hashID and Name-That-Hash tested against current password formats. Both miss bcrypt’s $2b$ prefix; only Name-That-Hash recognises Argon2id.
Category: Darknet – Hacking Tools, Hacker News & Cyber Security
whitelist-bypass – WebRTC Tunnels Through Video-Calling Platforms
whitelist-bypass tunnels traffic through commercial video calls, for networks that allow only approved domains. How its two tunnels work, and the claim to…
WRAITH – Browser Hooking and Blind XSS Page Mirroring
WRAITH combines BeEF-style browser hooks with blind-XSS capture and a credentialed Page Mirror. Tested locally, with its limits examined.
WRAITH – Browser Hooking and Blind XSS Page Mirroring
WRAITH combines BeEF-style browser hooks with blind-XSS capture and a credentialed Page Mirror. Tested locally, with its limits examined.
Praetorian – Offensive Security Tools Built Around Portable Go Workflows
Praetorian’s Go security tools consolidate established offensive workflows, with portable binaries, direct pipelines and a partial shared SDK.
AI IR Overlay – Incident Response Specification for AI Agents
AI IR Overlay specifies containment for agents using valid credentials, with a working kill-switch contract and an admitted gap when no SOC is staffed.
MSSQLand – Lightweight MS-SQL Interaction Tool for Lateral Movement and Post-Exploitation
MSSQLand enables red teams to interact with MS-SQL servers and linked instances in restricted environments without complex T-SQL queries. Assembly-ready tool for lateral movement. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read…
Credential Stuffing in 2025 – How Combolists, Infostealers and Account Takeover Became an Industry
Credential stuffing drove 22% of all breaches in 2025. How combolists, infostealers and ATO tooling are fuelling enterprise account takeover at scale This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original…
Credential Stuffing in 2025 – How Combolists, Infostealers and Account Takeover Became an Industry
Credential stuffing drove 22% of all breaches in 2025. How combolists, infostealers and ATO tooling are fuelling enterprise account takeover at scale This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original…
DumpBrowserSecrets – Browser Credential Harvesting with App-Bound Encryption Bypass
DumpBrowserSecrets extracts saved passwords, cookies, OAuth tokens and autofill data from Chrome, Edge, Firefox, Opera and Vivaldi, bypassing App-Bound Encryption via Early Bird APC injection. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security…
SmbCrawler – SMB Share Discovery and Secret-Hunting
SmbCrawler is a credentialed SMB share crawler for red teams that discovers misconfigured shares and hunts secrets across Windows networks. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article: SmbCrawler…
Systemic Ransomware Events in 2025 – How Jaguar Land Rover Showed What a Category 3 Supply Chain Breach Looks Like
Systemic ransomware events in 2025, how Jaguar Land Rover’s shutdown exposed Category 3 supply chain risk, with lessons from Toyota, Nissan and Ferrari. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the…
Heisenberg Dependency Health Check – GitHub Action for Supply Chain Risk
Heisenberg Dependency Health Check is a GitHub Action that flags risky or newly introduced dependencies in pull requests using supply-chain signals. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article:…
Dark Web Search Engines in 2025 – Enterprise Monitoring, APIs and IOC Hunting
Dark web search engines in 2025 and how enterprises use monitoring, APIs and IOC hunting to detect credential leaks, impersonation and supply chain exposure. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read…
mcp-scan – Real-Time Guardrail Monitoring and Dynamic Proxy for MCP Servers
mcp-scan is a dynamic proxy and guardrail monitor for MCP servers, providing real-time traffic inspection and enforcement for agents and tools. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article:…
Reconnoitre – Open-Source Reconnaissance and Service Enumeration Tool
Reconnoitre automates network reconnaissance and service enumeration for penetration testers and red teams using structured, repeatable workflows. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article: Reconnoitre – Open-Source Reconnaissance…
Scanners-Box – Open-Source Reconnaissance and Scanning Toolkit
Scanners-Box is an open-source reconnaissance and scanning toolkit for red teams and security researchers. Curated collection of scanners and recon utilities. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article:…
Red Teaming LLMs 2025 – Offensive Security Meets Generative AI
Offensive red teaming of large language models (LLMs) in 2025 – actionable tactics, case studies, and CISO controls for GenAI risk This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article:…
gitlab-runner-research – PoC for abusing self-hosted GitLab runners
gitlab-runner-research: PoC scripts demonstrating abuse of self-hosted GitLab runners and practical hardening and detection guidance. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article: gitlab-runner-research – PoC for abusing self-hosted…
mcp-scanner – Python MCP Scanner for Prompt-Injection and Insecure Agents
mcp-scanner: Python tool to scan Model Context Protocol servers for prompt injection, jailbreaks, and insecure tool patterns. This article has been indexed from Darknet – Hacking Tools, Hacker News & Cyber Security Read the original article: mcp-scanner – Python MCP…
