Sabitlenmiş Tweet
shodan member
89 posts

shodan member
@lm3963
Shodan membership accounts for sale: one-time lifetime accounts, small business memberships https://t.co/go8LVXzmAV
Keelung City, Taiwan Katılım Ocak 2018
35 Takip Edilen8 Takipçiler

New release of Shodan Terminal (0.13.1) that includes various quality of life improvements and shows account status information if you're getting close to the usage limit. Now also available as an .msi package: terminal.shodan.io



English

@0x0SojalSec Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

Run local uncensored AI Model for cybersecurity : that's actually built for red teamers & pentesting
- Trained to handle offensive & defensive cyber like a pro.
- Exploit crafting, vuln analysis, remediation, the works.
- Long context for digging through massive logs.
- And small enough to run consumers hardware.
Runs on a single GPU, thinks like a seasoned pentester, and won't lecture you about ethics.
This thing doesn't refuse it delivers. No more jailbreaking generic models just to get useful output.
If you're in InfoSec, DevSecOps, or just love playing with powerful open tools this deserves a spot in your arsenal.

Md Ismail Šojal 🕷️@0x0SojalSec
English

@0x0SojalSec Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

@hackthebox_eu Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

A new module is now live on Hack The Box Academy and Enterprise platforms: Red Team Mindset.
Built for offensive security learners, this medium-difficulty module explores the fundamentals of red teaming — what it is, why it matters, and how red team engagements are structured from start to finish.
Learn the differences between red teaming and penetration testing, understand the roles of red, blue, and white teams, and explore key concepts around engagement lifecycle, ethical obligations, communication strategies, and the evolving role of AI in adversary simulation.
Tier: 3
Difficulty: Medium
Category: Offensive
Start learning now >>> okt.to/37sjbu
#HackTheBox #HTBAcademy #RedTeam #OffensiveSecurity #Cybersecurity #CyberTraining #PenetrationTesting #AdversarySimulation #CyberSkills #InfoSec

English

@TheHackersNews Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

EvilTokens phishing can look clean during URL checks.
The real page stays encrypted until it opens in the victim’s browser, then uses Microsoft device-code phishing to push toward Microsoft 365 account takeover.
The blind spot is browser visibility, not just email scanning.
Read: thehackernews.com/2026/07/new-gh…

English

@Starlink Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

@HunterMapping Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

🚨Alert🚨 CVE-2026-45659 : A Microsoft SharePoint Server Vulnerability Leading to Remote Code Execution via Deserialization of Untrusted Data.
📊 417.4K+ Services are found on the hunter.how yearly.
🔗Hunter
Link:hunter.how/list?searchVal…
HUNTER : product.name="SharePoint Server"
📰Refer:msrc.microsoft.com/update-guide/v…
thehackernews.com/2026/07/sharep…
#hunterhow #infosec #infosecurity #OSINT #Vulnerability

English

@yousukezan Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

Linuxカーネルに15年前から存在するUse-After-Free脆弱性「GhostLock」が公表された。CVE-2026-43499として追跡され、未修正の環境ではログイン済みの一般ユーザーがroot権限を取得できる。
Nebula Securityによると、脆弱なコードは2011年以降、主要ディストリビューションに既定で含まれてきた。悪用に特別な権限、特殊な設定、ネットワークアクセスは不要で、通常のスレッド関連呼び出しだけで発火するという。同社は検証で97%の信頼性を持つroot exploitを作成し、コンテナ脱出も可能だと報告した。
問題は、ロック処理が行き詰まって巻き戻されるまれなケースで、クリーンアップが誤ったタイミングで走り、別タスクの記録を消してしまうことにある。その結果、カーネルが解放済みで再利用されたメモリを指す古いポインタを信頼し、Use-After-Freeが成立する。
脆弱性は4月にcommit 3bfdc63936ddで修正され、GoogleのkernelCTFでNebulaに9万2337ドルが授与された。CVSSは7.8で、実際の悪用は確認されていないが、動作するexploitコードは公開済みである。
記事は、最初の修正に別のクラッシュ脆弱性CVE-2026-53166が生じたため、各ディストリビューションの最新カーネルを適用する必要があるとしている。完全な回避策はなく、共有サーバー、クラウド、コンテナ、CIランナーの優先更新が求められる。
thehackernews.com/2026/07/15-yea…
日本語

@Anastasis_King Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

🐉 Kali Linux Cheatsheet — Essential Commands Guide
Mastering basic Linux commands is essential for working efficiently in Kali Linux. This cheat sheet covers everyday commands for navigation, networking, file management, permissions, processes, and troubleshooting.
💬 Comment "KALI" for more!
#CyberSecurity #KaliLinux #Linux #InfoSec #TechLearning




English

@The_Cyber_News Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone
Source: cybersecuritynews.com/android-17-roo…
A full-chain exploit dubbed "IonStack" demonstrates how a single malicious URL click can hand attackers complete control over an Android device.
The proof-of-concept, described as the world's first public Android 17 root demo, chains two zero-day vulnerabilities spanning Firefox and the Linux kernel to achieve remote code execution and privilege escalation without further user interaction.
The exploit chain works by first compromising the Firefox renderer process through the browser flaw, then pivoting to the underlying Linux kernel (which powers Android) to break out of sandbox restrictions entirely.
#cybersecuritynews #android

English

@VivekIntel Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

PentesterFlow? AI Agent for Penetration Testing & Bug Bounty 💥💀
PentesterFlow is an open-source, human-in-the-loop AI CLI built specifically for penetration testers and bug bounty hunters. It combines LLMs, real security tools, persistent memory, and evidence-based reporting while keeping the analyst in control.
✨ Key Features:
• 🛡️ Human approval before sensitive actions
• 🔍 Built-in pentesting skills (IDOR, SSRF, JWT, GraphQL, SSTI, Race Conditions, Deserialization & more)
• 🧠 Persistent memory and session resume for long engagements
• ⚡ Supports Ollama, Gemini, Groq, OpenRouter, Kimi, DeepSeek, LM Studio & OpenAI-compatible APIs
• 🔗 Burp Suite integration with finding import/export
• 📊 Coverage tracking to identify untested endpoints and attack surfaces
• 📝 Evidence-backed reporting with reproducible PoCs
• 🔧 Shell, HTTP, Browser Capture, MCP, File Tools & Search integration
🔗 github.com/PentesterFlow/…
#CyberSecurity #Pentesting #BugBounty #AppSec #AIAgents #OpenSource #GitHub #OffensiveSecurity

English

@shodanhq upstream connect error or disconnect/reset before headers. retried and the latest reset reason: connection failure, transport failure reason: delayed connect error: 111
English

@zoomeye_team Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

🚨 CVE-2025-67303 (CVSS 7.5): ComfyUIManager web interface Unauthorized Access
An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration and critical data. This was due to the application storing its files in an insufficiently protected location that was accessible via the web interface
Search by vul.cve Filter 👉 vul.cve="CVE-2025-67303"
ZoomEye Dork 👉 app="ComfyUI"
14k+ exposed instances.
ZoomEye Link: zoomeye.ai/searchResult?q…
Refer: github.com/Comfy-Org/Comf…
#ZoomEye #NetSec #OSINT #CyberSecurity #ComfyUI #Vulnerability #InfoSec #AttackSurface

English

@zoomeye_team Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

🚨 CVE-2026-23898: Joomla! Core - [20260305] - Arbitrary file deletion in com_joomlaupdate
Joomla Autoupdate Server Allows Arbitrary File Deletion
Attackers can bypass input validation in Joomla's autoupdate server endpoint by supplying crafted file paths (e.g., via directory traversal or unfiltered filenames), resulting in deletion of arbitrary files on the web server filesystem with web server privileges.
Full Vulnerability Details & Analysis at DarkEye:
🔗 darkeye.org/vuln/cve/CVE-2…
🔍 Identify Targets via ZoomEye:
Filter: vul.cve="CVE-2026-23898"
Search Dork: app="Joomla"
Exposure: 125.5k+ instances identified globally.
ZoomEye Search Link:
👉 zoomeye.ai/searchResult?q…
#Joomla #ArbitraryFileDeletion #CVE202623898 #InputValidation #WebServerExploit #DarkEye

English

@VivekIntel Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

CVE MCP Server — AI-Powered Vulnerability Intelligence Through MCP 🤖💀
CVE MCP Server transforms Claude into a security analyst by connecting 27 security tools and 21 intelligence sources through a single MCP interface.
Key Features:
• CVE lookup, EPSS, CVSS, KEV & CWE intelligence
• Composite risk scoring and prioritization
• Exploit & PoC discovery
• MITRE ATT&CK and CAPEC mapping
• IP reputation, GreyNoise & Shodan integration
• VirusTotal, ThreatFox & MalwareBazaar support
• Dependency vulnerability scanning via OSV[.]dev
• Executive risk report generation
Built with Python, FastMCP, httpx, aiosqlite, and Pydantic v2.
🔗 github.com/mukul975/cve-m…
#CyberSecurity #ThreatIntelligence #MCP #OpenSource #VulnerabilityManagement

English

@obscaries Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

🔍 Exploring Wapiti, an open-source web vulnerability scanner that crawls web applications and automatically tests for issues like XSS, SQLi, SSRF, LFI, and more.
Repo: github.com/wapiti-scanner…
#BugBounty #AppSec #CyberSecurity #WebSecurity #Pentesting #InfoSec #OpenSource
English

@VivekIntel Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

Claude-BugHunter: 71 AI-Powered Skills for Bug Bounty Hunting and External Red Team Operations 💀🔥
🤖 Turn Claude into a Bug Hunting Assistant
Claude-BugHunter equips Claude Code with bug bounty methodologies, recon workflows, vulnerability hunting patterns, reporting guidance, and external red team tradecraft.
🔗 github.com/elementalsouls…
#BugBounty #CyberSecurity #ClaudeCode #AppSec #RedTeam #AI #OpenSource
English

@The_Cyber_News Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

🚨 Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers
Source: cybersecuritynews.com/windows-defend…
A researcher known as Nightmare Eclipse has publicly released a new proof-of-concept (PoC) exploit named RoguePlanet, targeting a previously undisclosed race condition vulnerability in Microsoft Windows Defender.
When successfully executed, the exploit spawns a command shell running under SYSTEM-level privileges, granting an attacker the highest possible access on a compromised Windows machine.
The release, posted to GitHub, arrives on Patch Tuesday, June 10, 2026, adding urgency to an already escalating series of Defender-targeting disclosures.
#cybersecuritynews

English

@VivekIntel Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

🐞 BugHunter: AI-Powered Bug Bounty Hunting Without a Subscription
A terminal-first toolkit that automates recon, vulnerability discovery, validation, and report writing. Run it with Claude Code or completely standalone using local and free AI providers.
🔗 github.com/shuvonsec/clau…
#bugbounty #RedTeam #CyberSecurity #AIAgents #OpenSource #Pentesting

English

@co11ateral @three_cube @_aircorridor Shodan members get a discount.
Basic Lifetime Membership: $29 USD
Premium Small Business Edition: $259 USD
x.com/lm3963
English

Vulnerability Scanning - Automatic Search For Known CVEs With CVEScannerV2
CVEScannerV2 uses nmap’s service detection with vulnerability analysis, giving a more detailed view of the network’s security.
hackers-arise.com/vulnerability-…
@three_cube @_aircorridor #pentesting

English

