All articles

Cybersecurity

348 articles

Cybersecurity

Spring Boot Actuator Exploitation: A Security Researcher's Arsenal

By Rob Ragan ★ 424 Unknown May 12, 2026
Cybersecurity

PowerZure: When Your Azure Credentials Become Someone Else's Attack Surface

By Rob Ragan ★ 1.3k Unknown May 12, 2026
Cybersecurity

The macOS Security Arsenal: A Critical Review of kai5263499/osx-security-awesome

By Rob Ragan ★ 775 Unknown May 12, 2026
Cybersecurity

VulnX: The Aggressive CMS Scanner That Automates What Penetration Testers Do Manually

By Rob Ragan ★ 2.1k Unknown May 12, 2026
Cybersecurity

badPods: The Kubernetes Security Testing Toolkit That Maps Every Pod Privilege Escalation Path

By Rob Ragan ★ 698 Unknown May 12, 2026
Cybersecurity

BruteShark: Automating Credential Extraction from Network Captures with .NET Core

By Rob Ragan ★ 3.4k Unknown May 12, 2026
Cybersecurity

KingOfBugBountyTips: A Weaponized Command Reference for Security Reconnaissance

By Rob Ragan ★ 5.3k Unknown May 12, 2026
Cybersecurity

h2cSmuggler: Exploiting HTTP/2 Cleartext Upgrades to Bypass Reverse Proxies

By Rob Ragan ★ 793 Unknown May 12, 2026
Cybersecurity

Bento Toolkit: Running GUI Pentesting Tools in Fedora Containers with X11 Forwarding

By Rob Ragan ★ 76 Unknown May 12, 2026
Cybersecurity

Cloudlist: Multi-Cloud Asset Discovery for Attack Surface Management

By Rob Ragan ★ 1.0k Unknown May 12, 2026
Cybersecurity

Axiom: Distributing Security Scans Across Hundreds of Cloud Instances With Shell Scripts

By Rob Ragan ★ 4.4k Unknown May 12, 2026
Cybersecurity

Crossfeed: How CISA Built a Serverless Attack Surface Monitor on AWS

By Rob Ragan ★ 422 Unknown May 12, 2026
Cybersecurity

Arsenal: A Command Injection Framework for Pentesting (That Literally Injects Your Shell)

By Rob Ragan ★ 3.7k Unknown May 12, 2026
Cybersecurity

Intrigue-ident: Multi-Protocol Fingerprinting with Built-in CVE Mapping

By Rob Ragan ★ 134 Unknown May 12, 2026
Cybersecurity

Inside CVE-Exploits: Dissecting Real-World Memory Corruption Techniques in C

By Rob Ragan ★ 687 Unknown May 12, 2026
Cybersecurity

ConsoleMe: How Netflix Built a Self-Service AWS IAM Control Plane (Before Archiving It)

By Rob Ragan ★ 3.2k Unknown May 12, 2026
Cybersecurity

Secretz: How a Go Tool Exposed the Dark Side of Travis CI Build Logs

By Rob Ragan ★ 326 Unknown May 12, 2026
Cybersecurity

Confused: Detecting Dependency Confusion Before Attackers Exploit Your Private Packages

By Rob Ragan ★ 782 Unknown May 12, 2026
Cybersecurity

Hacking the Cloud: The Crowdsourced Encyclopedia That Red and Blue Teams Actually Use

By Rob Ragan ★ 2.7k Unknown May 12, 2026
Cybersecurity

Hetty: Building a Modern HTTP Security Proxy with Go and GraphQL

By Rob Ragan ★ 10.2k Unknown May 12, 2026
Cybersecurity

Mosint: Building a Speed-Layer Email OSINT Tool with Go Concurrency

By Rob Ragan ★ 5.8k Unknown May 12, 2026
Cybersecurity

diodb: The Open Database Solving Security Research's Legal Gray Area

By Rob Ragan ★ 1.1k Unknown May 12, 2026
Cybersecurity

ksubdomain: How Stateless DNS Brute-Forcing Achieves 1.6 Million Packets Per Second

By Rob Ragan ★ 2.4k Unknown May 12, 2026
Cybersecurity

Puredns: How Two-Stage DNS Resolution Solves the Wildcard Subdomain Problem

By Rob Ragan ★ 2.2k Unknown May 12, 2026