Elektrine
EN
Log in Register
Paige Chat Timeline Gallery Friends Lists Email Drive DNS Resolver Domains VPN Kairo Nerve
Remote

Pentest-Tools.com

@pentesttools@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Pentest-Tools.com is a product for AI-enhanced offensive security testing. We built it for teams who need reliable proof to validate vulnerabilities in networks, web apps, cloud, and APIs.

Over 2,000 teams in 119 countries trust us to scrutinize their infrastructures.

Toots about #offensivesecurity #penetrationtesting / #pentesting #ethicalhacking and other #infosec topics we care about

297 Followers
261 Following
25 Posts
Joined December 27, 2022
Offensive security research (new CVEs):
https://pentest-tools.com/research
Free account:
https://pentest-tools.com/usage/pricing/free
Product:
https://pentest-tools.com/product
Blog:
https://pentest-tools.com/blog
LinkedIn (51k peeps):
https://www.linkedin.com/company/pentesttools
Youtube:
https://www.youtube.com/c/PentestToolscom
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

#WordPress admins - we got you covered! 🫡 → We've just shipped detection for #wp2shell through our Network Scanner. ⚡️ The fastest way to use it is to:

◉ run a single-CVE scan for CVE-2026-63030 - which also covers CVE-2026-60137 - the SQL injection flaw that chains to give attackers RCE
◉ Based on your scan results, either patch or confirm you're already on 6.8.6, 6.9.5, or 7.0.2.
◉ Re-scan to confirm remediation and rule out residual exposure across your other assets.

Remember: updating your main install doesn't cover *every* WP instance you own. Using Pentest-Tools.com means you can expand visibility across your wider attack surface, not just the site you remember exists.

Technical CVE details below. ↘︎↘︎↘︎

See why an estimated 500+ million websites running WP are vulnerable to this critical vulnerability: https://pentest-tools.com/vulnerabilities-exploits/wordpress-core-69-701-pre-auth-blind-sql-injection-batch-route-confusion_29451

#vulnerabilityassessment #ethicalhacking #offensivesecurity

1
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago
Here we go. Product updates - the June edition. This month your coverage got a LOT wider. 80 new detections landed in the Network Scanner, including pre-auth RCE in Oracle PeopleSoft and an auth bypass in Palo Alto PAN-OS. If any are in your scope, you know where to look. The rest of June: 🌐 Our research team found two authentication flaws in phpBB, one buried in the code for over a decade. There's a working PoC for each, and the Network Scanner now detects the most critical one - CVE-2026-48611 (9.4). 🤖 AI where it earns its place in the Website Scanner and URL Fuzzer: smarter logins, deeper crawling, fewer fake 200 pages. 🎯 the XSS Exploiter now gives you two delivery options: script tag or fetch plus eval. 🔌 API: a new info_text key on /scans tells you why a scan didn't start. ☁️ We're now on the Microsoft Azure Marketplace, so you can add us to your existing Azure billing. Our colleague Stefan Perju walks you through all of it in the video. Until next time: stay sharp. Stay human. Everything that shipped can be found in the change-log: https://pentest-tools.com/change-log The phpBB PoCs and full write-up: https://pentest-tools.com/research/phpbb-authentication-bypass #offensivesecurity #vulnerabilitymanagement #infosec #penetrationtesting
1
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 5mo ago

🏴‍☠️ Least privilege? FuelCMS didn't get the memo.

Any authenticated user (regardless of role) can call the Blocks module endpoint. Pair that with PTT-2025-026 and a low privilege (one could even say zero-permission) account becomes full RCE. CVSSv3 goes from 5.4 to 8.8 faster than you can say "access denied."

No patch. ~4 years of unmaintained software. You know the drill.

Matei "Mal" Bădănoiu and Raul Bledea found the gap. Full PoC can be found in our Offensive Security Research Hub: https://pentest-tools.com/research

#offensivesecurity #vulnerabilityresearch #infosec #RCE

Offensive security research hub
Pentest-Tools.com

Offensive security research hub

Discover original 0-days, detailed advisories, and stories behind the offensive security research team at Pentest-Tools.com. Explore latest findings.

0
0
4
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago
Our SQL Injection Scanner is a bit of a skeptic. It won't take a hunch for an answer. It fires a real payload, watches how the database actually responds, and _only then_ calls it a finding. It's free to try, and it catches: ✅ Error-based, when the database spills its structure in an error ✅ Blind, when only a true or false response gives it away ✅ Time-based, when a deliberate delay is the only tell ✅ Union-based, when someone's pulling data from tables they shouldn't touch Every finding comes with the parameter, the payload, and the database response. Enough to reproduce it, not just believe it. Try it as a test, no account needed. Link is here https://pentest-tools.com/website-vulnerability-scanning/sql-injection-scanner-online #offensivesecurity #penetrationtesting #ethicalhacking
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago
React2Shell. NGINX Rift. cPanel. ToolShell. Every one of them was a scramble for someone. Which assets does this touch? Is it real? Did we actually close it? Next week, on Wednesday, Pentest-Tools.com Office Hours is about turning that scramble into a workflow. u/Jan Pedersen hosts a live walkthrough of emergency CVE response, across two situations: an environment you’ve just inherited and don’t fully know, and one you know well and want reacting to new CVEs for you. How to find affected assets fast, how to tell a genuine exposure from a version match, and how comparing one scan to the next proves what you actually closed. 30 minutes live. 15 minutes of open Q&A. One session. Register here: https://zoom.us/webinar/register/5417815287714/WN_O1WFe8opSDeTB4KAOTYMcA
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago
Confirming a finding is the good part of the job. When that "maybe" becomes a yes, with PoC and all... But SOC 2 Type II wants twelve months of those. And most audit gaps aren't weak scanning. They're teams who did the work but can't produce the trail. Here's where Pentest-Tools.com does the lifting, turning your testing into evidence as you go: ✅ Detection: scheduled scans log every finding timestamped, CVE-tagged, per asset ✅ Validation: the Confirmed label backs findings with request/response data and a PoC ✅ Remediation: retest workflows produce the before-and-after auditors ask for ✅ Proof it held: monitoring between scans, plus audit-ready exports in PDF, DOCX, or JSON The record assembles itself while you do the part you came for. Here is the SOC 2 evidence chain: https://pentest-tools.com/usage/compliance/soc2
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago
We point our own product at ourselves. The scanners and exploit modules our customers run, we run against our own infrastructure and web apps. New critical CVE, our own assets are among the first we test, so detection and validation hold up on us before they reach anyone else. The rest is the auditable stuff: ISO 27001, hosting and data retention, encryption, and where AI sits in the product (noise reduction, not deciding what's exploitable). All public, no NDA or sales call. Poke holes in it: https://pentest-tools.com/legal/trust-and-assurance #infosec #offensivesecurity #pentesting
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago
We kept getting asked the same handful of questions before people would trust us with a scan against prod. So we answered them properly instead of one at a time on sales calls. Non-destructive by default. Our own detection engines, not a wrapper around someone else's open source tools. Findings come with evidence, not just a severity label. Data stays on EU infrastructure, workspaces isolated. Full FAQ: https://pentest-tools.com/product/faq #offensivesecurity #pentesting
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

Knowing you're exposed to a new CVE, with proof, before anyone has to ask. That's the moment that matters.

NIS2 gives you 24 hours to raise the alarm once you know something's live. Get it wrong or too slow, and fines run into the millions, with leadership personally on the hook.
Here's where Pentest-Tools.com does the lifting, so the answer is ready before the clock starts:

✅ Detection: every scan logs the CVE, severity, and timestamp
✅ Validation: confirmed findings come with proof, not just a score
✅ Remediation: retests show the before and after
✅ Monitoring: scheduled rescans keep the record current, not annual

When the next CVE lands, you're not racing the clock. You already know.

Full NIS2 evidence chain: https://pentest-tools.com/usage/compliance/nis2

#NIS2 #offensivesecurity #infosec

NIS2 compliance evidence
Pentest-Tools.com

NIS2 compliance evidence

Continuous vulnerability evidence for NIS2 Article 21 and 23: scheduled scans, Confirmed findings with proof, retests, and audit-ready exports.

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

👂 There's a lot of noise out there. The good stuff comes from a handful of people you've learned to trust.

We've all got that short list. Vote below, then share it in the comments: who's the one you'd tell someone just starting out to follow? 👇

Who do you actually trust most for cybersecurity insights?

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

A public PoC called LegacyHive targets the Windows User Profile Service. It lets a standard user mount another user's registry hive, potentially an admin's, under their own classes root. No CVE, no Microsoft advisory, no patch.

The researcher behind it has released a run of uncoordinated zero-days since April. Several past drops got weaponized within days and landed on CISA's KEV catalog. This one lands the same week as a record 622-flaw Patch Tuesday.

Matei Badanoiu, our lead security researcher, told The Register the PoC is a "genuinely useful primitive" for an attacker who already has a foothold, but turning that into a full compromise still needs credential access and persistence the released code doesn't provide.
Interim steps: restrict local standard-user account creation, monitor ProfSvc for unexpected hive loads, watch NTUSER.DAT/UsrClass.dat activity, and patch once Microsoft ships one.

theregister.com/security/2026/07/15/microsofts-serial-tormentor-drops-legacyhive-0-day/5271723

#cybersecurity #informationsecurity

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

Zero CVEs doesn't mean zero risk. XZ had zero CVEs too, right up until v5.6.0 shipped a backdoor.

RapidFort and ReversingLabs just launched a hardened OSS library catalog for that exact gap: checking what a package contains, not matching it to a CVE list.

Our lead researcher Matei Badanoiu told The New Stack it's real progress. The call between feature, vulnerability, and backdoor still needs a human.

https://thenewstack.io/zero-cve-supply-chain-risk/
#offensivesecurity #cybersecurity

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

GhostLock (CVE-2026-43499): a use-after-free in the Linux kernel, shipped by default since 2011 and disclosed this week. Any logged-in user gets full root in about five seconds, and it escapes containers.
The story isn't that it exists, it's how reliable it is. Daniel Bechenea, security manager at Pentest-Tools.com:
"An exploit reported at 97% reliable, with public code anyone can run, changes that math."
Kernel privesc used to be the exploit you thought twice about firing. A near-deterministic one with public code removes the hesitation.
Patch to a fixed kernel now. Until it reaches every host, treat any code execution on an unpatched box as root and verify the kernel version per system. Don't assume the April fix propagated.
Full breakdown by Emma Woollacott at ITPro: https://www.itpro.com/software/linux/cyber-researchers-sound-alarm-over-a-15-year-old-linux-kernel-flaw-ghostlock-could-let-hackers-seize-unpatched-machines-in-just-five-seconds
#offensivesecurity #penetrationtesting #cybersecurity

0
0
1
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

We all watch the patch timer.
When you're still working out what the new CVE actually touches, things can feel slooooow.

Critical CVE drops. What slows your "are we exposed?" answer most?

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

You think it's closed, but it's actually reachable. 😬
That "temporary" rule from your last migration? Probably still open, and better you find it than your auditor does.

Scan your own perimeter from outside before the audit: open TCP and UDP ports, the services behind them, their versions. Close what shouldn't be there, re-scan, confirm. Then nothing in the audit is a surprise.

Nmap does this, or our hosted Port Scanner gives you an exportable report: https://pentest-tools.com/network-vulnerability-scanning/port-scanner-online-nmap
#offensivesecurity #pentesting

Free Port Scanner with Nmap 🛡️ scan for open TCP and UDP ports
Pentest-Tools.com

Free Port Scanner with Nmap 🛡️ scan for open TCP and UDP ports

Use our Nmap-powered port scanner to find open TCP or UDP ports and services. Free online port checker to map your network perimeter and attack surface.

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

Turns out 210,000+ people didn't have to survive a sales pitch to experience how our product works. They just started using our Free Edition!

That's the whole idea:
✅ Real offsec tools you can use every day (with limits, ofc)
✅ Real vulnerability scans on targets you're cleared to test & monitor
✅ Results you can export as PDF, HTML, CSV, or XLSX

Don't take our word for it. Sign up for free ⬇️

https://pentest-tools.com/usage/pricing/free
#offensivesecurity #vulnerabilityassessment #cybersecurity

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

Remember the phpBB authentication bypass our research team found? We said the proof was coming. 💥 It's here.

Two working PoCs, one for each vulnerability, are now live in the research:

👉 PTT-2026-004 (CVE-2026-48611, 9.4): the PoC shows the full path from a single crafted request to a valid admin session. No credentials that work, no prior access, no user interaction. Just the request and the session cookie that _shouldn't_ exist.

👉 PTT-2026-005 (CVE-2026-48612, 8.3): the PoC walks through the silent OAuth account takeover, including the case where the victim only has to load a forum post for the chain to fire.

Talk is cheap in this line of work, so check out both PoCs, plus the mitigation steps: https://pentest-tools.com/research/phpbb-authentication-bypass

phpBB 3.3.17 fixes both. If you haven't patched, the PoCs are a good reason to move today.

#offensivesecurity #vulnerabilityresearch #infosec

phpBB authentication bypass: CVE-2026-48611 and CVE-2026-48612
Pentest-Tools.com

phpBB authentication bypass: CVE-2026-48611 and CVE-2026-48612

Two critical phpBB vulnerabilities found by Pentest-Tools.com let attackers hijack accounts without a password. See how they work, who

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

Halfway through 2026 is a good time to run a diff on your own year.

Back in January you had a plan. Six months of real engagements later, some of it held and some of it you _quietly_ 🫢 rewrote.

So what actually changed in how you work?

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

If you run a security services practice, this number from our 2026 survey is worth a minute:

51% of developers see vulnerabilities surface in AI-assisted code after deployment. Roughly one in three say code sometimes ships before review is complete.

Your clients are shipping more code, faster, with the same review capacity they had a year ago. The exposure window between deploy and validation is widening on every engagement you scope.

A few things this changes for service delivery:

▸ Quarterly snapshots stop matching how the client's attack surface actually moves

▸ "We detected this" without exploit confirmation gets harder to defend in client escalations

▸ Audit evidence has to be a by-product of testing, not a separate prep cycle per client

The teams retaining clients well are the ones whose findings come with request and response data, exploit traces, and retest artifacts attached. That's what holds up when a client questions a report.

Full survey report can be found here (no account needed): https://pentest-tools.com/insights

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago

We have an XSS Scanner. It doesn't DO maybes, and on top of that, it's free to try.

Here's what it ACTUALLY does:
✅ Fires real JavaScript payloads, not pattern matches
✅ Flags a parameter only when the payload runs
✅ Catches reflected and stored XSS, logged in or out
✅ Gives you the request, payload, and response as proof

Try it as a test, no account needed. https://pentest-tools.com/website-vulnerability-scanning/xss-scanner-online

#offensivesecurity #penetrationtesting #ethicalhacking

XSS scanner: run a free scan for validated findings
Pentest-Tools.com

XSS scanner: run a free scan for validated findings

Run a free scan with our XSS Scanner. It injects real payloads and confirms execution. Get validated findings with minimal false positives and remediation steps.

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 2mo ago
Nolan's Odyssey just hit theaters, and honestly, Odysseus had it easy. Ten years, one long trip, and he was done. ISO 27001 wants the trilogy every single year: detection, validation, remediation. Three-year cycle, a surveillance audit checking your homework annually. No one-and-done epic here. Pentest-Tools.com is ISO/IEC 27001:2022 certified. We run the same evidence trail on ourselves: ✅ Detection - CVE, severity, date, logged automatically ✅ Validation - confirmed findings, not just a score ✅ Remediation - retests prove the fix held ✅ Monitoring - scheduled scans, all three years long No sirens, no Cyclops, just a surveillance audit that stays a review instead of turning into its own odyssey. Full ISO 27001 evidence chain: https://pentest-tools.com/usage/compliance/iso-27001 #ISO27001 #offensivesecurity #infosec
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 1mo ago
AI does the scanning. AI does the writing. In between, when someone's actually touching a live system, it backs off. That's the gap 158 practitioners flagged in our latest survey. It's also where a wrong move actually costs you. Office Hours 8 is live tomorrow, Wednesday, July 29. Jan Pedersen and Robert Tanase (Lead Product Manager at Pentest-Tools.com) are walking through the triage tax, the trust problem, and what we're building in response. 30 minutes live. 15 minutes of open Q&A. One session. Wednesday, July 29 8:00 AM Los Angeles 11:00 AM New York 4:00 PM London 6:00 PM Bucharest Register here: https://zoom.us/webinar/register/5417815287714/WN_kMwWqNEwQJa8NvfsFw89vw
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 1mo ago

We have 3 reasons for building AI Pentests - the autonomous web app pentesting capability we're launching at DEF CON next week:

  1. Doing a successful pentest with AI needs a lot more than good prompts.
  2. Your team deserves more than a wrapper around an LLM.
  3. AI is only as good as the #offensivesecurity knowledge behind it.

We explain what it does, why we named it Specter, and how to get early access right here: https://pentest-tools.com/features/ai-pentests

0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 1mo ago
We surveyed 158 security practitioners on AI-assisted vulnerability testing. 88% of them still end up validating results by hand. The pattern: AI gets heavy use in scanning and discovery (74%), a lot less in exploitation and attack chaining (37%), and even less in post-exploitation (25%). The riskier the phase, the less anyone trusts it to work unsupervised. The time it saves up front doesn't disappear. It just shows up later, as triage. Other findings: false positives and hallucinated exploits were the top named frustration, business logic understanding is the gap AI still can't close, and only 20% of teams have a workflow built to handle high volumes of AI-generated findings. Full survey results, free, no account needed: https://pentest-tools.com/insights/ai-pentesting-survey #infosec #offensivesecurity #penetrationtesting
0
0
0
0
Open post
Pentest-Tools.com @pentesttools@infosec.exchange
· 1mo ago
ORA doesn't give you a day, it gives you 4 hours. Once an incident is classified as major, you have 4 hours for the initial notification. Not 24, not NIS2's clock. Four. Most GRC tools prove you scheduled a scan, not that the fix held. Here's where Pentest-Tools.com closes that gap, so the evidence exists before anyone asks: ✅ Detection - scheduled scans tied to a date, scope, and asset ✅ Validation - confirmed findings with proof, not just a flag ✅ Remediation - retests show the before and after ✅ Monitoring - rescans catch regressions before the next audit When the clock starts, you already have the answer. Full DORA evidence chain: https://pentest-tools.com/usage/compliance/dora
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)
  • Source code

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 14:55:40 UTC