SSHamble: New Open-Source Tool Targets SSH Protocol Flaws https://gbhackers.com/sshamble-new-open-source-tool/ #CyberSecurityNews #SecurityTools #cybersecurity #Tools
SSHamble: New Open-Source Tool Targets SSH Protocol Flaws https://gbhackers.com/sshamble-new-open-source-tool/ #CyberSecurityNews #SecurityTools #cybersecurity #Tools
ChromeAlone – A Browser Based Cobalt Strike Like C2 Tool That Turns Chrome Into a Hacker’s Playground https://gbhackers.com/chromealone/ #CyberSecurityNews #SecurityTools #Chrome
CISA Releases Thorium: Open-Source Malware and Forensics Tool Now Public https://gbhackers.com/cisa-releases-thorium-open-source-malware-and-forensics-tool/ #CyberSecurityNews #SecurityTools #cybersecurity #Vulnerability #Malware #Tools
Microsoft Patch Tuesday, July 2025 Edition https://krebsonsecurity.com/2025/07/microsoft-patch-tuesday-july-2025-edition/ #MicrosoftPatchTuesdayJuly2025Edition #MicrosoftConfigurationManager #MicrosoftDefenderSmartScreen #LatestWarnings #SecurityTools #ImmersiveLabs #SQLServer2012 #SQLServer2016 #CVE202547178 #CVE202547981 #CVE202549695 #CVE202549696 #CVE202549697 #CVE202549702 #CVE202549719 #CVE202549740 #TimetoPatch #AdamBarnett #MikeWalters #BenHopkins #Action1 #Office #Rapid7 #adobe
Senator Chides FBI for Weak Advice on Mobile Security https://krebsonsecurity.com/2025/06/senator-chides-fbi-for-weak-advice-on-mobile-security/ #InternationalComputerScienceInstitute #FederalBureauofInvestigation #LorenzoFrancheschiBicchierai #EmeritaMelissaHortman #TheWallStreetJournal #ALittleSunshine #LatestWarnings #TheComingStorm #NicholasWeaver #SecurityTools #CVE202543200 #LockdownMode #TimetoPatch #BillMarczak #JohnHoffman #SenRonWyden #CitizenLab #SusieWiles #KashPatel #google #apple
Patch Tuesday, June 2025 Edition https://krebsonsecurity.com/2025/06/patch-tuesday-june-2025-edition/ #WindowsServerMessageBlock #sansinternetstormcenter #PatchTuesdayJune2025 #ExperienceManager #mozillafirefox #SecurityTools #AcrobatReader #BadSuccessor #CVE202533053 #CVE202533073 #GoogleChrome #TimetoPatch #AdamBarnett #AlexVovk #SethHoyt #Action1 #Automox #Akamai #Rapid7 #WebDAV
For students interested in programming, you can absolutely study C and C++ with BashCore and BashCoreX, thanks to the included gcc and g++ compilers.
Plus, you'll find powerful tools like git, vim, and emacs for development. It's a robust environment for learning and security exploration!
This is about to happen! Join us!
How To Detect And Mitigate Non-Human Identity And Crytographic Vulnerabilities — An ITSPmagazine Webinar With SandboxAQ
Thursday, May 15, 2025 | 1:00 PM 2:00 PM EST
Unmanaged cryptographic assets and non-human identities have left security teams blind to critical risks. These gaps have fueled vulnerabilities, breaches, compliance challenges, and operational drag across enterprise environments.
Join us to see how #AQtiveGuard transforms this landscape.
More than just visibility, AQtive Guard unifies your non-human identities and cryptographic assets into a single inventory to deliver end-to-end visibility, deeper risk analysis, and streamlined compliance in a single pane of glass—with automated discovery, real-time threat detection, and root cause analysis powered by their unique LQM.
Seamlessly integrated into your existing stack, it’s the AI-driven SaaS platform built to secure today’s systems—and tomorrow’s.
By attending, you will get to:
Discover how to gain unified visibility into cryptographic assets and non-human identities —including API keys, certificates and service accounts—in cloud environments
Explore how AQtive Guard empowers security teams with automated discovery, threat detection, and root cause analysis—enabling faster remediation, reduced risk, and stronger compliance without disrupting existing workflows.
Learn how to future-proof your security posture, with a platform designed for AI Security Operations, Post-Quantum Cryptography readiness, and seamless integration into your existing security stack.
PANELISTS
Marc Manzano
General Manager of Cybersecurity, SandboxAQ
MODERATORS
Sean Martin, CISSP Co-Founder, ITSPmagazine
Marco Ciappelli Co-Founder, ITSPmagazine
Can’t attend the live webinar? All registrants get exclusive access with a link to rewatch the recording.
Register To Attend: https://www.crowdcast.io/c/how-to-detect-and-mitigate-non-human-identity-and-crytographic-vulnerabilities-an-itspmagazine-webinar-with-sandboxaq
#cybersecurity, #cryptography, #AIsecurity, #infosec, #webinar, #securitytools, #threatdetection, #cloudsecurity, #sandboxAQ, #ITSPmagazine #tech #technology #quantum
Patch Tuesday, April 2025 Edition – Source: krebsonsecurity.com https://ciso2ciso.com/patch-tuesday-april-2025-edition-source-krebsonsecurity-com/ #WindowsRemoteDesktopServices #rssfeedpostgeneratorecho #CommonLogFileSystem #CyberSecurityNews #KrebsonSecurity #KrebsOnSecurity #CVE-2025-26671 #CVE-2025-27480 #CVE-2025-27482 #CVE-2025-29824 #LatestWarnings #TheComingStorm #SecurityTools #SatnamNarang #ChrisGoettl #TimetoPatch #Microsoft #Windows #Ivanti #CLFS
Patch Tuesday, April 2025 Edition https://krebsonsecurity.com/2025/04/patch-tuesday-april-2025-edition/ #WindowsRemoteDesktopServices #CommonLogFileSystem #LatestWarnings #TheComingStorm #SecurityTools #CVE202526671 #CVE202527480 #CVE202527482 #CVE202529824 #SatnamNarang #TimetoPatch #ChrisGoettl #microsoft #windows #Ivanti #CLFS
Microsoft: 6 Zero-Days in March 2025 Patch Tuesday https://krebsonsecurity.com/2025/03/microsoft-6-zero-days-in-march-2025-patch-tuesday/ #SecurityTools #FilipJurčacko #CVE202524983 #CVE202524984 #CVE202524985 #CVE202524991 #CVE202524993 #CVE202526633 #TimetoPatch #AdamBarnett #Rapid7 #ESET
Ronin 2.1.1 and other patch versions have been released!
https://ronin-rb.dev/blog/2025/02/15/ronin-2-1-1-and-more-released.html
#SecureCoding: Risiken einschätzen mit dem #ExploitPredictionScoringSystem | Developer https://www.heise.de/hintergrund/Secure-Coding-Risiken-einschaetzen-mit-dem-Exploit-Prediction-Scoring-System-10252792.html #ITSecurity #Cybersecurity #VulnerabilityManagement #ExploitPrediction #EPSS #CVSS #SSVC #CWE #RiskManagement #ThreatIntelligence #MachineLearning #DataDrivenSecurity #PatchManagement #SecurityBestPractices #ZeroDay #VulnerabilityAssessment #SecurityTools #InfoSec
Security Scanner for Web Applications
Privacy-First Security Analysis
Built by Developers, for Developers
Try it now: https://webscan.dev
Garak – An Open Source LLM Vulnerability Scanner for AI Red-Teaming https://gbhackers.com/garak/ #CyberSecurityNews #SecurityTools #Vulnerability
Araneida Scanner – Hackers Using Cracked Version Of Acunetix Vulnerability Scanner https://gbhackers.com/araneida-scanner/ #CyberSecurityNews #SecurityTools #cybersecurity #Tools
A bunch of (100+) useful open source (mainly) security tools and products:
Got the main ronin repo (main CLI) down to just 22 issues.
https://github.com/ronin-rb/ronin/issues
I decided to finally get around to slimming down my EDC locksport kit. I have a smaller purse now that I use more often, so it was time to lighten the load a bit.
My EDC now contains the following:
Pin tumbler and wafer tools:
- 2 prybar tensioners (medium and heavy)
- 2 double-sided tension wrenches made from windshield wiper inserts (one medium, one small)
- 1 stout medium hook pick
- 1 short hook pick
- 1 deep hook pick
- 2 thin picks (one medium and one very deep hook)
- 1 homemade Medeco pick (also good for Everests)
- 3 wave rakes (2 triple hump and one double hump with different spacing)
Other tools:
- 1 latch/door tool
- 1 probe/knife tool
- 1 homemade-ish universal handcuff key
- 1 tubular tensioning tool
- 3 warded lock picks (small and large double-sided, and large single-sided)
- 1 single-sided jiggler (desk key)
- 1 Leatherman Skeletool (pliers, knife, screwdrivers, bottle opener)
- 1 black hair tie
The kit measures 12.5 x 4.5 x 0.5 cm and weighs 68.6 g.
The Skeletool measures 10.5 x 3 x 1.5 cm and weighs 147 g.
Bonus notes:
- the thin medium hook makes a good toothpick
- almost any of these will open a TSA approved lock
- when I was living in London, I carried more thin picks for euro keyways
- the latch tool and the Skeletool get the most use
- the desk key opens every office desk, cabinet, and mailbox I've come across (basically almost any wafer lock with a slightly open keyway)
- my secret weapon against Medeco locks is that double-hump wave rake
- that stout medium hook gets more use than almost all the other hooks combined
- always carry a hair tie