Starlog — Page 35
// LATEST
Developer Tools
gf: How a 200-Line Go Wrapper Turned grep Into a Security Research Power Tool
Developer Tools
Building a Ghostcat Vulnerability Scanner: Inside CNVD-2020-10487 Detection
Developer Tools
Building a Ghostcat Detector: How fatal0's Go Tool Probes the CVE-2020-1938 Vulnerability
Developer Tools
Sysdig: The Universal System Call Translator That Turns Your Linux Kernel Into a Time Machine
Cybersecurity
tfsec: The Terraform Security Scanner That Became Part of Trivy
Cybersecurity
Scout: When Your Web Fuzzer Needs to Fit in a Single Binary
Developer Tools
Building Payload Generators for ffuf: The Unix Pipeline Approach to Web Fuzzing
Cybersecurity
Building a Browser Extension to Hunt Exposed API Keys: A Deep Dive into KeyFinder's Architecture
Developer Tools
Gopherus: Weaponizing a 1991 Protocol to Exploit Modern SSRF Vulnerabilities
Developer Tools
50mm: Why This S3-Backed Photo Gallery Ditches Databases and Preprocessing
Developer Tools
CVE-2020-7961: Dissecting a Liferay Portal Deserialization Exploit
Developer Tools
FProbe: Fast HTTP Probing with Inline Port Specification for Security Reconnaissance
Cybersecurity
Smogcloud: Finding the AWS Assets Your Security Team Forgot About
Developer Tools
Popular-Site-Subdomains: The Bug Bounty Hunter's Secret Wordlist
Data & Knowledge
Go-Flashpaper: Building a Memory-Only Secret Sharing Service with Honeypot Forensics
Developer Tools
Mining Apache's server-status: A Security Researcher's Field Guide
Automation
LazyRecon: The Bash Script That Chains 12 Security Tools Into One Reconnaissance Pipeline
Developer Tools
genkiroid/cert: Inspect TLS Certificates Without the OpenSSL Ceremony
Automation
Hunting .DS_Store Files at Scale: How internetwache's Scanner Exploits macOS Metadata Leaks
Developer Tools
JSScanner: The Bug Bounty Hunter's Swiss Army Knife for JavaScript Reconnaissance
Developer Tools
ffufplus: When Shell Scripts Make Better Security Tools Than Frameworks
Cybersecurity
Jaeles: Building a Signature-Based Web Scanner That Speaks YAML
Cybersecurity
Building Custom Query String Fuzzers: Inside qsfuzz's Rule-Based Vulnerability Detection
Automation