Flipper Zero eBook

467 posts

Flipper Zero eBook banner
Flipper Zero eBook

Flipper Zero eBook

@flipperzerobook

Hack Like A Pro With Flipper Zero. Author Peter Logan. Available at Amazon, Apple and Kobo.

Bergabung Eylül 2025
4.1K Mengikuti428 Pengikut
Winston Ighodaro
Winston Ighodaro@Officialwhyte22·
Another day to on Malware Analysis Labs
Winston Ighodaro tweet media
English
3
10
86
5.3K
David Bombal
David Bombal@davidbombal·
What is an IDOR? Google and Uber got hacked this way. Discover how a simple IDOR vulnerability can dump an entire database. Learn why this basic API bug still earns massive bug bounty payouts in 2026 from tech giants like Google and Meta. This video is sponsored by @ThreatLocker
English
2
13
76
3.6K
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@h4x0r_dz Great example of how similar vulnerability patterns can appear across completely different applications. 🔍
English
0
0
0
9
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@0x534c Prompt injection is becoming one of the most important AI security challenges. 🤖🔒
English
0
0
0
11
Steven Lim
Steven Lim@0x534c·
🚨 Detecting External Copilot Prompt Attacks 🚨 Varonis’ latest SearchLeak research shows how attackers can chain P2P injection, HTML injection, and SSRF to coerce enterprise Copilot into leaking sensitive data. varonis.com/blog/searchleak Although Microsoft has patched CVE‑2026‑42824, defenders now face a new reality: knowing the URL format that can trigger Copilot prompts means adversaries can weaponize links in email, Teams, and Office documents to break guardrails and exfiltrate data. To counter this, defenders must monitor for suspicious link activity that could coerce users into executing external Copilot prompts. Below is a KQL detection designed to surface potential external threats where attackers attempt to force Copilot into unsafe prompting behavior. github.com/SlimKQL/Detect… #Cybersecurity #CopilotPrompt #DataExfiltration
Steven Lim tweet media
English
1
20
82
4.8K
Code4 Cybersecurity
Code4 Cybersecurity@Code4_CyberSec·
Top 5 Free Tools Every Threat Hunter Should Have - Velociraptor - Sigma - Atomic Red Team - Loki - OSQuery </CODE4> #DFIR #SOC #L1 #L2
Code4 Cybersecurity tweet mediaCode4 Cybersecurity tweet mediaCode4 Cybersecurity tweet media
English
1
2
34
1.8K
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@TheHackersNews Attackers are increasingly targeting trust relationships rather than technical vulnerabilities.
English
0
0
0
5
The Hacker News
The Hacker News@TheHackersNews·
⚡ Developers are being targeted where they work: GitHub repos VS Code projects npm packages Packagist Crypto/Web3 lures Researchers say North Korea-linked activity sent 250+ phishing emails to targets at nearly 100 organizations, aiming to steal credentials, wallet data, keys, and access. Read ➝ thehackernews.com/2026/06/north-…
The Hacker News tweet media
English
5
8
36
7.3K
Anastasis Vasileiadis
Anastasis Vasileiadis@Anastasis_King·
📱💀 Your Phone Can Become a Cybersecurity Lab… Most people use Termux for basic commands… but few realize how powerful it can become. 👀 In this guide, I’m sharing 15 useful Termux tools that can help cybersecurity enthusiasts better understand networking, web security, automation, recon, and mobile learning workflows — all from a phone. ⚡ 🧠 Your smartphone might be more powerful than you think. ⚠️ Educational & authorized lab environments only. 💬 Comment “TERMUX” for the full list. #Termux #CyberSecurity #Android #Linux #InfoSec
Anastasis Vasileiadis tweet media
English
5
18
101
1.6K
YesWeHack ⠵
YesWeHack ⠵@yeswehack·
💡 SSRF hides where devs don't expect outbound requests - Referer headers, SVG uploads, XML parsers. These sinks survive in production because nobody thought to protect them. We mapped them all 👇 yeswehack.com/learn-bug-boun…
English
1
12
67
1.9K
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@tom_doerr OSINT and digital footprint analysis continue to be invaluable for both security professionals and researchers.
English
0
0
0
2
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@three_cube Reconnaissance is usually the first step. Understanding what information is exposed is key to defending it.
English
0
0
0
7
OccupytheWeb
OccupytheWeb@three_cube·
Mobile Network Hacking: Reconnaissance on Your Local Mobile Network Hackers can gather information on your local mobile network to: 1. Intercept Your Mobile Traffic 2. Track Your Location 3. Deny Use Access to the Mobile Network (DoS)
OccupytheWeb tweet media
English
1
14
44
1.6K
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@Mandiant The most dangerous intrusions are often the ones that blend into normal administrative activity.
English
0
0
0
6
Mandiant (part of Google Cloud)
PRC-nexus actor UNC6508 targeted North American research, exploiting REDCap servers to deploy INFINITERED malware. The actor remained undetected for over a year and abused enterprise admin tools for covert data exfil. Analysis, guidance and IOCs ➔ cloud.google.com/blog/topics/th…
Mandiant (part of Google Cloud) tweet media
English
2
25
77
6.2K
Nextron Research ⚡️
Nextron Research ⚡️@nextronresearch·
We found a WHQL-signed kernel module that abuses Windows firmware table registration as a covert kernel↔user communication channel. Instead of exposing a device object and IOCTL interface, it registers a custom firmware provider ("BSBS"), allowing userland interaction through standard Windows firmware table APIs. The implementation is compact and stealthy, supporting memory allocation, memory copy operations, and indirect function dispatch from user mode into kernel context. An unusual example of firmware table registration being repurposed as a hidden ring3↔ring0 communication mechanism. Name: NewDriverMMM SHA256: 1d9224a72e64bb2aad289edc81ea0720c764511c3e2b5beb5d0d5ce82a719abd fdb3907ddda9ff9bd9ec4f8bd29aad823da77b5b3bf599813fecd034b0221189 SpcSpOpusInfo: 深圳市奥联信息安全技术有限公司 Telemetry: China 🇨🇳, Japan 🇯🇵
Nextron Research ⚡️ tweet mediaNextron Research ⚡️ tweet media
English
2
19
66
7.5K
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@co11ateral The most dangerous findings are often the small ones that can be chained together.
English
1
0
0
15
Co11ateral
Co11ateral@co11ateral·
Speeding up AD Pentests with ADScan and ADPulse Active Directory pentesting often starts with the same repetitive checks, but ADScan and ADPulse can help you automate them. The pentest does not always end with full domain compromise. Success is not measured by whether you obtain Domain Admin privileges, but by how well you identify and communicate risks that could impact the organization. Sometimes the most critical findings involve exposed data, weak configurations, or small mistakes that could later be chained into larger attacks. hackers-arise.com/offensive-secu… @three_cube @_aircorridor #pentesting #redteam
Co11ateral tweet media
English
1
22
100
3.2K
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@5mukx Malware keeps changing its appearance. Its behavior still leaves clues.
English
0
0
0
26
Smukx.E
Smukx.E@5mukx·
The Art of Self-Mutating Malware TL;DR: This blog covers building self mutating (polymorphic & metamorphic) malware that evolves its code each time it runs to evade detection. Blog:- f00crew.org/0x48 #polymorphic #malware
Smukx.E tweet mediaSmukx.E tweet media
English
9
74
379
10.8K
Dave Kennedy
Dave Kennedy@HackingDave·
Our biggest issue in the SOC was alarm fatigue. AI changes all of that. Check out what we are doing @Binary_Defense to completely re-think how we look at risk within an organizations visibility infrastructure. Operations Room - view realtime threats, automatic correlation, grouping, full breakdown of events and timelines, bulk 100 alarms to one situation, automatically respond. AI changes everything. #BinaryDefense
Dave Kennedy tweet mediaDave Kennedy tweet mediaDave Kennedy tweet mediaDave Kennedy tweet media
English
8
7
87
5.5K
TryHackMe
TryHackMe@tryhackme·
Most incident response plans look solid… until an actual attack tests them 🚨 Step into Nexus Financial’s IR documentation, find the gaps, and see how preparation can be the difference between detection and disaster 🔍 🚨 Find the gaps before attackers do 👇 tryhackme.com/room/irprepara…
TryHackMe tweet media
English
1
6
69
3.6K
Flipper Zero eBook
Flipper Zero eBook@flipperzerobook·
@7h3h4ckv157 The best bug bounty workflow in 2026 is human intelligence amplified by artificial intelligence.
English
0
0
1
42
UniqueComputingSolutions
This Monday, take a closer look at your business cyber hygiene. Episode 85 of The Business Owner’s IT Podcast drops Friday, June 26th, featuring Ryan Carter and John Gallegos discussing Flipper Zero business security risks. Subscribe 👉 ow.ly/hIO250ZbRl2 #business #tech
English
1
0
1
14