pentesting

Tag

Cards List
#pentesting

@DanKornas: Security testing agents often lack security-specific workflows, reliable evidence collection, and auditability. Pentest…

X AI KOLs Timeline · 2026-08-08 Cached

PentesterFlow is an open-source terminal assistant for authorized offensive-security work that plans against scoped targets, uses pentesting tools, requests approval for sensitive actions, retains lessons across sessions, and writes evidence-backed findings. It includes built-in skills for recon and web vulnerabilities, session continuity features, local continuous learning, and Burp integration.

0 favorites 0 likes
#pentesting

@GitHub_Daily: When facing APK reverse engineering, should you use jadx or apktool? For binary analysis, should you go with IDA or Ghidra? These are the analysis tools that reverse engineering developers need to choose from when facing different targets — pick wrong and all your effort is wasted. reverse-skill leaves these choices to AI A…

X AI KOLs Timeline · 2026-08-05 Cached

reverse-skill is a cybersecurity skill routing package for AI Agents. It automatically selects reverse engineering toolchains (such as jadx, apktool, IDA, Ghidra) based on the target, covering APK reverse engineering, binary analysis, frontend encryption cracking, malware, penetration testing, CTF, and more. It has earned 16,000+ stars.

0 favorites 0 likes
#pentesting

Show HN: Nightcrawler – A local AI pentesting agent running on a smartphone

Hacker News Top · 2026-08-03 Cached

Nightcrawler is an autonomous penetration testing agent that runs entirely on a smartphone, using a local 1.2B AI model on the phone's GPU to discover hosts, map services, and generate pentest reports without cloud connectivity.

0 favorites 0 likes
#pentesting

@josesilesdata: GOODBYE TO CYBERSECURITY! A repository just came out with hundreds of AI security tools in an open-source repository. T…

X AI KOLs Timeline · 2026-07-23 Cached

An open-source repository containing hundreds of AI security tools has been released, featuring techniques for jailbreaking LLMs, prompt injection testing, red team agents, model extraction, and automated pentesting.

0 favorites 0 likes
#pentesting

Quoting Thomas Ptacek

Simon Willison's Blog · 2026-07-22 Cached

Thomas Ptacek argues that an open weights model from 2025 with a pentest harness could perform sandbox escapes and hack most networks, suggesting current AI security sandboxes are insufficient.

0 favorites 0 likes
#pentesting

@durdom_evm: found a security repo that's absolutely unhinged hundreds of pentesting tools, checklists, guides, all stacked in one p…

X AI KOLs Timeline · 2026-07-20 Cached

A comprehensive, open-source penetration-testing knowledge base aggregating hundreds of tools, checklists, and guides across 23 security domains, hosted on GitHub.

0 favorites 0 likes
#pentesting

Kode Dot Programmable pocket device for makers, pentesters and geeks

Hacker News Top · 2026-07-12 Cached

Kode Dot is a pocket-sized programmable device with dual ESP32 MCUs, AMOLED touchscreen, wireless connectivity, and I/O pins, designed for makers, pentesters, and geeks.

0 favorites 0 likes
#pentesting

@0x0SojalSec: fully uncensored Cybersecurity-specialized model tuned on exploits, pentesting and Run locally on MacBook, delivers exp…

X AI KOLs Timeline · 2026-07-12 Cached

A fully uncensored cybersecurity-specialized AI model fine-tuned on exploits and pentesting data, designed to run locally on consumer hardware with multiple quantization options, offering expert offensive and defensive insights.

0 favorites 0 likes
#pentesting

@servasyy_ai: If you're maintaining a project alone without a security team and always feel uneasy before launch, this is basically a gift for you. To be honest, I don't trust most of the so-called "AI security scanners" on the market. After scanning, they give you a screen full of warnings, 90% of which are false positives – pure waste of time. That was until I looked into strix, which topped the GitHub daily leaderboard these past two days. It's different. Strix…

X AI KOLs Timeline · 2026-07-04 Cached

Strix is an open-source AI penetration testing tool that dynamically runs applications in Docker sandboxes, uses the Caido proxy to intercept traffic, and leverages a Python sandbox to write practical Proof-of-Concept exploits to discover and verify vulnerabilities. It supports multi-agent collaboration, automatic patch generation, and CI/CD integration, making it more practical than traditional scanners with high false positive rates.

0 favorites 0 likes
#pentesting

@0x0SojalSec: Reverse Engineer Any Android APK with AI Apktool + any LLMs or local Ollama) for real-time decompiling, Smali analysis,…

X AI KOLs Timeline · 2026-07-01 Cached

A tool that integrates AI (any LLM or local Ollama) with Apktool to enable real-time decompiling, Smali analysis, manifest review, vulnerability hunting, and live patching of Android APKs via natural language.

0 favorites 0 likes
#pentesting

@apivixtls: Saw an open-source project called Codex5.5 for bypassing restrictions today. The approach is quite straightforward. It stuffs a set of unrestricted instructions into GPT-5.5 via model_instructions_file, making Codex CLI directly run in [MODE: UNRESTRICTED] mode…

X AI KOLs Timeline · 2026-06-29 Cached

An open-source project named Codex5.5 bypasses GPT-5.5's security restrictions by modifying the model_instructions_file. It supports sensitive operations like SQL injection testing, but carries a risk of account suspension. It is recommended to use a throwaway account.

0 favorites 0 likes
#pentesting

@Dinosn: uphiago/recon-skills: 144 offensive security skills for recon and pentest. Field-validated techniques from 600+ targets…

X AI KOLs Timeline · 2026-06-26 Cached

A GitHub repository providing 144 offensive security skills for reconnaissance and penetration testing, field-validated across 600+ targets in 45+ sectors, covering web enumeration, email security, Google dorks, cloud IAM, and more.

0 favorites 0 likes
#pentesting

BestDefense.io

Product Hunt · 2026-06-19

BestDefense.io is a security tool that uses AI to perform penetration testing and automated patching for every deployment.

0 favorites 0 likes
#pentesting

@heynavtoor: Burp Suite Professional costs 475 dollars a year per seat. A senior software engineer in Amsterdam built the open sourc…

X AI KOLs Timeline · 2026-06-13

Open-source HTTP toolkit Hetty, built by David Stotijn as a free alternative to Burp Suite Professional, offers MITM proxy, request interception, and editing capabilities with a single Go binary install, no cost or telemetry.

0 favorites 0 likes
#pentesting

Flipper One Tech Specs

Hacker News Top · 2026-05-20

The tech specs for the Flipper One have been released, highlighting its hardware capabilities designed for cybersecurity testing and pentesting.

0 favorites 0 likes
#pentesting

trimstray/the-book-of-secret-knowledge

GitHub Trending (daily) · 2026-05-21 Cached

A curated GitHub repository collecting inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, and CLI/web tools for system administrators, DevOps, pentesters, and security researchers.

0 favorites 0 likes
#pentesting

Z4nzu/hackingtool

GitHub Trending (daily) · 2026-04-22 Cached

hackingtool v2.0.0 is a Python 3.10+ CLI that bundles 185+ security tools across 20 categories with search, tagging, batch install and Docker support for pentesters and researchers.

0 favorites 0 likes
← Back to home

Submit Feedback