Cybersecurity
Offensive and defensive security tooling explained by a pentester — scanners, exploit frameworks, secrets detection, and the OSS projects shaping modern security work.
358 articles
Cybersecurity
CALDERA: Building Autonomous Adversary Emulation with MITRE's ATT&CK Framework
Cybersecurity
Logsensor: Scanning Thousands of Subdomains for Login Panels and POST-Based SQL Injection
Cybersecurity
From Bug Report to Security Test in 60 Seconds: Inside Nuclei AI's Template Generation Pipeline
Cybersecurity
Gsec: A Bug Bounty Hunter's Multi-Tool That Wraps Nuclei in Aggressive Automation
Cybersecurity
A2P2V: Automated Attack Path Planning That Bridges Vulnerability Scanning and Exploitation
Cybersecurity
Pentest Muse CLI: When AI Agents Meet Offensive Security Workflows
Cybersecurity
Inside the Security Architect Interview: What 200+ Real Questions Reveal About Hiring at Scale
Cybersecurity
LVE: Building a CVE Database for Language Models, One Prompt at a Time
Cybersecurity
GodNS: A DNS Proxy That Lies for a Living
Cybersecurity
FOSSA CLI: Why a Haskell-Powered Dependency Scanner Won the Enterprise
Cybersecurity
DOT: Building Real-Time Deepfakes for Security Red Teams
Cybersecurity
CloudIntel: A Daily Feed of Malware Actually Targeting Your Cloud Infrastructure
Cybersecurity
Juumla: Building a Lightweight Joomla Security Scanner That Doesn't Break the Bank
Cybersecurity
vulnx: How ProjectDiscovery Built a CLI That Makes Vulnerability Research Feel Like grep
Cybersecurity
Atlas: The SQLMap Tamper Script Reconnaissance Tool That Automates WAF Bypass Discovery
Cybersecurity
Hero: When AI Becomes the Penetration Tester
Cybersecurity
PyRIT: Microsoft's Framework for Red Teaming AI Systems Before They Fail in Production
Cybersecurity
dsieve: Taming Subdomain Chaos with Python-Style Slicing for Domain Lists
Cybersecurity
NB Defense: Security Scanning for Jupyter Notebooks Before Your Secrets Hit GitHub
Cybersecurity
Mapping the Attack Surface: A Security Researcher's Guide to Foundation Model Vulnerabilities
Cybersecurity
Building an LLM Red Team Pipeline with Agentic Security
Cybersecurity
Inside LLM-SP: The Security Researcher's Map Through 577 Stars of Adversarial AI
Cybersecurity
Inside GitHub's Secret Detection Engine: A Pattern Library for Catching Credentials in Code
Cybersecurity