Thomas Stacey
@t0xodile
Penetration tester trying to perform novel research. You can find all of my write-ups and research at thomas.stacey.se.
ID: 2634803080
https://thomas.stacey.se 23-06-2014 15:42:55
208 Tweet
351 Followers
197 Following
Had great fun making this huge lab. ProjectDiscovery create amazing CLI tools, and in this lab weโll teach you how to use shuffledns, alterx, dnsx, naabu, httpx, katana and tlsx to supercharge your recon game!
Even more smuggling techniques from the awesome Jeppe Weikop with yet another "oh yeah http1 does that" moment. w4ke.info/2025/10/29/funโฆ
The details on the CVSS 9.9 request smuggling in Kestrel are finally out! Great find by Praetorian. praetorian.com/blog/how-i-fouโฆ
๐ ๏ธ ๐๐๐ญ๐ข๐ฌ -- an open-source ๐๐-๐ฉ๐จ๐ฐ๐๐ซ๐๐ ๐ฌ๐๐๐ฎ๐ซ๐ข๐ญ๐ฒ ๐๐จ๐๐ ๐ซ๐๐ฏ๐ข๐๐ฐ ๐ญ๐จ๐จ๐ฅ by Arm's Product Security team to detect subtle vulnerabilities, improve secure coding practices, and reduce review fatigue.
"Burp AI can bring up a new generation of hackers faster and more effectively.โโโโโโ" In his new article, hAPI_hacker explores how Burp AI: ๐ฌ Analyzes requests and adapts when attacks fail. ๐ฌ Explains findings in clear language. ๐ช Enhances human decision-making. ๐