Security analyst || eMAPT | eJPT | PMPA | eWPTXv2 |

Joined May 2019
12 Photos and videos
192.168.0.2 retweeted
How To Find Anyone Online Using OSINT
16
323
2,572
102,376
Change your IP every 10 secs automatically
98
697
5,279
649,450
192.168.0.2 retweeted
Intercepts mobile HTTPS traffic with desktop MITM proxy github.com/danieldev23/trafe…
3
86
491
24,790
192.168.0.2 retweeted
Simulates LLM attacks locally with 50 vulnerabilities github.com/confident-ai/deep…
1
98
432
19,425
192.168.0.2 retweeted
In 14 minutes, this Anthropic engineer who wrote "Building Effective Agents" will teach you more about making your AI Agents actually work together than everything you've scrolled past this year. Watch it and Bookmark it now.

38
226
1,312
276,974
192.168.0.2 retweeted
Apr 18
You can literally search for claude_desktop_config on GitHub and find hundreds of exposed Anthropic API keys Thanks vibe coders ❤️
65
64
1,140
112,986
192.168.0.2 retweeted
Anthropic pays engineers $750,000 a year to understand how LLMs work. Stanford just put a 2 hour lecture that covers 80% of it for FREE. Bookmark this. Give it 2 hours today. It might be the highest ROI thing you do this month:
231
3,280
21,792
2,498,380
192.168.0.2 retweeted
🚨 If you're hunting GraphQL bugs, this repo is a goldmine 👉 “awesome-graphql-security” is a curated list of tools, techniques & real-world resources for both attackers and defenders From recon → exploitation → learning paths… it’s all here 💣 Perfect for bug bounty hunters 🔗 github.com/Escape-Technologi… 👇 Start exploring before others do
36
159
6,409
192.168.0.2 retweeted
Practical Thick Client Pentesting Checklist 1. Dump process memory; grep for creds, tokens, or sensitive data 2. Check clipboard after key app actions for leaked info 3. Extract SQLite/LevelDB/custom DBs; look for cached secrets 4. Review update/installer configs for dev or backup endpoints 5. Find leftover backup, temp, or crash dump files 6. Enumerate & fuzz IPC (pipes, COM, shared memory) 7. Tweak INI/XML/registry configs to unlock features or escalate 8. Feed malformed/oversized inputs to parsers; hunt for crashes or leaks 9. Spoof update servers via hosts/DNS poisoning 10. Replay or alter trial/license activations; change MAC/time to reset 11. Hook WinAPI/libs; log sensitive calls or bypass controls 12. Attempt DLL hijacking via crafted DLLs in search paths And it goes on and on!
stop hacking web apps start hacking desktop apps trust me
5
11
90
6,786
192.168.0.2 retweeted

23
830
3,476
416,383
192.168.0.2 retweeted
Fu-JS 🔎 — a powerful recon tool that crawls JavaScript across subdomains, uncovers hidden endpoints, extracts secrets, builds target-specific wordlists, and recursively expands attack surface from JS files. Perfect for bug bounty hunters focused on client-side recon & endpoint discovery. Source: github.com/th3hack3rwiz/Fu-J… #BugBounty #Recon #AppSec #WebSecurity #JavaScript
1
35
155
6,603
KishorBal/deep-C: Android deeplink misconfiguration detector and exploitation tool- An additional Web Interface have been added. medium.com/@kishorbalan/deep… #CyberSecurity #EthicalHacking #Pentesting
67
192.168.0.2 retweeted
someone built an entire AI RED TEAM - multiple agents that coordinate HACKING ATTACKS together, ZERO human input PentAGI, open source, one agent does recon, another scans, another exploits, another writes the report. they talk to each other and adapt based on what they find it ships as one docker container with nmap, metasploit, sqlmap, hydra preinstalled. the AI decides which tool to use and when. you point it at a target and walk away a red team engagement costs $30-50k and takes weeks. this is one docker command and API tokens
204
573
4,356
600,460
192.168.0.2 retweeted
Autonomous Multi-Agent Based Red Team Testing Service, AI hacker. - github.com/PurpleAILAB/Decep… #infosec #cybersec #bugbountytips
11
122
712
31,571
Finding deepLinks exploits on real world applications using : github.com/KishorBal/deep-C #mobilehacking #android #bugbounty #pentest
153
192.168.0.2 retweeted
Augustus - LLM Vulnerability Scanner - github.com/praetorian-inc/au… Augustus is a LLM vulnerability scanner for security professionals. It tests large language models against a wide range of adversarial attacks, integrates with 28 LLM providers, and produces actionable vulnerability reports. Existing tools like garak (NVIDIA) and promptfoo serve the research and red-teaming community well. But we needed something built for the way our operators work: a fast, portable binary that fits into existing penetration testing workflows without requiring Python environments, npm installs, or runtime dependencies.
1
27
132
6,479
192.168.0.2 retweeted
PentestAgent Open-source AI multi-agents doing black-box pentesting autonomously. - Autonomous mode runs full workflows: multi-agent red team simulation. - AI agents chain recon: Integrated Nmap, Metasploit, FFUF, SQLMap , vuln analysis, exploitation - RAG for contextual knowledge - tool chaining reporting. - Built-in browser, search, dockerized pentest tools , all orchestrated by LLM crews. - github.com/GH05TCREW/pentest… #infosec #cybersec #bugbountytips
8
106
515
26,514
🚨 Introducing Deep-C 🚨 An Android Deep Link Exploitation Framework that: • Decompiles APKs • Finds insecure deep links & exported activities • Maps real attack scenarios • Generates adb PoCs automatically #AndroidSecurity #hacking #pentest github.com/KishorBal/deep-C
82
192.168.0.2 retweeted
Android Reverse Engineering Notes notion.so/Reverse-Engineerin…
9
294
1,454
59,601