To allow using @pdiscoveryio's templates for @pdnuclei in offline environment during your #Pentesting assessments, check the package collection at https://t.co/znS8N8gHOO
New toys in the box for #Pentesting and #assessments:
- ggshield https://t.co/TDg2pP6tjE
- xsubfind3r https://t.co/BaaFpSW3kz
- joincap by @assafmo https://t.co/U2Lq1XfiC3
- xcrawl3r by @RealHueristiq https://t.co/sZcYhBSu4n
I'm all for create a hash of a string (with commas, semicolons, SQL statements, XSS, etc.) yourself, add a salt and use this output as the actual password. Just in case somebody breaks the hash or the app doesn't handle the credentials properly 😋
openrisk (https://t.co/ppyYRSiu5F), another nifty tool of @pdiscoveryio, will soon be present in Nixpkgs/@nixos_org. Will be added to @NixSecTools as well.
New stuff for @NixSecTools:
- octosuite https://t.co/n1HFiPK5HR
- yaralyzer https://t.co/LlRYXAtvUl by @dwisiswant0
- shellclear https://t.co/Z9BYQwHFuI