PoCs for Apache Tomcat Unauth RCE (CVE-2026-34486) and Apache httpd Pre-auth RCE (CVE-2026-23918) are now public on our Github.
Tomcat exploit is fully reliable. httpd chain works in a controlled lab setup with a known info leak.
https://t.co/D3dg5iTuwP
https://t.co/2zyr1ds4Mo
Claude Code with agent, autonomously hacked Subway Surfers, and printed millions of coins.
A rooted Android phone... and it turned Subway Surfers into a money printer.
From 4 coins to 2,000,000+ coins in two runs. autonomous loop, analyzed, and pwned a Unity game in one session, intercepts traffic, bypasses SSL pinning, and even reverse-engineers offline games.
The full Setup: Rooted emulator via rootAVD + Magisk + AlwaysTrustUserCerts.
Toolchain: UI Automator, mitmproxy traffic capture, Frida bypass scripts, APK static analysis.
The agent loops by itself:
- Dump screen & UI elements
- Tap/swipe via ADB
- Analyze traffic or binary
- Decide next move without a human.
It played the game, reverse-engineered the Unity IL2CPP binary, hooked Frida on SafeInt anti-cheat, and silently multiplied currency.
Subway Surfers (com.kiloo.subwaysurf) Almost zero network traffic to agent pivots.
Detects Unity IL2CPP parses global-metadata.dat
Finds WalletModel, RunSessionData, AddCoins, and SetCurrencySilently.
Then hooks with Frida and multiplies rewards ×100+.
Result: 4 coins to over 2 million.
SafeInt anti-cheat? Bypassed Stealth mode
This is the future of mobile pentesting?
credit via: @skshadan_
- https://t.co/TtQX9szWjH
PolyEngine - an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and AV heuristics through a layered stack of in-memory execution and obfuscation techniques. https://t.co/yvrgPeQt0q
TLDSweep: A domain intelligence OSINT tool that sweeps 800+ TLDs to find registered variants of a domain, flag newly registered lookalikes, and alert via Telegram and Discord.
GitHub: https://t.co/dC73yKedJM
apimspray - a specialized Entra ID Passwordspraying Toolkit designed for authorized security research and Red Teaming. It utilizes Azure API Management (APIM) gateways as a distributed, rotating proxy layer for IP Rotating https://t.co/JWEgcJ8Unl
DllSpy — map every input surface in a .NET assembly without running it (HTTP, SignalR, gRPC, WCF, Razor Pages, Azure Functions, OData, Blazor) https://t.co/wnvYwj5NMc