” SSRF (Server-Side Request Forgery) in a SaaS company’s API. What started as a simple internal…