Sign in

ethicalhack3r

@ethicalhack3r.bsky.social
209 followers 137 following 134 posts

Founder of Damn Vulnerable Web App (DVWA) Founder of WPScan (acquired by Automattic) Check out my new project! kevintel.com

PostsRepliesMedia
ethicalhack3r @ethicalhack3r.bsky.social · 27/05/2025
Two CVEs have been assigned to the vulnerabilities in vBulletin 5.0.0 through 6.0.3 found by Karma(In)Security • CVE-2025-48827 • CVE-2025-48828 These vulnerabilities were detected being exploited in the wild by the KEVIntel sensors on May 26th.
011
ethicalhack3r @ethicalhack3r.bsky.social · 13/05/2025
Great news! Added an extra 29 historical WordPress KEVs to KEVIntel! If you have a Pro API subscription, these all have the "wordpress" tag. Also, have you noticed CISA's next incremental number? Who's betting they only add just one new KEV next time? 😅
000
ethicalhack3r @ethicalhack3r.bsky.social · 12/05/2025
This morning I added 190 historical KEVs to KEVIntel, bringing the total count of KEVs to 1648. At the time of writing, that's 313 more than CISA.
000
ethicalhack3r @ethicalhack3r.bsky.social · 07/05/2025
Good morning! Two new KEVs this morning: - CVE-2024-6047 - CVE-2024-11120 Both Unauthenticated OS Command Injection affecting GeoVision EOL devices.
010
ethicalhack3r @ethicalhack3r.bsky.social · 06/05/2025
Top 5 Worst of Worst (WoW) vulnerabilities within the past month. What I would consider the most likely to be exploited (not including the prevalence of the product, which would make a big difference). You should definitely patch these!
010
ethicalhack3r @ethicalhack3r.bsky.social · 02/05/2025
Ha! Nice DVWA meme in latest WatchTowr blog post cc @digi.ninja
031
ethicalhack3r @ethicalhack3r.bsky.social · 01/05/2025
Two new KEVs on KEVIntel this morning - CVE-2024-38475 (Apache Software Foundation) - CVE-2023-44221 (SonicWall) kevintel.com
020
ethicalhack3r @ethicalhack3r.bsky.social · 29/04/2025
Known Exploited Vulnerabilities Intel kevintel.com
000
ethicalhack3r @ethicalhack3r.bsky.social · 28/04/2025
New reading material
010
ethicalhack3r @ethicalhack3r.bsky.social · 28/04/2025
New reading material
020
ethicalhack3r @ethicalhack3r.bsky.social · 28/04/2025
Not a bad place to take a couple of hours break from coding
120
ethicalhack3r @ethicalhack3r.bsky.social · 17/04/2025
Another great example of CyberAlerts.io early warning and alerting. In this case, we alerted our users 14 hours before CISA KEV, to an actively exploited Apple iOS vulnerability. We’ve also made changes so that this will be even earlier in the future! cyberalerts.io/vulnerabilit...
000
ethicalhack3r @ethicalhack3r.bsky.social · 16/04/2025
CVE Status Good! cyberalerts.io/cve_tracker
010
ethicalhack3r @ethicalhack3r.bsky.social · 15/04/2025
BreachForums is down!
021
ethicalhack3r @ethicalhack3r.bsky.social · 10/04/2025
cyberalerts.io/vulnerabilit...
001
ethicalhack3r @ethicalhack3r.bsky.social · 10/04/2025
New "Show Not in CISA KEV" toggle in CyberAlerts KEV
010
ethicalhack3r @ethicalhack3r.bsky.social · 08/04/2025
Looking to keep an eye on actively exploited vulnerabilities? The "worst of the worst" in terms of risk? 👉 cyberalerts.io/vulnerabilit...
cyberalerts known exploited
010
ethicalhack3r @ethicalhack3r.bsky.social · 07/04/2025
🚨 Reported Data Breach 🚨 🇨🇭 Switzerland - Brack.CH User Dulnex claims to be selling the full database of brack.ch, one of the most well-known online stores in Switzerland. The database allegedly contains phone number, email, firstname, lastname, invoice, item purchased, unpaid item, and more.
000
ethicalhack3r @ethicalhack3r.bsky.social · 24/03/2025
Great way to be notified about vulnerabilities in Github repos Got to a Github repository, click: Watch->Custom->Security Alerts->Apply
032
ethicalhack3r @ethicalhack3r.bsky.social · 21/03/2025
Always interesting to see an Inigma in real life. This one is at the military museum in Menorca. And in immaculate condition.
000
ethicalhack3r @ethicalhack3r.bsky.social · 19/03/2025
Looks like ExploitDB started posting again after a 4 month hiatus. I thought they were dead dead.
030
ethicalhack3r @ethicalhack3r.bsky.social · 12/03/2025
Just pushed a big update to CyberAlerts.io! 🤘 • You can filter by "known exploited" in your dashboard. • You can mark issues as "seen" and filter by them in your dashboard. • Descriptions shown in dashboard. • We now include images of the sources in your personalised dashboard.
000
ethicalhack3r @ethicalhack3r.bsky.social · 10/03/2025
Looks like Twitter (X) is being successfully DDoSed
110
ethicalhack3r @ethicalhack3r.bsky.social · 07/03/2025
Just finished reading "Infected" by Bernardo Quintero, an excellent look at hacking’s history and evolution through his entrepreneurial journey. From his consultancy, HispaSec, to VirusTotal’s acquisition by Google, it’s full of business insights and hacking lore.
000
ethicalhack3r @ethicalhack3r.bsky.social · 24/02/2025
Today I learned that Spain has the most CIRTs in Europe. Viva España! 🇪🇸 tools.enisa.europa.eu/topics/incid...
000
ethicalhack3r @ethicalhack3r.bsky.social · 20/02/2025
Nice AI Assistant in Chrome DevTools to help you debug errors in the console!
010
ethicalhack3r @ethicalhack3r.bsky.social · 19/02/2025
Just pushed Regular Expression (regex) searching to CyberAlerts.io 🥳 This was a feature requested by a few of you. Let me know if you have any feedback, or spot any bugs!
cyberalerts regular expression feature
010
ethicalhack3r @ethicalhack3r.bsky.social · 18/02/2025
Menorca! Home for the next few months! 🏖️
110
ethicalhack3r @ethicalhack3r.bsky.social · 13/02/2025
CVE-2025-24016: Critical Remote Code Execution (RCE) in Wazuh server Wazuh is a free and open source platform used for threat prevention, detection, and response. cyberalerts.io/vulnerabilit...
000
ethicalhack3r @ethicalhack3r.bsky.social · 10/02/2025
Just launched: Free Daily Cyber Security Newsletter 📨 Sign up here: cyberalerts.io/free-cyber-s... We take all the important vulnerabilities, and news articles that CyberAlerts collected the day prior, and deliver them to your inbox. Includes an AI generated ✨ summary of the previous day's news.
free cyber security newsletter
020
ethicalhack3r @ethicalhack3r.bsky.social · 30/01/2025
I did quick experiment with 100 CVE CVSS base scores to see if ChatGPT could guess the correct severity based on the vulnerability title and description. Model: gpt-4o-mini 10 correct CVSS base scores, and 85 incorrect scores. Model: o1-mini 55 correct CVSS base scores, and 40 incorrect scores.
010
ethicalhack3r @ethicalhack3r.bsky.social · 25/01/2025
Going to miss Lombok, Indonesia! Lots of people here working remote, surfing and living their best life. I will definitely be visiting again in the future. #digitalnomad #remotework
130
ethicalhack3r @ethicalhack3r.bsky.social · 31/12/2024
Today’s AI summary
000
ethicalhack3r @ethicalhack3r.bsky.social · 30/12/2024
Just implemented AI (ChatGPT) functionality into my new project. Was super easy to implement and looks like it will be very affordable. Sneak peak:
000
ethicalhack3r @ethicalhack3r.bsky.social · 29/11/2024
Nice bug in Firefox for iOS #CVE-2024-53975
000
ethicalhack3r @ethicalhack3r.bsky.social · 22/11/2024
My code is so bad I crashed Ruby 😑
120
ethicalhack3r @ethicalhack3r.bsky.social · 14/11/2024
Update your Palos, if you haven’t already! #PaloAltoNetworks
000