Hx0-HawkEye v1.0.6
一个轻量级浏览器抓包与安全分析扩展,在浏览器侧边栏中即可完成抓包、拦截、修改、重放、规则检测与AI辅助分析的完整工作流。(A lightweight browser extension for traffic capture and security analysis, enabling capture, interception, modification, replay, rule-based detection, and AI-assisted analysis—all from the browser sidebar.)
Read more...
一个轻量级浏览器抓包与安全分析扩展,在浏览器侧边栏中即可完成抓包、拦截、修改、重放、规则检测与AI辅助分析的完整工作流。(A lightweight browser extension for traffic capture and security analysis, enabling capture, interception, modification, replay, rule-based detection, and AI-assisted analysis—all from the browser sidebar.)
Read more...
androidReverse v20
https://kitploit.com/en/posts/github-ultrasina-androidreverse-v20
Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support.
https://kitploit.com/en/posts/github-ultrasina-androidreverse-v20
Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support.
magic-extractor v1.3.1
Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.
Read more...
Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.
Read more...
The Best-Paying Bug in Bounty Isn’t the One Everyone Hunts
4,590 disclosed reports. Eleven bug types. The crowd is hunting where the money isn’t.Continue reading on Medium »
Read more...
4,590 disclosed reports. Eleven bug types. The crowd is hunting where the money isn’t.Continue reading on Medium »
Read more...
Medium
The Best-Paying Bug in Bounty Isn’t the One Everyone Hunts
4,590 disclosed reports. Eleven bug types. The crowd is hunting where the money isn’t.
Hackers Don’t Need Zero-Days Anymore: How Misconfigurations, IAM & Broken Logic Become Critical
Every time a breach makes headlines, someone asks “was it a zero-day?” Almost every time, the honest answer is no.Continue reading on Medium »
Read more...
Every time a breach makes headlines, someone asks “was it a zero-day?” Almost every time, the honest answer is no.Continue reading on Medium »
Read more...
Medium
Hackers Don’t Need Zero-Days Anymore: How Misconfigurations, IAM & Broken Logic Become Critical
Every time a breach makes headlines, someone asks “was it a zero-day?” Almost every time, the honest answer is no.
The Best-Paying Bug in Bounty Isn’t the One Everyone Hunts
https://medium.com/@rajnamdev/the-best-paying-bug-in-bounty-isnt-the-one-everyone-hunts-878568269b67?source=rss------bug_bounty-5
https://medium.com/@rajnamdev/the-best-paying-bug-in-bounty-isnt-the-one-everyone-hunts-878568269b67?source=rss------bug_bounty-5
4,590 disclosed reports. Eleven bug types. The crowd is hunting where the money isn’t.Continue reading on Medium » (https://medium.com/@rajnamdev/the-best-paying-bug-in-bounty-isnt-the-one-everyone-hunts-878568269b67?source=rss------bug_bounty-5)
Hackers Don’t Need Zero-Days Anymore: How Misconfigurations, IAM & Broken Logic Become Critical
https://medium.com/@bugitrix/hackers-dont-need-zero-days-anymore-how-misconfigurations-iam-broken-logic-become-critical-293df09deaf4?source=rss------bug_bounty-5
https://medium.com/@bugitrix/hackers-dont-need-zero-days-anymore-how-misconfigurations-iam-broken-logic-become-critical-293df09deaf4?source=rss------bug_bounty-5
Every time a breach makes headlines, someone asks “was it a zero-day?” Almost every time, the honest answer is no.Continue reading on Medium » (https://medium.com/@bugitrix/hackers-dont-need-zero-days-anymore-how-misconfigurations-iam-broken-logic-become-critical-293df09deaf4?source=rss------bug_bounty-5)
Crack the Gate 1 — picoCTF Write-up | Authentication Bypass via Hidden HTTP Header
IntroductionContinue reading on Medium »
Read more...
IntroductionContinue reading on Medium »
Read more...
Medium
Crack the Gate 1 — picoCTF Write-up | Authentication Bypass via Hidden HTTP Header
Introduction
apex v2.4.0-canary.d5c18874
AI-powered offensive security testing using autonomous agents, directly in your terminal.
Read more...
AI-powered offensive security testing using autonomous agents, directly in your terminal.
Read more...
cloudprober v0.14.5
An active monitoring software to detect failures before your customers do.
Read more...
An active monitoring software to detect failures before your customers do.
Read more...
DakshSCRA v0.38-beta
Framework-aware static code analysis tool for automated source code review with platform-specific rules, taint analysis, effort estimation, and suppression baselines.
Read more...
Framework-aware static code analysis tool for automated source code review with platform-specific rules, taint analysis, effort estimation, and suppression baselines.
Read more...
AppEnumGuard v1.2
CVE-2025-31207 mitigation and sandboxed tester for rootless and rootHide jailbreaks on iOS 15–18.4.1
Read more...
CVE-2025-31207 mitigation and sandboxed tester for rootless and rootHide jailbreaks on iOS 15–18.4.1
Read more...
httrack v3.49.24
Offline website copier that recursively downloads HTML, images, and files to create a browsable local mirror, with support for resuming and updating existing mirrored sites.
Read more...
Offline website copier that recursively downloads HTML, images, and files to create a browsable local mirror, with support for resuming and updating existing mirrored sites.
Read more...