Bug Bounty Tool:
Misconfig Mapper is a tool by @intigriti that helps you uncover security misconfigurations on popular third-party services:
https://t.co/83vN9TmUUs
UPDATE !!
🚧 WAFs blocking your payloads? Not anymore.
🚀 NextRce v2.2 is out! Now featuring a specialized UTF-16LE Encoding Engine to bypass WAF signatures while exploiting CVE-2025-55182.
👻 The "Ghost Mode" encodes malicious JSON payloads to evade filters, but the Next.js server decodes and executes them perfectly.
github ; https://t.co/6OXSyNH1dl
#DevTools #python #bugbountytip #bugbountytips #InfoSec #recon #nextjs #React2Shell
Dump DPAPI credentials via WinRM with NetExec🔥
A lot of sensitive data is stored in Windows DPAPI, such as the login credentials used in scheduled tasks.
Thanks to tiagomanunes this is now also possible via WinRM!
GoDefender: Anti Virtulization, Anti Debugging, AntiVM, Anti Virtual Machine, Anti Debug, Anti Sandboxie, Anti Sandbox, VM Detect package https://t.co/wUGsmsaCiR #BlueTeam
Dumping juicy secrets from SAM/LSA is always nice right?
I've added an implementation for the --sam and --lsa flags to the MSSQL protocol of NetExec🚀
No need for manual registry hive extraction anymore!