Instead of Subfinder, try Subfaster.
It’s faster than Subfinder and uses keyless sources like thc, submd, crt, shodanct, rapiddns, hackertarget, and sitedossier.
It also has an option to resolve subdomains and keep only the live ones, so you don’t need to run httpx separately just for resolving. ⚡
https://t.co/RO1QFcLD5L
Use https://t.co/bonasCLhpZ to find subdomains. You get every subdomain on file, along with the date each one was first seen. And it’s insanely fast, results come back within seconds. ⚡
https://t.co/JrA9LlJeec
https://t.co/nibgzFgTFL
We have released a detailed research of our time focusing on Unifi Applications.
The research include Several SQL Injections, OS command Injection, and Path Traversal that awarded us over $42,000.
Hope you enjoy reading it !
https://t.co/0mWiWGsg1g
Comunicado oficial NAVAJA NEGRA
Querida comunidad,
Con enorme tristeza queremos comunicar que este año no será posible celebrar una nueva edición del Congreso Navaja Negra.
Es una decisión extremadamente dolorosa para quienes llevamos años trabajando con la ilusión de volver a reunir a nuestra comunidad año tras año. Durante todo este tiempo hemos dedicado incontables horas de trabajo para sacar adelante el Congreso, buscando soluciones hasta el último momento. Sin embargo, las circunstancias actuales hacen imposible organizar un evento con las garantías y el nivel de calidad que siempre han caracterizado a Navaja Negra.
La situación que ha desembocado en esta decisión comenzó cuando la actual Junta Directiva tuvo conocimiento de que la marca Navaja Negra había sido registrada de forma fraudulenta. Este hecho, que forma parte de los registros públicos, supuso el inicio de una serie de acontecimientos que han afectado gravemente al proyecto.
Desde entonces, la Asociación considera que se han producido actuaciones que han dificultado e impedido el normal desarrollo de los trabajos de organización del Congreso, comprometiendo su viabilidad y perjudicando un proyecto construido durante más de una década por decenas de personas.
Por respeto a los procedimientos que actualmente están en marcha, no podemos hacer pública toda la información ni la documentación de la que dispone la Asociación. Lo haremos cuando sea posible y sin perjudicar las actuaciones que puedan derivarse de estos hechos. Nuestro compromiso con la comunidad es absoluto: cuando llegue el momento, ofreceremos una explicación completa, documentada y transparente de todo lo sucedido.
Asimismo, queremos informar de que la Asociación ejercerá todas las acciones legales que resulten oportunas para proteger sus derechos, defender el proyecto Navaja Negra y exigir las responsabilidades que, en su caso, correspondan.
Lamentamos profundamente que sean precisamente los asistentes, ponentes, patrocinadores, colaboradores y voluntarios quienes sufran las consecuencias de esta situación. Sabemos el esfuerzo que supone para muchos de vosotros formar parte de Navaja Negra, y precisamente por respeto a esa confianza creemos que debíamos explicar lo ocurrido con honestidad.
También queremos dejar claro algo que consideramos importante: Navaja Negra nunca ha sido el proyecto de una sola persona. Navaja Negra nació, creció y se consolidó gracias al trabajo desinteresado de decenas de organizadores, voluntarios, ponentes, patrocinadores y asistentes que, edición tras edición, han convertido este Congreso en un referente nacional. Ese legado pertenece a toda la comunidad y no al esfuerzo individual de nadie.
Nuestro compromiso sigue siendo el mismo que el primer día: trabajar para proteger a la Asociación Navaja Negra y hacer todo lo posible para que el Congreso Navaja Negra pueda volver a celebrarse en el futuro.
Gracias por vuestra confianza, vuestro apoyo y vuestra paciencia.
Seguiremos informando cuando podamos hacerlo con la transparencia y el rigor que merecéis.
Asociación Navaja Negra
esto es un MCP server que le da a tu agente de IA un navegador real, no un headless que cualquier web detecta a la legua.
97 herramientas, desde clonar un elemento pixel a pixel hasta interceptar y modificar tráfico de red en tiempo real con hooks que la propia IA escribe.
vas a flipar con lo que se puede automatizar cuando el navegador no delata que es un bot.
Tools like Snaffler are great, but crawling SMB shares creates a telemetry nightmare. You instantly light up the SIEM with :
- 5140 / 5145 (Network Share Access)
- 4656 / 4663 (Object & File Access)
So I built Invoke-WindowsSearch to query the native Windows Search DB (OLE DB) directly via WinRM/RPC, It extracts the targets without touching the actual files, completely bypassing the 4663 and 5145 detection footprint.
Trade-offs: Requires the WSearch service (disabled by default on Server OS) and lacks complex regex capabilities. Know your environment before execution.
#RedTeam #ActiveDirectory #OPSEC #ThreatHunting #PowerShell
Stop burning RDP persistence with 4732 alerts. Bypass the "Remote Desktop Users" group entirely.
GUI access only requires:
- SeRemoteInteractiveLogonRight (Inject SID via secedit)
- RDP-Tcp listener permissions (Modify CIM class)
OPSEC: Trades 4732 for 4704. Most SOCs don't tune 4704 with the same aggression.
h/t @Cptjesus for the concept.
I just wrote a tutorial explaining how to combine Adaptix C2 with MacroPack and ShellcodePack! This provides multiple initial access and EDR evasion options to Adaptix C2 users.
Tutorial includes: LNK, CLickOnce, DLL Sideloading, Exe, HTA, etc!
#redteam
https://t.co/cqK7uBCK1z
PsMapExec can be used for pentesting while running fully in memory with the help of Powershell
https://t.co/oDlEykx1dy
@three_cube@_aircorridor#pentestings
Releasing PrivHound — Bloodhound collector to model Windows local Privilege Escalation as a graph.
Still early — bugs and PRs welcome.
https://t.co/9MkcK3QdgE
Mapea la superficie de ataque de cualquier dominio con xurlfind3r 🕵️♂️. Esta herramienta OSINT descubre URLs de forma pasiva, ideal para tus fases de reconocimiento en pentesting y bug bounty. 🛡️
🕵️♂️🔗🛡️ #OSINT#HackingEtico#Recon#BugBounty#ciberseguridad#redteaming
Most bug hunters focus on subdomains… but real attack surface often hides in raw IP ranges.
Angry IP Scanner is a fast, open-source network scanner that helps you discover live hosts, exposed services, and forgotten infrastructure across CIDR scopes — perfect for quick recon before deeper testing.
Explore the official site → https://t.co/mavdevoJma
Download it here → https://t.co/IaZBrSIIHB
Check the official GitHub → https://t.co/hNWvlH2mn9
#BugBounty #Recon #CyberSecurity #Pentesting #InfoSec #AttackSurface #SecurityTools #EthicalHacking #BugHunter
Burp AI Agent is now public
MCP-powered AI agent (and server) living inside Burp. Instead of a chat next to it, extends itself: tools, actions, live traffic and findings. AIO to reduce context switching while testing
Repo: https://t.co/tSIHsmY4wE
Docs: https://t.co/khQnwiJ2ZE
I’ve added here
https://t.co/HoZmigQxkT
PDF file for XSS, it can bypass any waf
for who looking for Stored XSS , and it can be changed to blind if you want to
Simply I encoded the payload as ASCII hex
You can edit the payload over notepad++
#bugbountytips#bugbountytip #bugbounty
Struggling to analyze JavaScript files manually in Burp Suite? 😓
JSAnalyzer is a new Burp Suite extension by @_jensec that automatically extracts API endpoints, secrets, URLs, and sensitive files from JS responses. It also performs smart noise filtering to reduce false positives and prevent returning random, verbose strings! 🤠
Check it out! 👇
🔗 https://t.co/iaRhos9l7F