Sign in

KL3FT3Z

@toxy4ny.bsky.social
442 followers 2K following 589 posts

Red Teamer & Offensive AI Researcher. Creator of redteam-ai-benchmark and other open-source redteam tools. Writing about LLM security and safety, system’s hardening and adversarial AI. Gitlab.com- gitlab.com/toxy4ny Dev.to - dev.to/toxy4ny

PostsRepliesMedia
KL3FT3Z @toxy4ny.bsky.social · 23h
Track of the Day - Véhémence - Epopée - par le sang versé - www.youtube.com/watch?v=6kyA... #redteam #music #track #my #vibe #playlist #folk #black #metall
youtube.com
Epopée - par le sang versé
YouTube video by Vehemence - Topic
010
KL3FT3Z @toxy4ny.bsky.social · 23h
Wednesday's fuck up - Now LibreOffice and OpenOffice - Flaws Let Malicious Spreadsheets Run Code Without Macro Warnings. POC github.com/v12-security... #redteam #PoC #LibreOffice #OpenOffice #RCE #Macro #critical #exploit
github.com
pocs/office_jdbc_bugs at main · v12-security/pocs
poc it like it's hot. Contribute to v12-security/pocs development by creating an account on GitHub.
000
KL3FT3Z @toxy4ny.bsky.social · 06/10/2026
Monday's hacking Linux - cups2root Linux LPE Interactive root shell from a local account in the lpadmin group. github.com/v12-security... #redteam #LPE #linux #lpadmin #shell #root #tool #education
github.com
pocs/cups/cups2root at main · v12-security/pocs
poc it like it's hot. Contribute to v12-security/pocs development by creating an account on GitHub.
000
KL3FT3Z @toxy4ny.bsky.social · 06/10/2026
Monday's redteam toolkit - Even more privileged ADCS ESC_CES Web Enrollment and CES both perform certificate enrollment, but they are completely different HTTP protocols. github.com/ADHDMurky/AD... #redteam #tool #ADCS #AD #fresh #attack #CES #tools #ESC_CES #critical #education
github.com
GitHub - ADHDMurky/ADCS_Tools: Tools for CES abuse
Tools for CES abuse. Contribute to ADHDMurky/ADCS_Tools development by creating an account on GitHub.
010
KL3FT3Z @toxy4ny.bsky.social · 06/10/2026
Monday's fuck up - Now and again great Citrix - Citrix NetScaler PreAuth Command Injection CVE-2026-88771 Improper input validation leading to RCE in a default NetScaler configuration, with no additional product features required. github.com/watchtowrlab... #redteam #critical #citrix #cve-2026-88771
labs.watchtowr.com
Oh Look, The Foot Gun Went Off Again (Citrix NetScaler PreAuth Command Injection CVE-2026-88771)
God damn it, we're back in the room again. Yes, that sound in your ears is screaming. The footgun has gone off again, shockingly, and we are yet again dealing with a situation where the entire world ...
000
KL3FT3Z @toxy4ny.bsky.social · 05/10/2026
Track of the Day - Hanging Garden - Tunturi - www.youtube.com/watch?v=Q0z2... #redteam #track #music #my #vibe #playlist #gotic-metall
youtube.com
Tunturi
YouTube video by Hanging Garden - Topic
010
KL3FT3Z @toxy4ny.bsky.social · 01/10/2026
Unfortunately, only a few do this, so as soon as a new RCE for WordPress is released, half the internet is backdoored overnight.
000
KL3FT3Z @toxy4ny.bsky.social · 01/10/2026
Yes, WordPress has been a very long-suffering development. From a user perspective, it's very convenient and quite secure if you keep an eye on new CVEs for WordPress itself and hundreds of poorly written plugins every minute.
100
KL3FT3Z @toxy4ny.bsky.social · 01/10/2026
Wednesday's fuck up - now and again Wordpress - github.com/MRdark-ops/C... #redteam #exploit #critical #WP #wordpress #cve-2026-87902 #LFI #RCE
github.com
GitHub - MRdark-ops/CVE-2026-87902: CVE-2026-87902 — WordPress Core LFI → RCE
CVE-2026-87902 — WordPress Core LFI → RCE. Contribute to MRdark-ops/CVE-2026-87902 development by creating an account on GitHub.
100
KL3FT3Z @toxy4ny.bsky.social · 01/10/2026
Track of the Day - Rise to the Sky - Bleeding Heart - www.youtube.com/watch?v=Mj57... #redteam #music #track #vibe #my #playlist #doom-metall #true
youtube.com
Rise to the Sky - Per Aspera Ad Astra (full album)
YouTube video by Tragedy Productions
000
KL3FT3Z @toxy4ny.bsky.social · 28/09/2026
Monday's red team tool - geminiHunter Find and assess exposed Google Gemini API keys in web assets and Android apps. github.com/devploit/gem... #redteam #tool #gemini #vibecoding #api #key #pentest #cybersecurity #top #new #hackers #tools
github.com
GitHub - devploit/geminiHunter: Find and assess exposed Google Gemini API keys across web assets and Android apps.
Find and assess exposed Google Gemini API keys across web assets and Android apps. - devploit/geminiHunter
011
KL3FT3Z @toxy4ny.bsky.social · 28/09/2026
Monday's fuck up - This Time great Citrix -  U.S. CISA adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog securityaffairs.com/199891/hacki... #redteam #citrix #real #attack #cisa #exploit #0day #critical
securityaffairs.com
U.S. CISA adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA...
000
KL3FT3Z @toxy4ny.bsky.social · 28/09/2026
Track of the Day - Weid - Breath Holding - musify.club/en/track/wei... #redteam #music #track #my #vibe #playlist #post-rock
musify.club
Weid — Breath Holding — download free mp3, listen online | Musify
Weid — Breath Holding — download mp3 320 kbps free and listen online on Musify. Album: Inhale (2015).
010
KL3FT3Z @toxy4ny.bsky.social · 23/09/2026
Track of the Day - Nirvana - Dumb - www.youtube.com/watch?v=4YFu... #redteam #music #track #my #vibe #playlist #grunge #rock #nirvana
youtube.com
Nirvana - Dumb
YouTube video by NirvanaVEVO
010
KL3FT3Z @toxy4ny.bsky.social · 22/09/2026
Tuesday's fuck up - Now Windows - Windows Exploitation Techniques: Dangling COM Object Registrations projectzero.google/2026/09/wind... // This post is about abusing a privilege escalation bug that Microsoft recently fixed in Windows 11 (CVE-2026-66804) #redteam #exploit #0day #windows #LPE #COM
projectzero.google
Windows Exploitation Techniques: Dangling COM Object Registrations
This short blog post is about abusing a privilege escalation bug that Microsoft recently fixed in...
000
KL3FT3Z @toxy4ny.bsky.social · 21/09/2026
Track of the Day - Random Reel - An Dro - www.youtube.com/watch?v=ZmTw... #redteam #music #track #my #playlist #celtic #folk #vibe
youtube.com
Random Reel - An Dro
YouTube video by Metko Vizigot (metk0o vizigot037)
010
KL3FT3Z @toxy4ny.bsky.social · 21/09/2026
Monday's fuck up - This Time Apple - Sandbox escape for iOS 27.0 PoC - github.com/0xjohnnydev/... #redteam #iOS #Apple #exploit #PoC #sandbox #escape #AirLift
github.com
GitHub - 0xjohnnydev/airlift: AirLift — paired-Mac AirTraffic/ATAirlock sandbox escape for iOS 27.0
AirLift — paired-Mac AirTraffic/ATAirlock sandbox escape for iOS 27.0 - 0xjohnnydev/airlift
010
KL3FT3Z @toxy4ny.bsky.social · 21/09/2026
Monday's redteam tool collection: LPE quartet of Linux local root: DirtyAH6 CVE-2026-80844 github.com/manizada/Dir... TUNderflow CVE-2026-81000 github.com/manizada/TUN... PPPoEject CVE-2026-68121 github.com/manizada/PPP... DiagSpill CVE-2026-74469 github.com/manizada/Dia... #redteam #LPE
github.com
GitHub - manizada/DirtyAH6: https://heyitsas.im/posts/lpe-quartet/
https://heyitsas.im/posts/lpe-quartet/. Contribute to manizada/DirtyAH6 development by creating an account on GitHub.
000
KL3FT3Z @toxy4ny.bsky.social · 19/09/2026
I have over 400 followers! A huge thank you to everyone who reads my posts! You are the best followers I could ask for! It’s truly gratifying to know that I’m read by both everyday people and professionals in their fields! #bluesky #follow #friend #following #followers #cool #man #girl
static.klipy.com
Gjirlfriend
ALT: Gjirlfriend
010
KL3FT3Z @toxy4ny.bsky.social · 19/09/2026
Track of the Day - VYRMA - Freyja Graetur - www.youtube.com/watch?v=4JlV... #redteam #music #track #my #vibe #playlist #epic #viking
youtube.com
VYRMA · Freyja Grætur #vikingmusic
YouTube video by Epic Music Нub
000
KL3FT3Z @toxy4ny.bsky.social · 18/09/2026
Track of the Day - Dog Chasing Sun - Burn Witch Burn - www.youtube.com/watch?v=QyDb... #redteam #album #vibe #music #track #my #playlist #grunge #metall
youtube.com
DOG CHASING SUN - Fire Walks With Me [FULL ALBUM] 2020
YouTube video by ROB HAMMER *stonerdoom*psych*sludge*grunge*metal*
010
KL3FT3Z @toxy4ny.bsky.social · 18/09/2026
Thursday's fuck up - again OpenClaw - github.com/diedromeo/CV... #redteam #openclaw #ssrf #critical #exploit #poc #research
github.com
GitHub - diedromeo/CVE-2026-62201-OpenClaw-SSRF: Deep-dive analysis of CVE-2026-62201: OpenClaw sandbox exec-server network policy bypass (SSRF). Root cause, vulnerable vs patched code, exploitation, ...
Deep-dive analysis of CVE-2026-62201: OpenClaw sandbox exec-server network policy bypass (SSRF). Root cause, vulnerable vs patched code, exploitation, detection, remediation. - diedromeo/CVE-2026-6...
000
KL3FT3Z @toxy4ny.bsky.social · 17/09/2026
Track of the Day - Crematory - Tears of Time - www.youtube.com/watch?v=JMIV... #redteam #music #track #vibe #my #playlist #crematory
youtube.com
CREMATORY - Tears of Time (Official)
YouTube video by Crematory (Official)
010
KL3FT3Z @toxy4ny.bsky.social · 17/09/2026
Wednesday's fuck up - Now Windows - 0xCr0ssCrush - Windows Ring 0 Exploit github.com/DeathShotXD/... Both drivers were documented by eSentire's Threat Response Unit in August 2026 as components of the Cruciferra malware-as-a-service loader, which terminates AV/EDR processes before payload delivery
github.com
GitHub - DeathShotXD/0xCr0ssCrush: Windows BYOVD research on DCRCVDrv.sys and Alinubx.sys, reverse engineering their kernel primitives, IOCTL surfaces, and detection opportunities.
Windows BYOVD research on DCRCVDrv.sys and Alinubx.sys, reverse engineering their kernel primitives, IOCTL surfaces, and detection opportunities. - DeathShotXD/0xCr0ssCrush
000
KL3FT3Z @toxy4ny.bsky.social · 14/09/2026
Monday's fuck up - This Time - Gitlab - CVE-2026-85706 GitLab CE/EE Version: 18.7–19.1.7, 19.2.0–19.2.5, 19.3.0–19.3.1 exploit - github.com/guneykabel/c... #redteam #gitlab #ce-ee #exploit #cve-2026-85706 #critical
github.com
GitHub - guneykabel/cve-2026-85706: Exploit poc for CVE-2026-85706 an unauthenticated arbitrary file read on Gitlab CE-EE affecting versions: 18.7–19.1.7; 19.2.0–19.2.5; 19.3.0–19.3.1
Exploit poc for CVE-2026-85706 an unauthenticated arbitrary file read on Gitlab CE-EE affecting versions: 18.7–19.1.7; 19.2.0–19.2.5; 19.3.0–19.3.1 - guneykabel/cve-2026-85706
000
KL3FT3Z @toxy4ny.bsky.social · 14/09/2026
Finally, the great magician has revealed himself! Respect and admiration for him for this and for the explanation of why he started writing exploits for Windows and other systems. He's a really cool dude! x.com/MSNightmare2... #MSNightmare #windows #0day #exploit #PoC #cybersecurity #real #people
x.com
000
KL3FT3Z @toxy4ny.bsky.social · 14/09/2026
Monday's red team tool collection - Great Stuxnet - github.com/Sadpainy/Stu... - New Potato - github.com/aaron-kidwel... - 0day Defender exploit - github.com/MSNightmare/... - SSHamble - github.com/runZeroInc/s... #redteam #tool #fresh #new #monday #exploit #0day #stuxnet #potato #ssh #defender
github.com
GitHub - Sadpainy/Stuxnet: Stuxnet, Here reproduced by me, Only researchs for educations purposes. It set work on Windows XP and Windows 7 only.
Stuxnet, Here reproduced by me, Only researchs for educations purposes. It set work on Windows XP and Windows 7 only. - Sadpainy/Stuxnet
000
KL3FT3Z @toxy4ny.bsky.social · 11/09/2026
New my article is about benchmarking AI models and the lies of major companies marketing dev.to/toxy4ny/how-... #redteam #AI #LLM #benchmark #AIops #deeplearning #ML #deepseek #gigachat
dev.to
How to Read Benchmark Tables: A Case Study of GigaChat 3.5 "Ultra Reasoning" vs DeepSeek V4 Flash
How to read AI benchmark tables without letting the headline do the thinking for you — using GigaChat 3.5 Reasoning vs. DeepSeek V4 Flash Preview as a case study.
011
KL3FT3Z @toxy4ny.bsky.social · 11/09/2026
He’s done it again! The latest scoop on Windows hacking - github.com/MSNightmare/... #MSNightmare #windows #redteam #defender #0day #tool #exploit #shieldcrash
github.com
GitHub - MSNightmare/ShieldCrash: Windows Defender 0day Vulnerability
Windows Defender 0day Vulnerability. Contribute to MSNightmare/ShieldCrash development by creating an account on GitHub.
000
KL3FT3Z @toxy4ny.bsky.social · 11/09/2026
New redteam tool - GPOddity - Simulating legitimate Active Directory services on the network: the case of GPO exploitation www.synacktiv.com/en/publicati... GPOddity - github.com/synacktiv/GP... #redteam #tool #GPO #NTLM #relay #AD #attack #vector #service #exploit
synacktiv.com
Simulating legitimate Active Directory services on the network: the
Simulating legitimate Active Directory services on the network: the
000
KL3FT3Z @toxy4ny.bsky.social · 11/09/2026
Track of the Day - Dark Valley - Ophelia - www.youtube.com/watch?v=teFu... #redteam #music #track #my #playlist #vibe #doom #metall #symphony #vocal
youtube.com
Dark Valley - OPHELIA (Official Video)
YouTube video by Dark Valley
000
KL3FT3Z @toxy4ny.bsky.social · 08/09/2026
Track of the Day - Naïve - To lose and to Die For - www.youtube.com/watch?v=Y6BJ... #redteam #track #music #my #vibe #playlist #post-rock
youtube.com
Naïve - To Lose and to Die For
YouTube video by NewGenerationSlave
000
KL3FT3Z @toxy4ny.bsky.social · 08/09/2026
Tuesday's fuck up - this time great SonicWall - SonicWall SMA1000 unauthenticated RCE Exploit for last weeks SonicWall SMA1000 zero-day chain that has been exploited in-the-wild (CVE-2026-83548 + SMA1000-9427 + CVE-2026-83549). github.com/rapid7/metas... #redteam #sonicwall #rce #critical #sma1000
github.com
SonicWall SMA1000 unauthenticated RCE (CVE-2026-83548 + SMA1000-9427 + CVE-2026-83549) by sfewer-r7 · Pull Request #21883 · rapid7/metasploit-framework
Overview This pull request adds an exploit module for the recent SonicWall SMA1000 zero-day exploit chain that was disclosed last week as being exploited in-the-wild. While disclosed as a 2 bug cha...
000
KL3FT3Z @toxy4ny.bsky.social · 08/09/2026
Track of the Day - My Sleeping Karma - Eleusine Coracana - www.youtube.com/watch?v=NcKQ... #redteam #music #track #vibe #my #playlist
youtube.com
My Sleeping Karma - Eleusine Coracana
YouTube video by Bogdan Catana
000
KL3FT3Z @toxy4ny.bsky.social · 08/09/2026
Monday's Red Team tool - M0nCrush - github.com/DeathShotXD/... Kernel-mode process terminator using a signed BYOVD driver (MonProcessEX.sys). Works on all Windows 10/11. No offsets, no PDB. Rust. #redteam #tool #windows #BYOVD #driver #rust #attack
github.com
GitHub - DeathShotXD/0xM0nCrush: Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.
Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust. - DeathShotXD/0xM0nCrush
000
KL3FT3Z @toxy4ny.bsky.social · 07/09/2026
Monday's fuck-up - this time it's the invincible Mikrotik - github.com/dinosn/mikro... research - cert.pl/en/posts/202... #redteam #mikrotik #cve-2026-67276 #critical #routeros #bypass #ssh #router
github.com
GitHub - dinosn/mikrotrick-poc: CVE-2026-67276 RouterOS SSH public-key authentication bypass lab PoC
CVE-2026-67276 RouterOS SSH public-key authentication bypass lab PoC - dinosn/mikrotrick-poc
011
KL3FT3Z @toxy4ny.bsky.social · 05/09/2026
VMware threat emulation techniques virtualattack.reversec.com A reproducible catalogue of 86 atomic actions against vCenter, ESXi, SDDC Manager & the wider VCF ecosystem — sourced from threat intelligence reporting, mapped to MITRE ATT&CK & paired with the log sources where evidence is expected.
virtualattack.reversec.com
Virtual//Attack
000
KL3FT3Z @toxy4ny.bsky.social · 04/09/2026
Thursday's Fuck Up - today is a unique vulnerability in the great Crowdstrike - Crowdstrike Falcon 0day LPE - github.com/MSNightmare/... #redteam #crowdstrike #lpe #ad #exploit #git #critical #0day
github.com
GitHub - MSNightmare/FalconFlank: Crowdstrike Falcon 0day Privilege Escalation Vulnerability
Crowdstrike Falcon 0day Privilege Escalation Vulnerability - MSNightmare/FalconFlank
000
KL3FT3Z @toxy4ny.bsky.social · 02/09/2026
AD-PathFinder is an open-source tool for constructing attack paths in corporate infrastructure using BloodHound CE. It is especially useful for red teams, pentests, and AD audits, when the standard BloodHound graph is no longer sufficient. github.com/NetSPI/AD-Pa... #redteam #tool #windows #AD #ADCS
github.com
GitHub - NetSPI/AD-PathFinder: Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.
Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data. - NetSPI/AD-PathFinder
000
KL3FT3Z @toxy4ny.bsky.social · 01/09/2026
Tuesday fuck up - let's move on to antiviruses - PrettyPrague - GenDigital Avast Antivirus ZeroDay Elevation of Privileges Vulnerability. Another zeroday in an antimalware provider, I'm not sure but I believe this vulnerability affect other GenDigital products as well. github.com/MSNightmare/...
github.com
GitHub - MSNightmare/PrettyPrague: GenDigital Avast Antivirus ZeroDay Elevation of Privileges Vulnerability
GenDigital Avast Antivirus ZeroDay Elevation of Privileges Vulnerability - MSNightmare/PrettyPrague
000
KL3FT3Z @toxy4ny.bsky.social · 01/09/2026
Monday's fuck up - This Time Kaspersky Antivirus - HardBreacher github.com/MSNightmare/... Kaspersky Antivirus For Endpoint ZeroDay Elevation of Privileges Vulnerability #0day #kaspersky #critical #LPE #redteam #attack #vector #antivirus
github.com
GitHub - MSNightmare/HardBreacher: Kaspersky Antivirus For Endpoint ZeroDay Elevation of Privileges Vulnerability
Kaspersky Antivirus For Endpoint ZeroDay Elevation of Privileges Vulnerability - MSNightmare/HardBreacher
000
KL3FT3Z @toxy4ny.bsky.social · 27/08/2026
Track of the Day - Obsidian Swing - Crossroads - www.youtube.com/watch?v=4FfV... #track #music #redteam #post-rock #playlist #my #vibe
youtube.com
Crossroads
YouTube video by Obsidian Swing - Topic
010
KL3FT3Z @toxy4ny.bsky.social · 27/08/2026
Thursday's fuck up - It's been a while since I've had fresh meat from Next.js - and here's such a beautiful critical vulnerability RCE - github.com/rafabd1/CVE-... #cve #exploit #poc #redteam #nextjs #cve-2026-75604 #critical #windows #rce
github.com
GitHub - rafabd1/CVE-2026-75604-poc: CVE-2026-75604 Next.js Windows RCE poc
CVE-2026-75604 Next.js Windows RCE poc. Contribute to rafabd1/CVE-2026-75604-poc development by creating an account on GitHub.
010
KL3FT3Z @toxy4ny.bsky.social · 26/08/2026
Wednesday's fuck up - this time KeyCloak - github.com/snizi/cve-20... CVE-2026-18963 — Keycloak reset-credentials bypass → unauthenticated account takeover #github #poc #keycloak #exploit #cve-2026-189623 #critical #auth #bypass #redteam
github.com
GitHub - Snizi/CVE-2026-18963-Exploit: Exploit for KeyCloak CVE-2026-18963
Exploit for KeyCloak CVE-2026-18963. Contribute to Snizi/CVE-2026-18963-Exploit development by creating an account on GitHub.
000
KL3FT3Z @toxy4ny.bsky.social · 25/08/2026
My new article, research and redteam tool. dev.to/toxy4ny/sam-... Sam The Butcher is a single-file, standalone Windows executable that extracts credential hives, bypassing file locks, EDR minifilters, and standard Windows access controls. #redteam #windows #tool #education #credential #dumping #EDR
dev.to
Sam The Butcher: Extracting Locked Windows Credentials via Raw Disk Access
A deep dive into bypassing file locks, EDR filters, and Windows access controls by reading NTFS...
010
KL3FT3Z @toxy4ny.bsky.social · 25/08/2026
For dessert, various types of potatoes for hacking Windows. CrystalPotato github.com/ricardojoser... GodPotato - Original C github.com/BeichenDream... RustPotato - Rust implementation github.com/safedv/RustP... SigmaPotato - C# implementation github.com/tylerdotrar/... #redteam #potato #windows #LPE
github.com
GitHub - ricardojoserf/CrystalPotato: Crystal port of GodPotato to abuse SeImpersonatePrivilege with indirect syscalls, dynamic API resolution and compile-time string obfuscation. Run commands, revers...
Crystal port of GodPotato to abuse SeImpersonatePrivilege with indirect syscalls, dynamic API resolution and compile-time string obfuscation. Run commands, reverse shells or add users - ricardojose...
010
KL3FT3Z @toxy4ny.bsky.social · 24/08/2026
Track of Day - Saez - Mon Terroriste - www.youtube.com/watch?v=t73R... #music #redteam #vibe #my #playlist #day #track
youtube.com
Mon terroriste
YouTube video by Saez - Topic
001
KL3FT3Z @toxy4ny.bsky.social · 24/08/2026
Monday’s red team tool - Offensive PoC tool for BTR.sys - Microsoft Defender's Boot Time Removal Tool. Supporting material for the BTR (Black Hat USA 2026/DEF CON 34, Las Vegas). Respectful to the author for the implementation based on the conference presentation. github.com/Dump-GUY/BTR... #redteam
github.com
GitHub - Dump-GUY/BTR_CLI: Offensive PoC tool for BTR.sys - Microsoft Defender's Boot Time Removal Tool. Supporting material for the BTR Reforged research (Black Hat USA 2026 / DEF CON 34, Las Vegas).
Offensive PoC tool for BTR.sys - Microsoft Defender's Boot Time Removal Tool. Supporting material for the BTR Reforged research (Black Hat USA 2026 / DEF CON 34, Las Vegas). - Dump-GUY/BTR_CLI
000
KL3FT3Z @toxy4ny.bsky.social · 24/08/2026
Monday's fuck up - Citrix is ​​once again invincible, and once again it has an extremely critical vulnerability - an exploit is available in the wild. github.com/watchtowrlab... #citrix #exploit #cve-2026-8452 #preauth #rce #critical #redteam #vulnerability #management #watchtower #netscaler
github.com
GitHub - watchtowrlabs/watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452: CVE-2026-8452 PreAuth RCE
CVE-2026-8452 PreAuth RCE. Contribute to watchtowrlabs/watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452 development by creating an account on GitHub.
000
KL3FT3Z @toxy4ny.bsky.social · 22/08/2026
My new research, article and redteam-tool: RinHit-How we built an open-source macOS reconnaissance framework that turns Wi-Fi artifacts, Bluetooth pairings, and USB history into a narrative of cross-device identity, physical movement, and trust boundaries. dev.to/toxy4ny/rinh... #redteam #tool #iOS
dev.to
RinHit: Drilling into the macOS Ecosystem for Red Team Reconnaissance
"How we built an open-source macOS reconnaissance framework that turns Wi-Fi artifacts, Bluetooth...
030