Crawling MSSQL databases with NetExec: mssql_dumper💾
The new mssql_dumper module, created by @JAX_Z90, enables you to crawl MSSQL databases for a predefined set of keywords, including classic credential phrases, or to search using your own regular expression/keyword list.
We added a C2 interface and it’s looking solid. It can load CNA scripts similar to Cobalt Strike, but since PickleC2 is written in Python, we use a Python wrapper for them. Still a pretty nice setup.
#redteam
One of my less known-about tools is called hakoriginfinder, but it's really impactful. It finds origin servers behind WAFs using a technique that I haven't seen anywhere else (at least, not at scale).
It's a weird one because, unlike my other tools, the messages I get about this tool only come from really top hackers.
Check it: https://t.co/gUfjYpYFmM
Thanks to Azox, it is now possible to use psexecsvc (https://t.co/GcOcNJGraD) through a socks proxy like ntlmrelayx allowing executing system commands via a trusted service, as NT System, and evading EDR's. Also thanks to @HackAndDo for his fixes :D
Burp-AI-Agent v0.1.3:
- configurable Ollama timeout (30–3600s, default 120s)
- new bottom settings panel with tabs. Settings UI moves to a bottom split panel with dedicated tabs, wider tool layout, panel can collapse to a smaller minimum height
https://t.co/sOIljwMijn
Something I find invigorating:
Langchain and CrewAI were first to agents, and now they're one of many.
OpenAI was the only player for a while there and people though competing was impossible.
Now they're just a player.
You are not behind.
Tomorrow is Day 0 for everyone.
Port scanners ranked after 15+ years:
Nmap → depth
Naabu → simplicity
RustScan → speed
Pro tip: naabu -nmap-cli gives you best of both
🔗 https://t.co/8qHOyCzgAg | https://t.co/LFDCFb3Rgg | https://t.co/d56KN90GG9
**NEW** BHIS | Blog
Where in your organization can you see automated AD objects being beneficial?
Deceptive-Auditing: An Active Directory Honeypots Tool
by: Sean Minnick
Published: 1/7/2026
Learn more: https://t.co/RslxoLGsfx
"Many web application firewalls (WAFs) can be bypassed by simply sending large amounts of extra data in the request body along with your payload."
Read more: https://t.co/sM7APUc3mw
By: @buxdabomb
Collaborator: @su_rabb1t
Published: 10/15/2025
Created some 2026 rules for #hashcat with ChatGPT. Manually corrected the prepend rules and removed some cruft. Contains 74 rules.
https://t.co/NraJYpTTiM
NEW: You can now enable the Microsoft Defender for Office (Email Security) AIR feature to automatically remove malicious messages based on multiple similar attributes here:
XDR Portal: https://t.co/PY4LxdlhQz
Docs: https://t.co/zXEIFI2SE6
#NorthKorea#APT37
The key threat is that the North Korean hacking group APT37 abuses legitimate HWP files and DLL side-loading techniques to evade security detection and stealthily execute malicious DLLs.
https://t.co/iZ7eRcdHQr