Critical Remote Code Execution in Apache HTTP Server mod_proxy
A critical vulnerability in Apache HTTP Server mod_proxy allows unauthenticated remote attackers to execute arbitrary code via crafted HTTP requests. ...
تحقیقات امنیتی، تحلیل آسیبپذیری و تکنیکهای امنیت تهاجمی.
آخرین آسیبپذیریهای شناخته شده در سراسر جهان.
A critical vulnerability in Apache HTTP Server mod_proxy allows unauthenticated remote attackers to execute arbitrary code via crafted HTTP requests. ...
The WPForms plugin for WordPress is vulnerable to SQL Injection via the form_id parameter in versions before 1.8.9. This allows authenticated attacker...
Jenkins Core contains an authentication bypass vulnerability that allows unauthorized users to access administrative functions. Affects LTS versions p...
An XSS vulnerability in GitLab CE/EE allows attackers to inject malicious scripts via the markdown renderer. Affects versions 16.0 to 16.11.2.
A buffer overflow vulnerability in OpenSSL during TLS handshake processing can lead to denial of service or remote code execution. Affects OpenSSL 3.0...
آموزشهای گامبهگام امنیت و محتوای آموزشی.
SQL Injection نابینا، حملات مبتنی بر زمان، اکسپلویت Union و دور زدن WAF را مسلط شوید.
راهنمای جامع تست APIهای REST و GraphQL برای آسیبپذیریهای امنیتی.
اصول تست نفوذ برنامههای وب، ۱۰ مورد برتر OWASP و ارزیابی سیستماتیک آسیبپذیری را بیاموزید.
ابزارهای متنباز توسعه داده شده برای جامعه امنیت.
Import Swagger/OpenAPI (Swagger 2.0 and OpenAPI 3) and generate example HTTP requests per operation, ready to send to Repeater.
PythonComprehensive Security Assessment Tool for LLM Endpoints - 371 Attack Payloads, 100+ Prompt Injection Variants, 13 Security Tests, Parallel Scanning, Resume Capability
PythonBurp Suite extension that automatically converts escaped Unicode sequences (like \u0627\u06cc...) into readable characters inside all Burp tools (Proxy, Repeater, Intruder, etc.).
PythonBurp Suite extension that intercepts the raw HTTP traffic (requests & responses), decodes any \uXXXX Unicode sequences, and then replaces the content before it reaches Burp’s UI.
PythonHTTPS Finder is a lightweight multithreaded Python tool designed for internal reconnaissance. It scans a list of IPs or CIDRs using Nmap to detect open web-related ports and then runs HTTPX to identify live HTTP/HTTPS services, grab titles, status codes, and technologies.
PythonPlugin Checker is a Python tool to enumerate WordPress plugins on target sites by checking for plugin `readme.txt` files and comparing detected versions with the latest versions from the WordPress Plugins API.
Pythonشایستگیهای اصلی در امنیت تهاجمی و توسعه ابزار.