10 Best Pentesting Certifications of 2023
From Stationx vision:
https://www.stationx.net/best-pentesting-certifications/
From Stationx vision:
https://www.stationx.net/best-pentesting-certifications/
StationX
10 Best Pentesting Certifications of 2024: Your Ultimate Guide
Seeking the best pentesting certifications? Read our guide and choose the right one to elevate your career.
XCP-ng: Home Server Build with Citrix Hypervisor
https://www.virtualizationhowto.com/2023/09/xcp-ng-home-server-build-with-citrix-hypervisor/
#review
https://www.virtualizationhowto.com/2023/09/xcp-ng-home-server-build-with-citrix-hypervisor/
#review
Virtualization Howto
XCP-ng: Home Server Build with Citrix Hypervisor
Learn how to use XCP-ng for your home server build, including installation, configuration, and setup with this Citrix hypervisor
MMSF - Massive Mobile Security Framework or MMSF is a mobile framework that combines functionalities from frida, objection, drozer and many more:
— https://github.com/St3v3nsS/MMSF
— https://github.com/St3v3nsS/MMSF
GitHub
GitHub - St3v3nsS/MMSF: Massive Mobile Security Framework
Massive Mobile Security Framework. Contribute to St3v3nsS/MMSF development by creating an account on GitHub.
ExtractBitlockerKeys
A system administration or post-exploitation noscript to automatically extract the bitlocker recovery keys from a domain:
— https://github.com/p0dalirius/ExtractBitlockerKeys/
A system administration or post-exploitation noscript to automatically extract the bitlocker recovery keys from a domain:
— https://github.com/p0dalirius/ExtractBitlockerKeys/
GitHub
GitHub - p0dalirius/ExtractBitlockerKeys: A system administration or post-exploitation noscript to automatically extract the bitlocker…
A system administration or post-exploitation noscript to automatically extract the bitlocker recovery keys from a domain. - p0dalirius/ExtractBitlockerKeys
🌟 Ada - Adaptive DNS: Harmoniously filters malicious content and ensures seamless internet connectivity whenever possible
🚫 Ric - Strict DNS: Blocks many marketing and tracking resources, which may affect access to certain internet content
Curious to learn more? Dive into the details here
I recommend Ada for most OpenBLD.net DNS users. Take care of yourself. Peace out! ✌️
Please open Telegram to view this post
VIEW IN TELEGRAM
Vulnerable-AD
Create a vulnerable active directory that's allowing you to test most of active directory attacks in local lab:
https://github.com/safebuffer/vulnerable-AD
Create a vulnerable active directory that's allowing you to test most of active directory attacks in local lab:
https://github.com/safebuffer/vulnerable-AD
GitHub
GitHub - safebuffer/vulnerable-AD: Create a vulnerable active directory that's allowing you to test most of the active directory…
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab - GitHub - safebuffer/vulnerable-AD: Create a vulnerable active directo...
DetectHooks
This tool enumerate functions exported from ntdll.dll, looking for modified instruction at the start of the syscall stub, indicating redirection of the execution somewhere else (module of AV/EDR) for inspection:
https://github.com/Helixo32/DetectHooks
This tool enumerate functions exported from ntdll.dll, looking for modified instruction at the start of the syscall stub, indicating redirection of the execution somewhere else (module of AV/EDR) for inspection:
https://github.com/Helixo32/DetectHooks
GitHub
GitHub - Helixo32/DetectHooks: Detect userland hooks placed by AV/EDR
Detect userland hooks placed by AV/EDR. Contribute to Helixo32/DetectHooks development by creating an account on GitHub.
Hadoken is a versatile bash noscript designed for network scanning and enumeration
-- https://github.com/Edd13Mora/Hadoken
-- https://github.com/Edd13Mora/Hadoken
Pentration_Testing-Beginners_To_Expert.pdf
127.2 KB
Pentration Testing from Beginners to Expert
Doc of ~20 pages with links and denoscriptions
Doc of ~20 pages with links and denoscriptions
Source Code at Risk: Critical Code Vulnerability in CI/CD Platform TeamCity
https://www.sonarsource.com/blog/teamcity-vulnerability/
https://www.sonarsource.com/blog/teamcity-vulnerability/
Sonarsource
Source Code at Risk: Critical Code Vulnerability in CI/CD Platform TeamCity
Our Vulnerability Research team discovered a critical vulnerability in the popular CI/CD server TeamCity, which attackers could use to steal source code and poison build artifacts.
They will take fingerprints when creating a passport in Kazakhstan
https://www.inform.kz/ru/kak-obyazatelnoe-snyatie-otpechatkov-paltsev-uprostit-zhizn-kazahstantsev-ee12c5
https://www.inform.kz/ru/kak-obyazatelnoe-snyatie-otpechatkov-paltsev-uprostit-zhizn-kazahstantsev-ee12c5
Казинформ
Как обязательное снятие отпечатков пальцев упростит жизнь казахстанцев
Уже с 1 января 2024 года вводится обязательная дактилоскопическая регистрация граждан при получении паспорта и удостоверения личности. Старший инспектор Комитета миграционной службы МВД РК Нуржан Джанабаев рассказал, как эта норма упростит жизнь казахстанцев…
Delphi 11 Community Edition
From old memory - I used Delphi for writing - OS Tweakers, Worms, Password Generators and etc. I is best solution for including all code to one binary with Windows 98, Me, xp + compatibility features..)
-- https://www.embarcadero.com/products/delphi/starter
From old memory - I used Delphi for writing - OS Tweakers, Worms, Password Generators and etc. I is best solution for including all code to one binary with Windows 98, Me, xp + compatibility features..)
-- https://www.embarcadero.com/products/delphi/starter
Embarcadero
Delphi IDE for Native Apps: Community Edition - Embarcadero
Delphi Community Edition is a great way to get started building high-performance applications for Windows without database connectivity. See more.
10 Best Cybersecurity Certifications for 2024
Expensive, but the names of certifications can potentially provide a platform for thinking about where to go..:
https://www.techopedia.com/10-best-cybersecurity-certifications-for-2024
Expensive, but the names of certifications can potentially provide a platform for thinking about where to go..:
https://www.techopedia.com/10-best-cybersecurity-certifications-for-2024
Techopedia
15 Best Cybersecurity Certifications for 2025
What are the best cybersecurity certifications for 2025? We help you, whether you are breaking into the field or advancing your current cyber career.
Forwarded from Sys-Admin InfoSec
In first - Big Thanks to the DNS Blocklists project for their significant contribution to "Keep the internet clean" ideology
In this quarter of 2023, I've introduced various enhancements to the OpenBLD.net ecosystem.
🔻 Here's the scoop:
1️⃣ OpenBLD.net now incorporates the DNS Blocklists project into its own DNS filtering mechanisms, ensuring a cleaner internet experience.
2️⃣ Successfully resolved major Apple content delivery issues for Eastern Europe, enhancing DNS delivery experience.
3️⃣ Experience a boost in DNS response speed by approximately 5%. The General pool is now around ~
111ms, while Local pools are at ~70ms.4️⃣ According to Alternativeto, OpenBLD.net stands out as an alternative to Quad9, NextDNS, AdGuard DNS, AhaDNS, and BlahDNS.
✨ And most importantly, OpenBLD.net is your go-to solution for a clean Internet – free from Ads, Tracking, Metrics, Telemetry, Phishing, Malware and all that other "Crap.” without agent installations and add-ins in your browsers.
Embrace yourself and stay focused with the power of clean Internet with https://openbld.net DNS 😎
#OpenBLD #DNS #InternetCleanse #Innovation
Please open Telegram to view this post
VIEW IN TELEGRAM
LDAPWordlistHarvester
A tool to generate a wordlist from the information present in LDAP, in order to crack passwords of domain accounts:
https://github.com/p0dalirius/LDAPWordlistHarvester
A tool to generate a wordlist from the information present in LDAP, in order to crack passwords of domain accounts:
https://github.com/p0dalirius/LDAPWordlistHarvester
EDRaser
EDRaser is a powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines. It offers two modes of operation: automated and manual:
https://github.com/SafeBreach-Labs/EDRaser
EDRaser is a powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines. It offers two modes of operation: automated and manual:
https://github.com/SafeBreach-Labs/EDRaser
GitHub
GitHub - SafeBreach-Labs/EDRaser: EDRaser is a powerful tool for remotely deleting access logs, Windows event logs, databases,…
EDRaser is a powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines. It offers two modes of operation: automated and manual. - SafeBreach...
JA4+ Network Fingerprinting
The use-cases for these fingerprints include scanning for threat actors, malware detection, session hijacking prevention, compliance automation, location tracking, DDoS detection, grouping of threat actors, reverse shell detection, and many more..:
https://blog.foxio.io/ja4-network-fingerprinting-9376fe9ca637
The use-cases for these fingerprints include scanning for threat actors, malware detection, session hijacking prevention, compliance automation, location tracking, DDoS detection, grouping of threat actors, reverse shell detection, and many more..:
https://blog.foxio.io/ja4-network-fingerprinting-9376fe9ca637
FoxIO Blog
JA4+ Network Fingerprinting
TL;DR
Recon-Like-A-Boss.pdf
1.3 MB
Recon Like A Boss
Presentation. Agenda:
🔹 Increase Your Attack Area
🔹 Determine Technologies used by Website.
🔹 Amazon Web Service (AWS) Recon & Hacking
🔹 Github Recon
🔹 Content Discovery
Presentation. Agenda:
Please open Telegram to view this post
VIEW IN TELEGRAM
Дофаминовая яма. Как мы губим свой мозг
-- https://www.youtube.com/watch?v=zW1jpm7tJuA
(Dopamine hole. How we destroy our brain)
-- https://www.youtube.com/watch?v=zW1jpm7tJuA
(Dopamine hole. How we destroy our brain)
YouTube
Дофаминовая яма. Как мы губим свой мозг
Практические программы, разработанные на базе современных исследований и открытий в области нейронаук: academy.kurpatov.ru
Постройте счастливую, наполненную смыслом жизнь, достигайте большего в карьере и бизнесе!
_______________________________________…
Постройте счастливую, наполненную смыслом жизнь, достигайте большего в карьере и бизнесе!
_______________________________________…
GPU.zip: On the Side-Channel Implications ofHardware-Based Graphical Data Compression
https://www.hertzbleed.com/gpu.zip/GPU-zip.pdf