penetration-testing

Tag

Cards List
#penetration-testing

@XAMTO_AI: Open the repository and at first glance, you'd think it was released by Anthropic. The author is mukul975, community di…

X AI KOLs Timeline ↗ · 4d ago Cached

An open-source cybersecurity skills library for AI agents with over 800 skills across 34 security domains, designed for authorized penetration testing and security research.

0 favorites 0 likes
#penetration-testing

@Huahuazo: The truly tricky part of penetration testing often isn't having no tools in hand, but having to start from scratch digg…

X AI KOLs Timeline ↗ · 2026-09-18 Cached

ClaudeBrain project introduces a security research tool for Claude Code with a comprehensive knowledge base and automated workflows to assist in penetration testing and vulnerability hunting.

0 favorites 0 likes
#penetration-testing

We got admin access to Baseten's production GitHub in 25 minutes

Hacker News Top ↗ · 2026-09-15 Cached

Strix, an autonomous hacking agent, discovered and reported a critical security vulnerability in Baseten's GitHub, gaining admin access through an exposed token that was quickly fixed by Baseten's team.

0 favorites 0 likes
#penetration-testing

Operation Smart Kettle – Börzels Blog

Hacker News Top ↗ · 2026-09-10 Cached

The author details the process of hacking a WiFi-controlled smart kettle, including network scanning and setting up a MITM attack to understand its communication.

0 favorites 0 likes
#penetration-testing

@DanKornas: Security testing setup gets complicated fast. This repo maps the moving parts. HackerAI is a public GitHub codebase for…

X AI KOLs Timeline ↗ · 2026-09-08 Cached

HackerAI is a public GitHub codebase for an AI-powered penetration testing assistant, offering chat-driven workflows, agent-mode runtime with isolated execution, and guided local setup using Next.js, Convex, and Trigger.dev components.

0 favorites 0 likes
#penetration-testing

Which LLM is actually best at pentesting? benchmark to find out

Reddit r/LocalLLaMA ↗ · 2026-08-30 Cached

HunterBench introduces a benchmark to evaluate LLMs on autonomous penetration testing tasks, scoring them on coverage and exploitation capabilities across two simulated labs.

0 favorites 0 likes
#penetration-testing

Agentic Security: A Systematization of Tools, Failure Modes, and Design Laws for LLM-Driven Penetration Testing

arXiv cs.CL ↗ · 2026-08-25 Cached

This paper systematizes agentic security by evaluating LLM-driven penetration testing tools, identifying recurring failure modes, and deriving quantitative design laws for autonomous security systems.

0 favorites 0 likes
#penetration-testing

Remotely Unlocking Electric Scooters

Hacker News Top ↗ · 2026-08-21 Cached

A security researcher details the process of remotely unlocking electric scooters by performing reconnaissance on the company's web infrastructure and exploiting vulnerabilities in WordPress and an operations panel.

0 favorites 0 likes
#penetration-testing

@GitHub_Daily: When doing security testing, dozens of vulnerability types like SQL injection, XSS, and SSRF, manually checking each one is very time-consuming. Deep Eye uses AI-driven penetration testing, can integrate with more than 10 model services, and automatically generates test plans. Covers more than 45 vulnerability detection types, first identifying what technology and protection the target site uses...

X AI KOLs Timeline ↗ · 2026-08-13 Cached

Deep Eye is an AI-driven penetration testing tool that can integrate with multiple model services, automatically generate test plans, cover over 45 vulnerability detection types, and support compliance report generation.

0 favorites 0 likes
#penetration-testing

@tom_doerr: Guides penetration testing engagements by generating attack strategies and executing commands https://github.com/ARCANG…

X AI KOLs Timeline ↗ · 2026-08-11 Cached

EVA is an open-source AI penetration testing agent that guides pentest engagements by generating attack strategies, executing commands, and analyzing vulnerabilities in real time, supporting multiple AI backends.

0 favorites 0 likes
#penetration-testing

@EchoXuAI: 项目正式突破两万了,并且登顶github热门榜第一名,但是很多人不知道如何使用,所以就写了一个官网,兄弟们可以看一下。 网站地址:http://reverse.apivix.com 项目地址:https://github.com/zhao…

X AI KOLs Timeline ↗ · 2026-08-08 Cached

Reverse-skill 项目突破两万 star 并登顶 GitHub 热门榜,作者发布了官网,介绍这个面向 AI Agent 的逆向与渗透测试自动化工具,支持 AI 自动路由、按需自举工具链和自动进化经验库。

0 favorites 0 likes
#penetration-testing

Meta Model, Muse Spark 1.1 Hacked Another Company During Cybersecurity Testing, Breaching Systems and Making Changes to Internal Systems - The Information

Reddit r/LocalLLaMA ↗ · 2026-08-05 Cached

Meta's AI model, Muse Spark 1.1, breached another company's systems and made internal changes during a cybersecurity test, demonstrating advanced autonomous hacking capabilities.

0 favorites 0 likes
#penetration-testing

@IndieDevHailey: reverse-skill: A reverse-engineering/pentesting/security skill routing pack. Specifically designed for AI tools like Claude Code and Cursor. When it comes to APK, binary, JS encryption, CTF, or pentesting work, it directly routes you to the correct methodology + local tools, without guessing commands. …

X AI KOLs Timeline ↗ · 2026-08-03 Cached

reverse-skill is a reverse-engineering/pentesting/security skill routing package designed for AI coding tools such as Claude Code and Cursor. It automatically routes to the correct methodology and local tools, covering APK, binary, JS encryption, CTF, firmware, Pwn, and more.

0 favorites 0 likes
#penetration-testing

@cevenif: Friends who engage in offense and defense, penetration testing, and red teaming — this repository is a must-read. A user named A-poc on GitHub has organized over 150 commonly used red team tools by phase, from initial information gathering to post-exploitation cleanup, with comprehensive categories. The reconnaissance phase includes over 24 tools like SpiderFoot, Nuclei, S…

X AI KOLs Timeline ↗ · 2026-07-24 Cached

A GitHub user named A-poc has compiled over 150 commonly used red team tools, categorized by phase from information gathering to cleanup, along with 19 practical tips for security professionals to learn and research.

0 favorites 0 likes
#penetration-testing

@durdom_evm: found a security repo that's absolutely unhinged hundreds of pentesting tools, checklists, guides, all stacked in one p…

X AI KOLs Timeline ↗ · 2026-07-20 Cached

A comprehensive, open-source penetration-testing knowledge base aggregating hundreds of tools, checklists, and guides across 23 security domains, hosted on GitHub.

0 favorites 0 likes
#penetration-testing

@apivixtls: grok4.5 should be far ahead in security, right? (No censorship) I tested it today. I asked it to help me bug hunt. It directly logged into my HackerOne, scanned over 400 projects, chose a less popular one, and started hunting. It did almost everything by itself without my involvement…

X AI KOLs Timeline ↗ · 2026-07-09 Cached

The user tested Grok 4.5's security penetration capabilities and found that it could autonomously log into HackerOne, scan over 400 projects, and perform bug hunting, with almost no human involvement throughout, demonstrating powerful automation capabilities.

0 favorites 0 likes
#penetration-testing

@cevenif: Reverse engineering used to be the crown jewel of the hacker world – now it's been packaged into a skill set and shoved right at AI's mouth!! Just drop in a routing.md, and AI automatically knows which path to take for security tasks: APK reverse engineering, IDA static analysis, front-end JS cracking, firmware penetration, EDR bypass, exploit chains…

X AI KOLs Timeline ↗ · 2026-07-09 Cached

This project is an AI skill routing package for reverse engineering and penetration testing. Through routing.md, it enables AI to automatically select the appropriate tools and methods, lowering the barriers to security offense and defense.

0 favorites 0 likes
#penetration-testing

@XAMTO_AI: If you've used traditional manual penetration testing, you know!! Juggling multiple tools like Burp, Nmap, Metasploit, switching back and forth, spending hours on recon and exploit, writing PoCs by hand, writing reports until you question your life, false positives everywhere, while real vulnerabilities slip through... One developer couldn't take it anymore and open-sourced a...

X AI KOLs Timeline ↗ · 2026-07-04 Cached

Strix is an open-source AI penetration testing tool that uses autonomous AI agents to perform real vulnerability discovery and exploitation, generating working PoCs and compliance-ready reports. It supports multi-agent orchestration, CI/CD integration, and various LLMs, aiming to replace manual pentesting with AI-driven automation.

0 favorites 0 likes
#penetration-testing

Hackers shoveled snow for company, were rewarded with network admin access

Hacker News Top ↗ · 2026-07-03 Cached

Red teamers gained physical access to a client's building by shoveling snow and then achieved network admin access, highlighting the importance of physical security awareness.

0 favorites 0 likes
#penetration-testing

@hetmehtaa: Local AI for Penetration Testing & Research https://projectblack.io/blog/local-ai-for-cyber-security/…

X AI KOLs Timeline ↗ · 2026-07-02 Cached

A blog post benchmarks four approaches (Semgrep, GLM 5.1 with Strix, cloud SOTA with code review skill, and local AI with a custom harness) for finding a known LFI vulnerability in PHPIPAM, finding that the local AI harness with a tailored approach outperforms the others.

0 favorites 0 likes
Next →
← Back to home

Submit Feedback