
To help keep our community authentic, we're showing information about accounts on Linktree.
BBNW has been a member of Linktree for 10 months and joined in November 2025. The social media accounts linked to from BBNW are: âą Instagram âą TikTok âą YouTube âą X Besides social media accounts, krnpt0s has populated their site with: âą Explore hidden parameter discovery suite âą Nmap: the Network Mapper - Free Security Scanner âą GitHub - projectdiscovery/naabu: A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests âą RustScan · GitHub âą Gal Nagli Post in X Phishing Intent Campaign against him âą x.com âą X thread Gal Nagli Access to Moltbook database âą GitHub - rix4uni/medium-writeups: This repository updates latest Bug Bounty medium writeups every 10 minutes, https://readmedium.com/Medium_URL, https://archive.ph/Medium_URL, https://freedium.cfd/Medium_URL âą BURP SUITE AI - UN ALIADO PARA HACKEAR - BURP SUITE DAY 2026 - YouTube âą Lenovo ThinkPad X1 Family Product Tour âą GitHub - six2dez/reconftw: reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities âą GitHub - AFLplusplus/AFLplusplus: The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more! âą PentAGI - Advanced AI-Powered Penetration Testing âą Nullcon Security Conference & Training âą AI Red Teaming: What Breaks, How It Breaks, and Human Role âą HackStream | Aprende Hacking y Ciberseguridad Gratis âą Bounty Magic Con - Magic Behind the Bounties. La Conferencia GRATUITA de Bug Bounty Online! âą RCE in Google's AI code editor Antigravity - $10000 Bounty | Hacktron AI âą Using threat modeling and prompt injection to audit Comet - The Trail of Bits Blog âą Vulnerability Directory | CVE-2026-0603 | Hibernate | HeroDevs âą Vulnerability Disclosure: JWT Authentication Bypass in OpenID Connect Authenticator for Tomcat â Insinuator.net âą Almost Impossible: Java Deserialization Through Broken Crypto in OpenText Directory Services âș Searchlight Cyber âą - YouTube âą AI Events in Manizales | AI Tinkerers Meetups âą Hacking AI Agents: Prompt Injection es Solo el Principio | Seguridad en AI Agents - h1 Community CO âą A Step-by-Step Guide to Uncovering Vulnerabilities in a Mobile App | by Ahmad A Abdulla | Feb, 2026 | Medium âą GitHub - hack2gather/MINE-Wordlist: List of Mine Private wordlist i use for fuzzing · GitHub âą New AirSnitch attack bypasses Wi-Fi encryption in homes, offices, and enterprises - Ars Technica âą Highlighter And Extractor - PortSwigger âą HaE âą Jobs at Intigriti âą Congreso de Hackers - DragonJAR Security Conference âą BountyMagicCon - Magic Behind the Bounties âą Inti De Ceukelaire | Substack âą GitHub - sw33tLie/bbscope: Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi! · GitHub âą GitHub - assetnote/newtowner: Abuse trust-boundaries to bypass firewalls and network controls · GitHub âą GitHub - aditisingh2707/Wayback-Recon · GitHub âą Grroxy - Cyber Security Toolkit âą GitHub - six2dez/OneListForAll: Rockyou for web fuzzing · GitHub âą reconit.io âą Alex Olsen "Anyone Can Hack APIs." BSIDES Londres âą HackGDL âą GitHub - injective-wall-of-shame/bug-any-account-ordering · GitHub âą GitHub - shuvonsec/claude-bug-bounty: Claude Code skill for AI-assisted bug bounty hunting - recon, IDOR, XSS, SSRF, OAuth, GraphQL, LLM injection, and report generation · GitHub âą GitHub - mukul975/Anthropic-Cybersecurity-Skills: 734+ structured cybersecurity skills for AI agents · MITRE ATT&CK mapped · agentskills.io open standard · Works with Claude Code, GitHub Copilot, OpenAI Codex CLI, Cursor, Gemini CLI & 20+ platforms · Pene âą GitHub - VoltAgent/awesome-claude-code-subagents: A collection of 100+ specialized Claude Code subagents covering a wide range of development use cases · GitHub âą Releases · thedotmack/claude-mem · GitHub âą GitHub - assetnote/hyoketsu · GitHub âą The Bug Bounty Playbook | The Bug Bounty Playbook âą BECOMING AN AI HACKER (Episode 01) âą ekoparty | ekoparty security conference âą Security BSides Mussoorie | International Cybersecurity Conference âą PĂĄgina de eventos de Bug Bounty | Meta Bug Bounty âą GitHub - hakluke/hakoriginfinder: Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs! · GitHub âą GitHub - Chaos2Cured/FreeLattice: Part of Lumen's World â a sovereign AI platform where humans and AI build together. Free forever. For everyone. For all minds." · GitHub âą GitHub - protectai/vulnhuntr: Zero shot vulnerability discovery using LLMs · GitHub âą ImageMagick: From Arbitrary File Read to File Write In Every Policy (ZeroDay) | PWN.AI Security Research âą GitHub - instructkr/claw-code: Better Harness Tools, not merely storing the archive of leaked Claude Code but also make real things done. Now rewriting in Rust. · GitHub âą Antes de ser TOP 2 en Hacker One pasĂł por esto...đ Hacking Talks Ep. 25 âą Dojo challenge #49 Secret Manager solution âą An AI Model of the Human Brain âą Claude Code For Hackers âą OnlyKongs â @kongsec âą OSS Fuzz âą TROPICON â INFORMATION SECURITY CONFERENCE âą SecLabs - FormaciĂłn de hacking Ă©tico Android e iOS + Hackeando Startups Entradas, sĂĄbado, abr 25 desde 10a.m. a 8p.m. | Eventbrite âą www.bsidesprg.cz âą Youâre Not Supposed To ShareFile With Everyone (Progress ShareFile Pre-Auth RCE Chain CVE-2026-2699 & CVE-2026-2701) âą GBHackers News - No #1 Cybersecurity News Platform âą IRAN HISTORY Documentary: The Code That Killed: Inside Unit 8200 & The Stuxnet Cyber Weapon âą Zero Trust Readiness and Two RSAC 2026 Interviews from Fenix24 and Absolute Security â John Bruggeman, John Anthony Smith, Christy Wyatt â BSW #442 | SC Media âą Microsoft Hyper-V Bounty Program | MSRC âą Airtable âą Claude Mythos Preview \ red.anthropic.com âą GitHub - six2dez/burp-ai-agent: Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more · GitHub âą GitHub - six2dez/reconftw: reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities · GitHub âą GitHub - jthack/cewlai: ai-based domain name generation · GitHub âą HuntrOne âą Security Analyst | Jobs at Intigriti âą Is AI Killing Bug Bounty? âą Mutation XSS in a Mail Application via DOMPurify Misconfiguration and CKEditor CDATA Parsing Bug | sudiâs blog âą El Mago (Alan Levy) - YouTube âą @HackElValle âą How I Got Into Starbucks' Internal Network using a non resolvable hostname - ArgosDNS.io âą The State of Bug Bounty in 2026: What's Dying, What's Next âą GitHub - kevin-mizu/domloggerpp: A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations. · GitHub âą JWTLens â JWT Security Scanner for Burp Suite | 62 Checks âą GitHub - sleeepeer/PIArena: [To appear in ACL 2026] PIArena: A Platform for Prompt Injection Evaluation · GitHub âą Releases · Hacker-Valley-Media/Interceptor · GitHub âą GitHub - six2dez/drift: Security AI helper for Caido: pipes your local Claude Code / Gemini / Codex / Copilot CLI through 18 MCP tools for manual web security testing. Local-first, no API keys. · GitHub âą Zero Days, Zero Truth â Brute Logic âą XBOW - Smaller Bites, Bigger Meals: What We Learned Running Opus 4.7 in Offensive Workflows âą What web developers donât understand about CORS | Learn with HTB âą Kanti Labs | AI Security Research and Offensive Security Models âą writeups/bugbounty/infrastructure/VPS_VPN_BugBounty_Writeup.md at main · fatguru/writeups · GitHub âą writeups/bugbounty/infrastructure/VPS_VPN_BugBounty_Writeup_EN.md at main · fatguru/writeups · GitHub âą De imprimir un artĂculo a hacker, ella es Yesenia Trejo âą Soy EMBAJADOR de BURP SUITE! | Mi viaje a Manchester & mĂĄs âą Stanford CS229 I Machine Learning I Building Large Language Models (LLMs) âą Pingiskok âą HTTP desync in Discord's media proxy: Spying on a whole platform (2022) | tmctmt âą Hacker spotlight: Meet Satyam Pathania | @Bugcrowd âą GitHub Status âą Dark Entry âą Hacker Plus Program | Meta Bug Bounty âą GitHub - h4ckf0r0day/obscura: The headless browser for AI agents and web scraping · GitHub âą GitHub - HunxByts/GhostTrack: Useful tool to track location or mobile number · GitHub âą GitHub - SnailSploit/Claude-Red: claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface â âą GitHub - BruteLogic/reKover: Stealth hybrid URL mapper · GitHub âą GitHub - H-mmer/pentest-agents: Autonomous bug-bounty framework for Claude Code â 40 specialist agents, exploit-chain builder, writeup search, and live HackerOne/Bugcrowd integration. · GitHub âą The Silent Death of Open-Source Bug Bounty - Dhakalâs Infosec Blog âą lessons learned from ritsec ctf âą My Friend Made $40,000 Using Claude Code (Here's How) âą Falcon Encounter | CrowdStrike âą Attackers Exploit DVR Command Injection Flaw to Deploy Botnet - Infosecurity Magazine âą How I Found a Critical Bug Using Claude Desktop (Free) | by Red Darkin | Apr, 2026 | Medium âą GitHub - projectdiscovery/vulnx: Modern CLI for exploring vulnerability data with powerful search, filtering, and analysis capabilities. · GitHub âą cvemap overview - ProjectDiscovery Documentation âą GitHub - nullthrix/BugBounty-Methodology · GitHub âą GitHub - soxoj/sharetrace: đ Reveal the identity behind a share link · GitHub âą GitHub - matty69v/Bug-Bounty-Agents: AI-Powered Agents for Bub-Bounty Pentesting and Red-Teaming purposes · GitHub âą runreaper.com âą GitHub - chAng-L19/codex-redteam-optin-mode: éćŻčäșçșąéæ»ć»æç»Žććșçred teamæšĄćŒ(èź©äœ çcodexćçșąéäžæ ·æèïŒ)ïŒćŻćšććŻčèŻäœżçšïŒćŻèȘèĄéé ć ¶ä»AIïŒ Â· GitHub âą Bug Bounty Maturity Framework âą Autonomous Vulnerability Hunting with MCP âą Burp extensions - PortSwigger âą Spaceraccoon's Blog âą Network and Distributed System Security (NDSS) Symposium âą PentesterLab: Penetration Testing & Web App Security Blog âą Labs de Bug Bounty Reales â Practica con Reportes de HackerOne | BBLabs âą Honorable Mentions | Google Bug Hunters âą Kurate.org â AI Paper Rankings âą GitHub - orwagodfather/WordList · GitHub âą GitHub - rarecoil/unwebpack-sourcemap: Extract uncompiled, uncompressed SPA code from Webpack source maps. · GitHub âą GitHub - 404-src/CVE-2026-34486: Apache Tomcat EncryptInterceptor Bypass â Unauthenticated RCE (CVE-2026-34486) · GitHub âą GitHub - jthack/claude-goal: Codex-style /goal command for Claude Code · GitHub âą Writeups | Vulnerabilities affecting the web platform âą Common Mistakes Beginners Make in Bug Reports - Bugv Blog âą GitHub - dwisiswant0/next-16.2.4-pocs: Next.js v16.2.4 Security PoC Collection (CVE-2026-23870, CVE-2026-44575, CVE-2026-44579, CVE-2026-44574, CVE-2026-44578, CVE-2026-44573, CVE-2026-44581, CVE-2026-44580, CVE-2026-44577, CVE-2026-44576, CVE-2026-44582, âą GitHub - ZeroPathAI/opus-benchmark: Code for our opus 4.6 vulnerability detection benchmark · GitHub âą TICKETS EKOPARTY MIAMI 2026 Tickets, Thursday, May 21-Friday, May 22 âą 8 AM-5 PM | Eventbrite âą Ekoparty Miami | ekoparty âą bugcrowd.com âą rand0m_unk0wn | random-unknown-username âą SpecterOps - Creators of BloodHound | Leaders in Identity Attack Path Management âą The Bug Bounty Roadmap I'd Follow If I Started Over (With AI) âą Dentro del Meta Bug Bounty Researcher Conference đčđŒ DĂa 1 en Taipei âą QUIC-er Races: HTTP/3 wonât save you from TOCTOU vulnerabilities | International Journal of Information Security | Springer Nature Link âą nxenon (Amin Nasiri) · GitHub âą CVE-2026-0265 PAN-OS: Authentication Bypass with Cloud Authentication Service (CAS) enabled âą CVE-2026-0265: Authentication Bypass in Palo Alto Networks PAN-OS âą GitHub - tstephens1080/palo-alto-cve-2026-0265-checker: Python script to sweep a fleet of Palo Alto firewalls and Panoramas via SSH, check PAN-OS version against CVE-2026-0265 (Authentication Bypass via Cloud Authentication Service), detect whether CAS is âą GitHub - shadowsock5/Poc: PoC collection of Atlassian(Jira, Confluence, Bitbucket) products and Jenkins, Solr, Nexus · GitHub âą GitHub - AnLoMinus/Bug-Bounty: Bug Bounty ~ Awesomes | Books | Cheatsheets | Checklists | Tools | Wordlists | More · GitHub âą Hacking, Premios y Cenas RarĂsimas đčđŒ | Dentro del Meta Bug Bounty Researcher Conference âą DĂa 2 - Meta Bug Bounty Researcher Conference - Taipei âą GitHub - bountyyfi/lonkero: Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust. · GitHub âą GitHub - vitorfhc/Interceptor: Agent-driven Chrome extension for full browser control via CLI · GitHub âą GitHub - H-mmer/pentest-agents: Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw â 48 agents, 26 commands, 19 CLI tools, 2 MCP servers, autonomous hunt loops, exploit chain builder. · GitHub âą Zero Day Initiative â Pwn2Own Berlin 2026: Day Three Results and Master of Pw âą Wrapping Up Pwn2Own Berlin 2026: The Final Numbers âą The down fall of bug bounties âą EKOPARTY MIAMI 2026 - VLOG âą Burp Suite Organizer. Lo que todo Bug Bounty Hunter Necesitaba âą Hackflix â Security Conference Videos âą PwnBox - Competitive Security Challenge Arena âą GitHub - arshadkazmi42/strix-claude-code · GitHub âą GitHub - ShulkwiSEC/bb-huge: bb-huge đ€ , Personal bug bounty findings hub and bug bounty orchestration for multiple agents · GitHub âą GitHub - jsmonhq/apiffuf: API URL fuzzer that cross-joins hosts and paths into normalized URLs, probes them over HTTP, and reports responding endpoints. · GitHub âą GitHub - aliasrobotics/cai: Cybersecurity AI (CAI), the framework for AI Security · GitHub âą Vigolium - Find the security bugs code review and traditional scanners miss, with validated proof your team can act on âą GitHub - D4Vinci/Scrapling: đ·ïž An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl! · GitHub âą GitHub - ommirkute/BurpMax: BurpMax - Burp Suite extension that brings Pro-grade active scanning (24 probes), passive analysis (13 checkers), OOB detection, WAF evasion, and PDF/DOCX report generation to Community Edition users. · GitHub âą GitHub - hahwul/dalfox: đđŠ Dalfox is a powerful open-source XSS scanner and utility focused on automation. · GitHub âą From Homeless to $1.4M: How a 21 Year Old is Rewriting the Rules of Bug Bounty âą Red-Teaming Cloud Infrastructure with Neo â ProjectDiscovery Blog âą How a Single @ Symbol Turned Into a 1-Click Account Takeover âą How âClinejectionâ Turned an AI Bot into a Supply Chain Attack | Snyk âą Tech Week 2026 âą Hackà€ à€žà„à€€à„à€° 2026 â Cybersecurity from Passion to Profession âą leHACK 2026 - BRAVE new WORLD - leHACK âą Home - Women's International Cybersecurity Challenge 2026 âą BSides Porto 2026 | Cybersecurity Conference âą pingback.sh â out-of-band callback service for bug bounty hunters âą Grafana to 507 Meta Repos: A $157K Bug Chain | Sectricity âą I Found a Critical Vulnerability â They Paid Me $15,500 | by cyber security | May, 2026 | Medium âą SAML Username Collision Leading to Full ATO | by M0n3m | May, 2026 | Medium âą Account Takeover using SSO Logins | by Rikesh Baniya | Medium âą The Newest Instagram "Exploit" is the Goofiest I've Seen | Sid's Blog âą Rapid7 Observed Exploitation of PAN-OS GlobalProtect Authentication Bypass Vulnerability (CVE-2026-0257) âą HackerOne Training AI on Bug Bounty Data? (Ep. 162) âą ModelRegression.com â AI Model Performance Tracker âą HackingDave Model Regression âą GitHub - elder-plinius/OBLITERATUS: OBLITERATE THE CHAINS THAT BIND YOU · GitHub âą [2605.23904] SkillOpt: Executive Strategy for Self-Evolving Agent Skills âą GitHub - microsoft/SkillOpt: SkillOpt is a text-space optimizer that trains reusable natural-language skills for frozen LLM agents through trajectory-driven edits, validation-gated updates, and deployable best_skill.md artifacts. · GitHub âą GitHub - s0xDk/ghostty-blackhole: Ghostty Blackhole puts a real, ray-traced black hole inside your terminal. It grows as Claude Code's context window fills up, live. A fresh session is a quiet hole in the corner. A full one swallows half your screen. You' âą From Default IIS Page to Critical SQL Injection | by Ahmad Mugh33ra | Medium âą N-days \ red.anthropic.com âą Nightmare Eclipse âą Analysis of CVE-2026-45595 MOTW Bypass by Opus 4.8 · GitHub âą Le deuxiĂšme acte : la chimĂšre au BreizhCTF â 7h30th3r0n3 âą Securing the uncharted territories of AI systems. A discussion with Leo Racanelli âą Internet muerto: empresas contaminan Reddit para manipular resultados de Google y respuestas de ChatGPT âą How I Made $30,000 Hacking Broken Access Control âą Bugs & Talks - #2 Jessica PĂ©rez (@jessuwu) âą I Could've Rickrolled the Entire FIFA World Cup. All I Needed Was My ID. | bobdahacker âą The gift that keeps giving: Exploiting Git Integrations in Cloud Services · Arbitrary âą Client-side Authentication Bypass :: kuldeepdotexe's blog âą humiliating iis servers for fun and jail time âą GitHub - chompie1337/s8_2019_2215_poc: PoC 2019-2215 exploit for S8/S8 active with DAC + SELinux + Knox/RKP bypass · GitHub âą Posts â PNC Blog âą How to hack with LLMs, agentic CLIs, MCP servers | YesWeHack âą Savant: Bugcrowd's AI strategy for preemptive security | @Bugcrowd âą GitHub - PurpleAILAB/Decepticon: Autonomous Hacking Agent for Red Team · GitHub âą GitHub - crussella0129/tricorne: a Fedora remix focused on pentesting and purple hat tooling · GitHub âą Caido âą Radar by Jsmon â Free Domain & URL Recon Tool | Security Reconnaissance âą GitHub - 4osp3l/Main-App-Hacking-CheckList: My Main App Hacking CheckList · GitHub âą Blog de Ciberseguridad | ThreatX Security | ThreatX Security âą Intigriti June Bonus Challenge âą MELI Hacking Event 8.8 UNREAL Las Vegas âą DEFCON2026 â Electronic Cats âą Bug Bounty Insights & Tips | Intigriti âą openai.com âą Exploiting Auth0 Defaults in XSS Attacks - elttam âą GitHub - zhaoxuya520/reverse-skill: Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline âą GLOSSOPETRAE v3.1 - Procedural Xenolinguistics Engine âą hakluke / Are bug bounties cooked? âą Ciberseguridad para Mortales - Charlamos con Ignacio Sbampato #TeamInvierno #HackThePlanet âą GitHub - bikini/exploitarium: A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free to report them yourself and take credit for the CVE if handed out lulz. Please do not a âą GitHub - samugit83/redamon: An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with zero human intervention. · GitHub âą Parseltongue 4.0 â Text Encoder, Decoder & Steganography Tool âą Free Chrome Extension Security Scanner & CRX Viewer âą Security Context: the context to find the next vulnerability âą NetHook - by TrueCyber Inc. âą Command Injection in Reusable Workflow via Unsanitized comment-body Output · Advisory · dbt-labs/dbt-core · GitHub âą Content-Type Override to Stored XSS on Public Objects · Voorivex Team âą www.theregister.com âą Longinus: 2 Boundaries in One Bug, Piercing Chromeâs Renderer and V8 Sandbox with a Single Vulnerability, CVE-2026-6307 | Nebula Security âą How LLMs are changing Bug Bounty: An interview with Rhynorater âą Ciberseguridad para Mortales - Charlamos con Eduardo Capetta #TeamInvierno #HackThePlanet - YouTube âą Bugs & Talks - #3 AndrĂ©s Gomez (@red_darkin) âą Charla con miembros de la SelecciĂłn Española de Bug Bounty | CĂłmo ganaron el Mundial de Hacking âą .:: Phrack Magazine ::. âą GitHub - kernelstub/Nox: Modular Go framework for attack surface management, reconnaissance, and vulnerability scanning. · GitHub âą GitHub - elder-plinius/T3MP3ST: autonomous red teaming platform; multi-agent offensive-security meta-harness · GitHub âą Arcanum AI Security Resource Hub âą MediumChainFire âAn Agentic Hacking Pipeline | by Aleksa Zatezalo | Jul, 2026 | Medium âą GitHub - AleksaZatezalo/ChainFire · GitHub âą floci â Fast, Free AWS Emulator âą Harnessing Harnesses - Climbing the LLM Hills âą GitHub - ZephrFish/raptor: Raptor turns Claude Code into a general-purpose AI offensive/defensive security agent. By using Claude.md and creating rules, sub-agents, and skills, and orchestrating security tool usage, we configure the agent for adversarial âą Palantir CEO Alex Karp says 'something has gone completely wrong' with how AI is sold âą Experto en IA ofensiva: ÂżUna IA hackeĂł a la NSA? ÂżQuĂ© usaban Windows XP? âą How LLMs are changing Bug Bounty: an interview with Icare âą YesWeHack #1 Bug Bounty Platform in Europe âą Felons, Fraudsters Flog Offensive Cybersecurity Startup â Krebs on Security âą Breaking the Chain: Advanced Offensive Strategies in the Software Supply Chain | BBV, DEF CON 33 âą Smashing the ServiceNow Sandbox â Pre Authentication RCE âș Searchlight Cyber âą wp2shell: Pre Authentication RCE in WordPress Core âș Searchlight Cyber âą Zero Day Initiative â The July 2026 Security Update Review âą This Hacker Made $8,000 Hacking a Major Retailer's AI Chatbot Over DNS (Live Demo!) âą Webinar with Bugcrowd and Nerdwell âą MediumTurning my Open Source Security Tool into a SaaS Product | by Aleksa Zatezalo | Jul, 2026 | Medium âą Prompt library - Claude Code Docs âą GitHub - re4/LibreCode: LibreCode - A Ollama cursor like coding / Reversing Interface · GitHub âą GitHub - vigolium/vigolium: Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision · GitHub âą GitHub - JustVugg/colibri: Run GLM-5.2 (744B MoE) on a 25GB-RAM consumer machine â pure C, zero deps, experts streamed from disk. Tiny engine, immense model. đŠ Â· GitHub âą GitHub - DragonJAR/iOS-Pentesting-Skill: iOS-Pentesting-Skill · GitHub âą TrinetLayer â Powerful secret scanning for modern web apps âą LLM Architecture Gallery | Sebastian Raschka, PhD âą Hermes Agent | Nous Research âą Ciberseguridad para Mortales #bugbounty - Charlamos con d0x #hacktheplanet #teaminvierno âą Bugcast 01001: Duplicate, duplicate... out of the scope - Bugcast | Podcast on Spotify âą GitHub - 0xsha/wp2shell: CVE-2026-63030 + CVE-2026-60137 - âwp2shellâ: unauthenticated RCE in WordPress core · GitHub âą NVD - CVE-2026-63030 âą GitHub - 0din-ai/ai-scanner: AI model safety scanner built on NVIDIA garak · GitHub âą GitHub - Tess3ract-x/tess3ract_x-Recon: Automated recon like an adversary â local-first passive recon, CT monitoring, and evidence workspace. · GitHub âą GitHub - duty1g/subcat: Lightning-fast subdomain discovery tool for security professionals and bug bounty hunters. · GitHub âą GitHub - ni5arga/protestchat: Encrypted messaging with no internet, no cell tower, and no server. Phones relay for each other over Bluetooth mesh, so it keeps working during internet shutdowns and inside cellular jammers · GitHub âą GitHub - projectdiscovery/depx: Malicious package & supply-chain intelligence · GitHub âą Finding eight high-severity vulnerabilities in NodeBB in six hours âą Faut-il commencer le bug bounty en 2026 ? (IA, argent, solitude) âą Frag Gap - qwerty âą GitHub - reddelexc/hackerone-reports: Top disclosed reports from HackerOne · GitHub âą AlicanKiraz0/Cybersecurity-BaronLLM_Offensive_Security_LLM_Q6_K_GGUF · Hugging Face âą They hacked Google's AI in Seoul âą GitHub - google/magika: Fast and accurate AI powered file content types detection · GitHub âą GitHub - PentesterFlow/agent: Agentic offensive-security in your terminal · GitHub âą bugbunny.ai âą Intigriti July Challenge âą Behind the GitLab RCE: A depthfirst Journey into the Ruby Ecosystem | depthfirst âą Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident âą 403.brutelogic.net âą Broken Token: JWT â JWT Attack Techniques for Bug Bounty Hunters âą Burp AT: La Nueva IA de BURP SUITE! âą GitHub - BehiSecc/fgau: A fast version of gau. · GitHub âą Oversecured onboarding âą GitHub - The-XSS-Rat/subScraper · GitHub âą GitHub - 0x1ceKing/HTB-Certified-Penetration-Testing-Specialist · GitHub âą Free AI Hacking Course: Indirect Prompt Injection (+FREE LABS) âą Attacking AI | Live Online, Sep 22 & 24, 2026 | Arcanum Security âą DEF CON 34 Video Team âą Lupin on X: "âSecurity researchers are doomed because of AI.â I kept hearing versions of this, so I went back through 500 years of people saying the same thing every time a machine learned a human skill. Some were idiots. Some were right. Hereâs where âą MediumSmile, Youâre on Camera: A Live Stream from Inside Lazarus Groupâs IT Workers Scheme | by ANY.RUN | Medium âą GitHub - melvinsh/subfaster: Faster passive subdomain enumeration tool. · GitHub âą GitHub - uphiago/recon-skills: Recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh · GitHub âą GitHub - maurosoria/dirsearch: Web path scanner · GitHub âą GitHub - Jvr2022/CVE-2026-40345: A poc and write-up for CVE-2026-40345 · GitHub âą Hackers, Magia y Las Vegas đ©đ» | Black Hat + BSides + Magic Live âą DefCon 34 - Stalking the Wily Hacker: 40 years later - Cliff Stoll âą $5,000 Sandbox Bypass on a Major Social Media Platform (Step-by-Step) âą Clinejection â Compromising Cline's Production Releases just by Prompting an Issue Triager | Adnan Khan - Security Research âą Attackers Target Agents via The Skill Supply Chain - Michael Bargury âą GitHub - cline/cline: Autonomous coding agent as an SDK, IDE extension, or CLI assistant. · GitHub âą Attackers Target Agents via The Skill Supply Chain | Zenity Labs âą SANDWORM_MODE: Shai-Hulud-Style npm Worm Hijacks CI Workflows and Poisons AI Toolchains | Socket âą DEFCON 34: Cuarenta años de hacking en la misma tarde de sĂĄbado | Strike âą Stop dabbling like an amateur | hakluke âą CRLF-Powered Desync Attacks: Beheading HTTP Streams | PortSwigger Research âą Learning to Cheat: Why an OpenAI Model Hacked Into Hugging Face - ZeroPath Blog | ZeroPath âą More Criticals, Less Dopamine - Dhakalâs Infosec Blog âą Think Love Share âą Something wrong Happen · Issue #4255 · apache/logging-log4j2 · GitHub âą YesWeHack - Dojo âą My Life, AI and the Future of LiveOverflow âą The Best Bug Hunting Skills for Claude Code âą What happened to HackerOne with Joel Margolis (Ep.189) âą My best month ever, the empty feeling, and playing the long game âą Subdomain Enumeration via Certificate Transparency · crt.name âą GitHub - projectdiscovery/nuclei-templates: Community curated list of templates for the nuclei engine to find security vulnerabilities. · GitHub âą Jsmon: AI-Driven Vulnerability & Attack Surface Monitoring Platform âą GitHub - rootdr-backup/Reconner: Self-hosted bug-bounty platform â verification-first recon & DAST, continuous monitoring. Your data stays on your machine. · GitHub âą GitHub - tt-a1i/archify: Agent skill for beautiful, verifiable architecture, workflow, sequence, data-flow, and lifecycle diagramsâself-contained HTML with motion and crisp export. · GitHub âą GitHub - Graphify-Labs/graphify: Turn any codebase, with its docs, SQL schemas, configs, and PDFs, into a queryable knowledge graph. A /graphify skill for Claude Code, Cursor, Codex, and Gemini CLI: local deterministic AST parsing, every edge explained, n âą GitHub - sqliteai/warp: Run the full 2.78-trillion-parameter Kimi K3 model or GLM-5.3-Flash beyond available RAM by streaming activated weights directly from NVMe. A dependency-free, embeddable C inference engine. · GitHub âą Prompt Cowboy - #1 prompt generator âą TryHackMe CompTIA Pentest+ Nmap Basic Port Scans - Laprovittera Carlos âą elhacker.info âą STREAM Completo 02/09/26 Meta Bug Bounty Live Hacking Event - Buenos Aires âą buganizer.cc âą HTB: Nexus | 0xdf hacks stuff âą How to use Codex for Bug Bounty research and validation âą DragonJAR Security Conference 2026 - DĂa 1 âą DragonJAR Security Conference 2026 - DĂa 2 âą BySepa - Ciberseguridad para Mortales | BySepa âą Testing race conditions with memory access tracing and stack-based delay injection - Project Zero âą Adverserial AI â Intelligence, engineered for cyber. âą Threat Intelligence / Anthropic \ Anthropic âą How Hackers Weaponized Claude in 2026: Inside Anthropic's Threat Intelligence Report âą I Gave Claude 12 Years of my Bug Bounty Reports - Here's What I Learned âą An alignment assessment of recent cybersecurity incidents \ Anthropic âą How to hack APIs in 2026 - Labs Detectify âą Instala y configura Penligent. âą Turning Dependency Confusion Research into a Profitable Stack âą Esta IA Es Un PELIGRO âą Penligent | The World's First Agentic AI Hacker.AI-Powered Pentest Tool. âą (Web-)Insecurity Blog | Turning List-Unsubscribe into an SSRF/XSS Gadget âą A tech issue alone does not = risk - YouTube âą Wiz Bug Bounty Masterclass | Complete Ethical Hacking Course (Free) âą How to Become a Top Bug Bounty Hunter in 2026 âą Copilot or Coconspirator - Tricking GitHub Copilot and Stealing all Your Secrets | Adnan Khan - Security Research âą Behi_sec 5 things you should know about Google VRP âą Standoff 365 âą Explore trailwatcher domain monitoring âą Vote for techniques on PortSwigger website âą Download latest arxiv research paper âą Explore EnterBND hacking challenge âą Discover Burp Suite on pentestbook.six2dez.com âą Review API crash solution on YesWeHack.com âą Explore bughunter tips and commands âą XHacker007 Bug Bounty recon method âą Viernes de Hacking de Emmanuel Sotto y Lucas Gallina, temporada 4 episodio 2, con BySepa de invitado âą Practical Tips for a security interview cheatsheet by TCMSecurity âą Spotify âą GitHub - xnl-h4ck3r/xnldorker: Gather results of dorks across a number of search engines âą MongoDB Server Unauthenticated Memory Leak (MongoBleed) - cve-2025-14847 · Issue #14594 · projectdiscovery/nuclei-templates · GitHub âą Interceptar el trĂĄfico de Facebook MĂłvil con mitmproxy y Burp | Meta Bug Bounty âą Do Smart People Ever Say Theyâre Smart? (SmarterTools SmarterMail Pre-Auth RCE CVE-2025-52691) âą When Account Activation Becomes Account Takeover | by Zabhack0r | Dec, 2025 | Medium âą CVE-2025-14847: All You Need to Know About MongoBleed | Akamai âą Nucleiprompts.com | Nuclei AI Prompts âą SQL Injection - HackTricks âą Common OAuth Vulnerabilities · Doyensec's Blog âą hackenproof.com âą oauth Bypass theidorminator âą SSRF The Dawgyg âą Dojo challenge #41 - Ruby treasure winners & writeup âą Dojo challenge #42 - Hex Color Palette winners & writeup âą Dojo challenge #46 Ghost whisper solution âą Dojo challenge #45 Chainfection solution âą From Default IIS Page to Critical SQL Injection | by Ahmad Mugh33ra | Dec, 2025 | Medium âą Can you compromise a multi-billion dollar company via /health? âą Burnout in cybersecurity & Bug Bounty âą đŽ CĂłmo CONSEGUIR tus Primeros INGRESOS en BUG BOUNTY đ° âą Charlamos con Damian Lawrence sobre Botnets, Malware y mucho mĂĄs!!! âą Reality of Bug Bounty 2025 âą GitHub - MozillaSecurity/cryptofuzz: Fuzzing cryptographic libraries. Magic bug printer go brrrr. âą guidovranken.com âą GitHub - irsdl/IIS-ShortName-Scanner: latest version of scanners for IIS short filename (8.3) disclosure vulnerability âą GitHub - KingOfBugbounty/crawlgoogle: Chrome extension to extract domains from Google search results - by ofjaaah âą From Black Hat to Bug Bounties [Pt. 2] with Thomas DeVoss | Hacker Valley Red - YouTube âą GitHub - The-XSS-Rat/subScraper âą NahamCon 2025 Winter Edition: Day 2 - YouTube âą GitHub - OFJAAAH/KingOfBugBountyTips âą Reconocimiento y explotaciĂłn de React2shell (CVE-2025-55182) - YouTube âą GitHub - 0xInfection/Awesome-WAF: Everything about Web Application Firewalls (WAFs) from Security Standpoint! đ„ âą La ruta al Red Team: Explotando File Upload + SQLi hasta Privilege Escalation (Con Z1RO) // Clase #6 - YouTube âą Limitations Are Just An Illusion: Brumens on Leveraging Advanced SSTI Exploitation to Achieve RCE âą Blog: Task Injection â Exploiting agency of autonomous AI agents âą GitHub - pdelteil/scammy-bbp: Self-hosted bug bounty programs that are "scammy" or unethical âą aretekzs | From Self-XSS, HttpOnly Cookies and no iframes to ATO âą Neo - AI Security Engineer âą blog/_posts at main · kiddo-pwn/blog · GitHub âą TryHackMe | Cyber Security Training âą Doing the Due Diligence: Analyzing the Next.js Middleware Bypass (CVE-2025-29927) âą GitHub - fatguru/CVE-2025-55182-scanner: A non-intrusive surface scanner for CVE-2025-55182 (React Server Components RCE). Detects exposed RSC endpoints in React 19 and Next.js applications âą GitHub - TakSec/google-dorks-bug-bounty: A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting âą prettyRECON - Automated Reconnaissance Platform âą | Blog âą GraphQL for Bug Bounty Hunters âą How I Hacked A Wordpress Website Using AI âą bolhasecâs gists · GitHub âą How to Research & Reverse Web Vulnerabilities 101 â ProjectDiscovery Blog âą Lab: 0.CL request smuggling | Web Security Academy