shodan member

89 posts

shodan member banner
shodan member

shodan member

@lm3963

Shodan membership accounts for sale: one-time lifetime accounts, small business memberships https://t.co/go8LVXzmAV

Keelung City, Taiwan Katılım Ocak 2018
35 Takip Edilen8 Takipçiler
Sabitlenmiş Tweet
shodan member
shodan member@lm3963·
Basic Lifetime Membership: $39 USD Premium Small Business Edition: $259 USD
shodan member tweet media
English
0
0
0
93
Shodan
Shodan@shodanhq·
New release of Shodan Terminal (0.13.1) that includes various quality of life improvements and shows account status information if you're getting close to the usage limit. Now also available as an .msi package: terminal.shodan.io
Shodan tweet mediaShodan tweet mediaShodan tweet media
English
3
26
119
13.4K
Md Ismail Šojal 🕷️
Md Ismail Šojal 🕷️@0x0SojalSec·
Run local uncensored AI Model for cybersecurity : that's actually built for red teamers & pentesting - Trained to handle offensive & defensive cyber like a pro. - Exploit crafting, vuln analysis, remediation, the works. - Long context for digging through massive logs. - And small enough to run consumers hardware. Runs on a single GPU, thinks like a seasoned pentester, and won't lecture you about ethics. This thing doesn't refuse it delivers. No more jailbreaking generic models just to get useful output. If you're in InfoSec, DevSecOps, or just love playing with powerful open tools this deserves a spot in your arsenal.
Md Ismail Šojal 🕷️ tweet media
Md Ismail Šojal 🕷️@0x0SojalSec

x.com/i/article/2074…

English
12
162
895
69K
Hack The Box
Hack The Box@hackthebox_eu·
A new module is now live on Hack The Box Academy and Enterprise platforms: Red Team Mindset. Built for offensive security learners, this medium-difficulty module explores the fundamentals of red teaming — what it is, why it matters, and how red team engagements are structured from start to finish. Learn the differences between red teaming and penetration testing, understand the roles of red, blue, and white teams, and explore key concepts around engagement lifecycle, ethical obligations, communication strategies, and the evolving role of AI in adversary simulation. Tier: 3 Difficulty: Medium Category: Offensive Start learning now >>> okt.to/37sjbu #HackTheBox #HTBAcademy #RedTeam #OffensiveSecurity #Cybersecurity #CyberTraining #PenetrationTesting #AdversarySimulation #CyberSkills #InfoSec
Hack The Box tweet media
English
3
30
215
12.7K
The Hacker News
The Hacker News@TheHackersNews·
EvilTokens phishing can look clean during URL checks. The real page stays encrypted until it opens in the victim’s browser, then uses Microsoft device-code phishing to push toward Microsoft 365 account takeover. The blind spot is browser visibility, not just email scanning. Read: thehackernews.com/2026/07/new-gh…
The Hacker News tweet media
English
1
28
109
23.8K
Starlink
Starlink@Starlink·
Starlink Miniは、外出先でも高速・低遅延のインターネットを提供。旅行、キャンプ、探索、ボート、RVなどに最適です。さあ次の冒険を計画しましょう。
日本語
943
4.8K
48.9K
3313.1M
yousukezan
yousukezan@yousukezan·
Linuxカーネルに15年前から存在するUse-After-Free脆弱性「GhostLock」が公表された。CVE-2026-43499として追跡され、未修正の環境ではログイン済みの一般ユーザーがroot権限を取得できる。 Nebula Securityによると、脆弱なコードは2011年以降、主要ディストリビューションに既定で含まれてきた。悪用に特別な権限、特殊な設定、ネットワークアクセスは不要で、通常のスレッド関連呼び出しだけで発火するという。同社は検証で97%の信頼性を持つroot exploitを作成し、コンテナ脱出も可能だと報告した。 問題は、ロック処理が行き詰まって巻き戻されるまれなケースで、クリーンアップが誤ったタイミングで走り、別タスクの記録を消してしまうことにある。その結果、カーネルが解放済みで再利用されたメモリを指す古いポインタを信頼し、Use-After-Freeが成立する。 脆弱性は4月にcommit 3bfdc63936ddで修正され、GoogleのkernelCTFでNebulaに9万2337ドルが授与された。CVSSは7.8で、実際の悪用は確認されていないが、動作するexploitコードは公開済みである。 記事は、最初の修正に別のクラッシュ脆弱性CVE-2026-53166が生じたため、各ディストリビューションの最新カーネルを適用する必要があるとしている。完全な回避策はなく、共有サーバー、クラウド、コンテナ、CIランナーの優先更新が求められる。 thehackernews.com/2026/07/15-yea…
日本語
1
25
91
7.9K
Anastasis Vasileiadis
Anastasis Vasileiadis@Anastasis_King·
🐉 Kali Linux Cheatsheet — Essential Commands Guide Mastering basic Linux commands is essential for working efficiently in Kali Linux. This cheat sheet covers everyday commands for navigation, networking, file management, permissions, processes, and troubleshooting. 💬 Comment "KALI" for more! #CyberSecurity #KaliLinux #Linux #InfoSec #TechLearning
Anastasis Vasileiadis tweet mediaAnastasis Vasileiadis tweet mediaAnastasis Vasileiadis tweet mediaAnastasis Vasileiadis tweet media
English
7
12
85
2.8K
Cyber Security News
Cyber Security News@The_Cyber_News·
First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone Source: cybersecuritynews.com/android-17-roo… A full-chain exploit dubbed "IonStack" demonstrates how a single malicious URL click can hand attackers complete control over an Android device. The proof-of-concept, described as the world's first public Android 17 root demo, chains two zero-day vulnerabilities spanning Firefox and the Linux kernel to achieve remote code execution and privilege escalation without further user interaction. The exploit chain works by first compromising the Firefox renderer process through the browser flaw, then pivoting to the underlying Linux kernel (which powers Android) to break out of sandbox restrictions entirely. #cybersecuritynews #android
Cyber Security News tweet media
English
13
132
502
46.5K
Vivek | Cybersecurity
Vivek | Cybersecurity@VivekIntel·
PentesterFlow? AI Agent for Penetration Testing & Bug Bounty 💥💀 PentesterFlow is an open-source, human-in-the-loop AI CLI built specifically for penetration testers and bug bounty hunters. It combines LLMs, real security tools, persistent memory, and evidence-based reporting while keeping the analyst in control. ✨ Key Features: • 🛡️ Human approval before sensitive actions • 🔍 Built-in pentesting skills (IDOR, SSRF, JWT, GraphQL, SSTI, Race Conditions, Deserialization & more) • 🧠 Persistent memory and session resume for long engagements • ⚡ Supports Ollama, Gemini, Groq, OpenRouter, Kimi, DeepSeek, LM Studio & OpenAI-compatible APIs • 🔗 Burp Suite integration with finding import/export • 📊 Coverage tracking to identify untested endpoints and attack surfaces • 📝 Evidence-backed reporting with reproducible PoCs • 🔧 Shell, HTTP, Browser Capture, MCP, File Tools & Search integration 🔗 github.com/PentesterFlow/… #CyberSecurity #Pentesting #BugBounty #AppSec #AIAgents #OpenSource #GitHub #OffensiveSecurity
Vivek | Cybersecurity tweet media
English
4
67
378
12.2K
shodan member
shodan member@lm3963·
@shodanhq upstream connect error or disconnect/reset before headers. retried and the latest reset reason: connection failure, transport failure reason: delayed connect error: 111
English
1
0
1
73
ZoomEye
ZoomEye@zoomeye_team·
🚨 CVE-2025-67303 (CVSS 7.5): ComfyUIManager web interface Unauthorized Access An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration and critical data. This was due to the application storing its files in an insufficiently protected location that was accessible via the web interface Search by vul.cve Filter 👉 vul.cve="CVE-2025-67303" ZoomEye Dork 👉 app="ComfyUI" 14k+ exposed instances. ZoomEye Link: zoomeye.ai/searchResult?q… Refer: github.com/Comfy-Org/Comf… #ZoomEye #NetSec #OSINT #CyberSecurity #ComfyUI #Vulnerability #InfoSec #AttackSurface
ZoomEye tweet media
English
1
6
36
3.5K
ZoomEye
ZoomEye@zoomeye_team·
🚨 CVE-2026-23898: Joomla! Core - [20260305] - Arbitrary file deletion in com_joomlaupdate Joomla Autoupdate Server Allows Arbitrary File Deletion Attackers can bypass input validation in Joomla's autoupdate server endpoint by supplying crafted file paths (e.g., via directory traversal or unfiltered filenames), resulting in deletion of arbitrary files on the web server filesystem with web server privileges. Full Vulnerability Details & Analysis at DarkEye: 🔗 darkeye.org/vuln/cve/CVE-2… 🔍 Identify Targets via ZoomEye: Filter: vul.cve="CVE-2026-23898" Search Dork: app="Joomla" Exposure: 125.5k+ instances identified globally. ZoomEye Search Link: 👉 zoomeye.ai/searchResult?q… #Joomla #ArbitraryFileDeletion #CVE202623898 #InputValidation #WebServerExploit #DarkEye
ZoomEye tweet media
English
1
14
33
6.1K
Vivek | Cybersecurity
Vivek | Cybersecurity@VivekIntel·
CVE MCP Server — AI-Powered Vulnerability Intelligence Through MCP 🤖💀 CVE MCP Server transforms Claude into a security analyst by connecting 27 security tools and 21 intelligence sources through a single MCP interface. Key Features: • CVE lookup, EPSS, CVSS, KEV & CWE intelligence • Composite risk scoring and prioritization • Exploit & PoC discovery • MITRE ATT&CK and CAPEC mapping • IP reputation, GreyNoise & Shodan integration • VirusTotal, ThreatFox & MalwareBazaar support • Dependency vulnerability scanning via OSV[.]dev • Executive risk report generation Built with Python, FastMCP, httpx, aiosqlite, and Pydantic v2. 🔗 github.com/mukul975/cve-m… #CyberSecurity #ThreatIntelligence #MCP #OpenSource #VulnerabilityManagement
Vivek | Cybersecurity tweet media
English
2
68
365
15.1K
Cyber Security News
Cyber Security News@The_Cyber_News·
🚨 Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers Source: cybersecuritynews.com/windows-defend… A researcher known as Nightmare Eclipse has publicly released a new proof-of-concept (PoC) exploit named RoguePlanet, targeting a previously undisclosed race condition vulnerability in Microsoft Windows Defender. When successfully executed, the exploit spawns a command shell running under SYSTEM-level privileges, granting an attacker the highest possible access on a compromised Windows machine. The release, posted to GitHub, arrives on Patch Tuesday, June 10, 2026, adding urgency to an already escalating series of Defender-targeting disclosures. #cybersecuritynews
Cyber Security News tweet media
English
12
143
640
35.4K