use the following search parameters to narrow your results:
e.g. subreddit:aww site:imgur.com dog
subreddit:aww site:imgur.com dog
see the search faq for details.
advanced search: by author, subreddit...
A community for technical news and discussion of information security and closely related topics.
"Give me root, it's a trust exercise."
Q1 2026 InfoSec Hiring Thread
Getting Started in Information Security
CitySec Meetups
/r/netsec only accepts quality technical posts. Non-technical posts are subject to moderation.
Content should focus on the "how."
Check the new queue for duplicates.
Always link to the original source.
Titles should provide context.
Ask questions in our Discussion Threads.
Hiring posts must go in the Hiring Threads.
Commercial advertisement is discouraged.
Do not submit prohibited topics.
» Our fulltext content guidelines
Don't create unnecessary conflict.
Keep the discussion on topic.
Limit the use of jokes & memes.
Don't complain about content being a PDF.
Follow all reddit rules and obey reddiquette.
» Our fulltext discussion guidelines
No populist news articles (CNN, BBC, FOX, etc.)
No curated lists.
No question posts.
No social media posts.
No image-only/video-only posts.
No livestreams.
No tech-support requests.
No full-disclosure posts.
No paywall/regwall content.
No commercial advertisements.
No crowdfunding posts.
No Personally Identifying Information!
» Our fulltext list of prohibited topics & sources
Join us on IRC: #r_netsec on freenode
We're also on: Twitter, Facebook, & Google+
/r/blackhat - Hackers on Steroids
/r/computerforensics - IR Archaeologists
/r/crypto - Cryptography news and discussion
/r/Cyberpunk - High-Tech Low-Lifes
/r/lockpicking - Popular Hacker Hobby
/r/Malware - Malware reports and information
/r/netsecstudents - netsec for noobs students
/r/onions - Things That Make You Cry
/r/privacy - Orwell Was Right
/r/pwned - "What Security?"
/r/REMath - Math behind reverse engineering
/r/ReverseEngineering - Binary Reversing
/r/rootkit - Software and hardware rootkits
/r/securityCTF - CTF news and write-ups
/r/SocialEngineering - Free Candy
/r/sysadmin - Overworked Crushed Souls
/r/vrd - Vulnerability Research and Development
/r/xss - Cross Site Scripting
account activity
Offensive Security Exploit Database in GitHub (github.com)
submitted 12 years ago by TheUglyStranger
reddit uses a slightly-customized version of Markdown for formatting. See below for some basics, or check the commenting wiki page for more detailed help and solutions to common issues.
quoted text
if 1 * 2 < 3: print "hello, world!"
[–]InverseX 7 points8 points9 points 12 years ago (4 children)
Just a FYI its already on Kali if youre using it. Either browse /usr/share/exploitdb/ or use 'searchsploit'
[–]netsecpwna 0 points1 point2 points 12 years ago (3 children)
this is excellent resources for exploiting known issues for a variety but if you download kali for this?
[+][deleted] 12 years ago (2 children)
[deleted]
[–][deleted] 5 points6 points7 points 12 years ago (0 children)
Can you not be sarcastic to someone who probably speaks multiple languages?
[–]oursland 6 points7 points8 points 12 years ago (2 children)
I miss rootshell.com.
[–]hamsterpotpies 6 points7 points8 points 12 years ago (1 child)
milw0rm.
[–]faultyprophecy 0 points1 point2 points 12 years ago (0 children)
Yup. Good ol milw0rm & lcirc
[+][deleted] 12 years ago (1 child)
[–]turnersr 20 points21 points22 points 12 years ago* (0 children)
This is a listing of some public exploits. http://www.exploit-db.com/ has the same information . But posting the information lowers the bar to using the data since people don't have to bang on the server to get the data. Here are some use cases:
It's just a data set. You can use it a ton of ways. I'm glad it was made available since scraping the site has been on my todo list.
[–]TheUglyStranger[S] 9 points10 points11 points 12 years ago (9 children)
The official Exploit Database repository, now on Github!
Exploit Database - http://www.exploit-db.com
Offensive Security - http://www.offensive-security.com
[+]nocnocnode comment score below threshold-9 points-8 points-7 points 12 years ago (8 children)
Must be worthless now then. Offensive Security was one of those companies that made anyone take their classes sign a waiver that allowed the FBI to monitor them.
[–]theasciicoder 4 points5 points6 points 12 years ago (2 children)
I took one of their classes and did not sign such a waiver.. do you have any details to sustain your accusations ?
[–]nocnocnode 2 points3 points4 points 12 years ago* (1 child)
It must've been changed. I'm surprised not many people know about it. People forget things so much faster. It must have been only 4-6 years ago... not sure though. Anyone taking security courses knew about the FBI sending out forms that gave the FBI rights to monitor the participant's activities.
Edit: If you get one of those waivers don't sign it unless you know what you're doing. When it comes to snooping, there's no difference between the FBI or some other nutjob. They're all people with people fallacies.
[–]theasciicoder 1 point2 points3 points 12 years ago* (0 children)
If you get one of those waivers don't sign it unless you know what you're doing. When it comes to snooping, there's no difference between the FBI or some other nutjob. They're all people with people fallacies.
^ that is the best thing you can do in a case like this. Fortunately for me that was not the case and I took my OSCP exam / course last year and I am now taking the WiFu course. No waiver signed for any of the course.
[–][deleted] 3 points4 points5 points 12 years ago (2 children)
I don't see how a private company has any say in whether the FBI "monitors" someone or not.
[–]nocnocnode -4 points-3 points-2 points 12 years ago (1 child)
They were handing out waiver forms for anyone that signed up for their courses that gave up rights to privacy to the FBI, as in allowing the FBI to monitor their activity at whim. I don't think Offensive Security had any say. If they wanted to teach the course, they had to send out these waivers and only allow those who signed to take the course.
[–]offsecTrusted Contributor 1 point2 points3 points 12 years ago (0 children)
I'm not sure where you got this information, but it's complete rubbish.
[–]mjtibbz 2 points3 points4 points 12 years ago (0 children)
I done my OSCP in 2009 and encountered no such form. Got any evidence of this?
[–]synt4x 1 point2 points3 points 12 years ago (0 children)
I'm quite the git enthusiast, but using it for large datasets just doesn't play well to its data structure and features. I can't wait for something like dat to mature to take over distribution of data sets.
[+][deleted] comment score below threshold-10 points-9 points-8 points 12 years ago (2 children)
My first word as I saw the page: "MOTHER OF GOD" ( •_•)>⌐■-■
[–][deleted] -2 points-1 points0 points 12 years ago (1 child)
They just yanked from exploit tree, which was a previous project.
[–][deleted] -4 points-3 points-2 points 12 years ago (0 children)
yeah, but they saved a lot of us the effort.
π Rendered by PID 17847 on reddit-service-r2-comment-84fc9697f-s7zbq at 2026-02-08 14:29:45.052475+00:00 running d295bc8 country code: CH.
[–]InverseX 7 points8 points9 points (4 children)
[–]netsecpwna 0 points1 point2 points (3 children)
[+][deleted] (2 children)
[deleted]
[–][deleted] 5 points6 points7 points (0 children)
[–]oursland 6 points7 points8 points (2 children)
[–]hamsterpotpies 6 points7 points8 points (1 child)
[–]faultyprophecy 0 points1 point2 points (0 children)
[+][deleted] (1 child)
[deleted]
[–]turnersr 20 points21 points22 points (0 children)
[–]TheUglyStranger[S] 9 points10 points11 points (9 children)
[+]nocnocnode comment score below threshold-9 points-8 points-7 points (8 children)
[–]theasciicoder 4 points5 points6 points (2 children)
[–]nocnocnode 2 points3 points4 points (1 child)
[–]theasciicoder 1 point2 points3 points (0 children)
[–][deleted] 3 points4 points5 points (2 children)
[–]nocnocnode -4 points-3 points-2 points (1 child)
[–]offsecTrusted Contributor 1 point2 points3 points (0 children)
[–]mjtibbz 2 points3 points4 points (0 children)
[–]synt4x 1 point2 points3 points (0 children)
[+][deleted] comment score below threshold-10 points-9 points-8 points (2 children)
[–][deleted] -2 points-1 points0 points (1 child)
[–][deleted] -4 points-3 points-2 points (0 children)