🚀 New: an experimental MCP Server for IVRE — now your AI agent can query your network intelligence.
Just ingest your recon tools results (Masscan, Nap, Nuclei, etc.) & ask natural language questions.
Very experimental, feedback welcome!
https://t.co/PofC091zvI
🎉 New feature in IVRE: 🌐 RIR (regional Internet registry) lookup.
>_ CLI & 🐍 Python only for now, still a bit experimental 🚧.
Download and locally query data from RIR (think "local whois for IP addresses, that you can reverse query").
Get the dev version from Github or Docker
🎄 Jour 5 du Calendrier de l'Avent des 🐻
IVRE : un framework Open Source pour la reconnaissance réseau. Il s'appuie sur des outils reconnus (Nmap, Masscan, ZGrab2, ZDNS et Zeek) pour collecter des données, les stocke dans une base de données et fournit des outils pour les analyser.
🚨 IVRE now supports Citrix NetScaler Triage!
CVE-2025-7775 (RCE, CVSS 9.2) is being exploited in the wild. It's time to monitor those instances.
OSS to the rescue! 🛡️
https://t.co/oHHHEDRNHp
#CyberSecurity#CVE20257775#NetScaler#Infosec
If you're looking for a way to find Ivanti gateways (for CVE-2025-0282... or to be ready for the next ones), and have collected the HTTP headers on a GET / (via @nmap http-headers script, or any other supported tool) you can use this filter : httphdr:location:/^\/dana-na\//
Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, build your taylor-made EASM tool https://t.co/wRyt0MrNkJ
Current status:
I've made a ton of changes to masscan's --banners option, and integrated a bunch of changes from others, primarily @ivrerocks. I'd be interested in any bug reports if you want to test them out.
@snovvcrash Hey! Thanks for the kind words! However please note that some of the patches included in the fork won't be useful unless you import the results in IVRE, as it is the intent of this repository.
🥳 We're pleased to announce the first group of winners for the 2023 Google Open Source Peer Bonus Program!
This cycle received a record-breaking 255 nominations. Huge congratulations to the 203 winners.
See the winners → https://t.co/Xe7fgDvV7D
HackerNews: "Researchers uncover new BGP flaw in popular routing software"
One way to help prevent these kind of denial-of-service exploits is to make sure your perimeter is secure to trusted sources. I built a tool to perform such perimeter scanning here
https://t.co/OGqWBkn7st
Is Docker saying that the OSS openfaas organisation on Docker Hub will get deleted if we don't sign up for a paid plan?
What about Prometheus, and all the other numerous OSS orgs on the Docker Hub?
cc @justincormack
If you use @obsdmd for your #pentest / #redteam or #threatintel notes, you might be interested in the IVRE community plugin for #Obsidian, that uses data from IVRE to enrich your notes.
Get it from Obsidian (in community plugins, look for "ivre") or see https://t.co/7LTU2VKmDL
Thanks to Tesseract OCR, IVRE has been doing this for almost 8 years now! And thanks to MongoDB, you can use the extracted text in your queries efficiently. That's how powerful and magic opensource can be! #OSS