What if a host is vulnerable to NTLM Reflection but NOT domain-joined?
Spoiler: you can still get SYSTEM under the right conditions.
Read @irabva full breakdown:
https://t.co/2PfL1Upn5V
APKTool MCP Server – AI-Powered Android Reverse Engineering with LLMs 🤖💀
Turn APK reverse engineering into a conversational workflow. APKTool MCP Server integrates Apktool with the Model Context Protocol (MCP), allowing AI assistants like Claude to decode APKs, inspect manifests, analyze Smali code, detect vulnerabilities, modify resources, and even patch Android apps using natural language prompts. A must-have toolkit for Android pentesters, malware analysts, and reverse engineers.
🔗 https://t.co/IYiZNaeX8y
#Android #ReverseEngineering #MCP #APKTool #CyberSecurity
Proteus - Rust C2 agent for Mythic that produces polymorphic shellcode: per-build function shuffle + ChaCha20-encrypted data sections; no_std/no_main agent, PEB-walked APIs, WinHTTP comms - nice work from ZZ0R0 https://t.co/77LtObmp2p
ALGUIEN CONSTRUYO UNA HERRAMIENTA PARA ROBAR EL ESTILO DE PROGRAMACION DE CUALQUIER DESARROLLADOR
el creador simplemente se aburrio de sus proyectos anteriores y decidio armar esto
literalmente puedes extraer la firma personal de los mejores programadores del mundo
solo necesitas escanear su perfil publico para absorber su forma de trabajar
la originalidad tecnica acaba de convertirse en algo que cualquiera puede descargar e instalar gratis
uphiago/recon-skills: 144 offensive security skills for recon and pentest. Field-validated techniques from 600+ targets across 45+ sectors. Updated with web enum, email sec, google dorks, cloud IAM, WordPress full compromise ch... https://t.co/pUvq61RPyT
Following on our series: An Introduction to Modern Malware Development for Red Teams, today's episode is all about Portable Executables.
In this blog post, I walk you through what are PEs, what known file types are, in fact, PEs, what is their structure and what are the detection opportunities security products leverage to stop your tooling from executing even before it gets a chance to start.
Up next we will be diving into Process and Threads so we can set the stage for process injection techniques. Stay tune.
You can read the article here: https://t.co/ORKHtl4Uww
Keep hacking,
Sp1d3rM_*^!
I was told I need to pay someone else to prove that I know what I'm talking about..... so what if I just create a new community certification that is FREE.... that anyone can register for and then answer a set of multiple choice questions.....
because that's what most certifications are...... a memory test then some multiple choice questions.
Onelogon: Taking over Active Directory Accounts via Netlogon🔑
We analyzed Netlogon, bypassed the Zerologon patch, resulting in a full auth bypass. An attacker can leverage this to compromise computer accounts, or even the entire AD. Non-standard config must be present tho 🧵
🚨 New critical improper access control vulnerability tagged CVE-2026-48907, affecting Widget Factory Joomla Content Editor is seeing active exploitation in the wild as reported by CISA.
Vulnerability detection script available below:
https://t.co/SQDfuU0RMv
AI-Powered Reverse Engineering Plugin for IDA Pro 9+.
One-click explanations understand weird control flow instantly, Smart auto-renames suggestions, vulnerability hints, semantic graphs, RAG search, and docs.
Game-changer for RE & malware analysis, CTF people
- https://t.co/2bSI0k1dkD
Kernel-Exploit-Dojo 📍
Curated archive of 100+ Linux kernel exploitation CTF challenges, organized by bug class, exploitation primitive, final technique, difficulty, and solve count.
The goal is to organize practical kernel pwn techniques such as UAF, heap spraying, pipe_buffer abuse, msg_msg, modprobe_path overwrite, and cred overwrite.
Resource: https://t.co/h1F2CD70Oc
I'm currently developing a C2 web project based on aspx and php files. I'm at a loss as to what else I need to add. If you have any suggestions, please leave them in the comments.
You can now clone any voice on a 4GB GPU & CPU😗
Open-source LuxTTS,
It clones voices from 3 seconds of audio at 150x realtime speed. Fits in 1GB VRAM.
Faster than realtime even on CPU.
48khz output vs industry standard 24khz
Clone any voice locally Works on GPU and CPU
- https://t.co/SGRNBEo06p
‼️🚨 Unauthenticated attackers are gaining SYSTEM on domain controllers with crafted packets.
The vulnerability being exploited is CVE-2026-41089, a CVSS 9.8 hole in Windows Netlogon, and exploitation in the wild has been confirmed.
A patch has existed since May 12. Every DC still behind is not just vulnerable, but according to the Centre for Cybersecurity Belgium are also actively being pwnd.