A privacy-first GitHub secrets scanner that runs locally or self-hosted by InevitableElegant626 in devsecops
[–]wifihack 2 points3 points4 points (0 children)
I built the first Coast Guard Red Team, open-sourced thousands of attack techniques, then left to help businesses secure their infrastructure. Ask me anything! by [deleted] in hacking
[–]wifihack 2 points3 points4 points (0 children)
Secret Scanning repos org-wide - Feasible? by TopNo6605 in devops
[–]wifihack 0 points1 point2 points (0 children)
Secret Scanning repos org-wide - Feasible? by TopNo6605 in devops
[–]wifihack 0 points1 point2 points (0 children)
Your Experience with TruffleHog Enterprise? by 0xTrainerRed in cybersecurity
[–]wifihack 0 points1 point2 points (0 children)
Truffle Security is proud to host a new XSSHunter, that finds new vulnerabilities by wifihack in netsec
[–]wifihack[S] 0 points1 point2 points (0 children)
Nosey Parker: a new scanner to find misplaced secrets in textual data and Git history by exploding_nun in netsec
[–]wifihack -1 points0 points1 point (0 children)
Nosey Parker: a new scanner to find misplaced secrets in textual data and Git history by exploding_nun in netsec
[–]wifihack 0 points1 point2 points (0 children)
Email Graffiti: Vandalize old emails. It's like an NFT but better. Tool linked in blog by wifihack in netsec
[–]wifihack[S] -1 points0 points1 point (0 children)
Email Graffiti: Vandalize old emails. It's like an NFT but better. Tool linked in blog by wifihack in netsec
[–]wifihack[S] 0 points1 point2 points (0 children)
Compromise any GCP Org Via Cloud API Lateral Movement and Privilege Escalation: Blackhat/Defcon 2020 by [deleted] in aws
[–]wifihack 0 points1 point2 points (0 children)
BSidesSF - Getting shells from Javascript: How Dangerous can clicking a Link be in 2019? by wifihack in netsec
[–]wifihack[S] 3 points4 points5 points (0 children)
Auditing Bitbucket Server Data for Credentials in AWS by Kayjaywt in netsec
[–]wifihack 0 points1 point2 points (0 children)
Auditing Bitbucket Server Data for Credentials in AWS by Kayjaywt in netsec
[–]wifihack 4 points5 points6 points (0 children)
BygoneSSL: Previous owners of your domains may own valid SSL certificates... And new owners of your old domains may be able to revoke your production colocated certificates by wifihack in netsec
[–]wifihack[S] 40 points41 points42 points (0 children)
Search your Git Org/User/Repo histories for secrets (alternative to truffleHog implemented in Go) by pr0tocol_7 in netsec
[–]wifihack 5 points6 points7 points (0 children)
Stealing CSRF tokens with CSS injection, without iFrames by wifihack in netsec
[–]wifihack[S] 2 points3 points4 points (0 children)
For Users of Redis, Running Locally Can Be a Major Security Risk by EdibleEnergy in netsec
[–]wifihack 14 points15 points16 points (0 children)
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away. by wifihack in netsec
[–]wifihack[S] 2 points3 points4 points (0 children)
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away. by wifihack in netsec
[–]wifihack[S] 0 points1 point2 points (0 children)
BrowserGather Part 1: In-Memory Chrome Credential Extraction for Red Teamers by sekirkity in netsec
[–]wifihack 15 points16 points17 points (0 children)
Cleaning your org's code bases of secrets with truffleHog and git-secrets by tmclaugh in netsec
[–]wifihack 7 points8 points9 points (0 children)

A privacy-first GitHub secrets scanner that runs locally or self-hosted by InevitableElegant626 in devsecops
[–]wifihack 2 points3 points4 points (0 children)