Starlog — Page 28
// LATEST
AI Dev Tools
ZAnnotate: Building a Multi-Source IP Intelligence Pipeline for Internet-Scale Research
Cybersecurity
Curate: Mining VirusTotal's URL Archive for Bug Bounty Reconnaissance
Cybersecurity
EdOverflow/hacks: The Art of Disposable Security Scripts in /usr/local/bin
Cybersecurity
LFISuite: Anatomy of an Automated Local File Inclusion Exploitation Framework
Developer Tools
Building a Bulk Email Breach Checker with Python and Have I Been Pwned
Data & Knowledge
ODAT: The Offensive Oracle Database Toolkit That Security Teams Need to Know
Cybersecurity
Drupalgeddon2: Dissecting the RCE Exploit That Threatened Millions of CMS Installations
Developer Tools
PHPGGC: The Weaponized Library Turning PHP Magic Methods Into Exploitation Chains
Cybersecurity
Cr3dOv3r: Reverse-Engineering a Credential Reuse Attack Framework
Cybersecurity
Smith: The Bug Bounty Wrapper That Makes Meg Actually Useful
Cybersecurity
AWSBucketDump: Weaponizing S3 Misconfigurations With Wordlists and Grep
Developer Tools
CloudScraper: Finding Cloud Storage Leaks Through Regex-Powered Web Spidering
Developer Tools
CORStest: Hunting Misconfigured Cross-Origin Policies at Scale
Developer Tools
Auditing S3 Bucket Exposures: A Security Researcher's Download Tool
Automation
DVCS-Pillage: The Security Tool That Exposes Your Forgotten .git Directories
Cybersecurity
CloudGoat: Learning Cloud Penetration Testing by Breaking Things on Purpose
Developer Tools
Pathbrute: Exploit-Aware Directory Enumeration for Penetration Testing
Developer Tools
Mining Robots.txt for Security Intelligence: Inside RobotsDisallowed
Developer Tools
Hunting Java Deserialization Exploits with Graph Traversal: Inside Inspector-Gadget
Cybersecurity
WhatWeb: Ruby-Powered Web Fingerprinting with 1800+ Plugins for Security Reconnaissance
Developer Tools
sshuttle: The Transparent Proxy That Turns SSH Into a VPN Without the VPN Overhead
Data & Knowledge
Commonspeak2: Mining Google BigQuery to Generate Wordlists from Real Internet Traffic
Developer Tools
Anatomy of S2-057: Understanding Struts2's Namespace Vulnerability Through Live Exploitation
AI Dev Tools