BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.8, there was an insecure deserialization in BentoML's runner server. By setting specific headers and parameters in the POST request, it is possible to execute any unauthorized arbitrary code on the server, which will grant the attackers to have the initial access and information disclosure on the server. This vulnerability is fixed in 1.4.8.
#TOOL

Defuse Security. Home of PIE Bin, TRENT, and more...

The Ultimate Cybersecurity Resource List. A curated directory of cybersecurity tools and resources for infosec professionals.

We offer robust APIs & data services for Security Teams worldwide.

Website scanner for suspicious and malicious URLs

This test will list DNS records for a domain in priority order. The DNS lookup is done directly against the domain's authoritative name server, so changes to DNS Records should show up instantly. By default, the DNS lookup tool will return an IP address if you give it a name (e.g. www.example.com)

Canarytokens is a free tool that helps you discover you’ve been breached by having attackers announce themselves.

A vast collection of security tools.

A resource containing all the tools each ransomware gangs uses.

DNS Checker provides a free DNS propagation check service to check Domain Name System records against a selected list of DNS servers in multiple regions worldwide.

This calculator returns a variety of information regarding Internet Protocol version 4 (IPv4) and IPv6 subnets including possible network addresses, usable host ranges, subnet mask, and IP class, among others.

An online tool that allows users to efficiently factorize large integers into their prime factors, providing valuable insights for mathematical research and cryptography.

A subdomain finder is a tool used to find the subdomains of a given domain.

Tools and Techniques for Red Team / Penetration Testing.

Analyze suspicious emails with Tines & urlscan. Forward a suspicious email (or an .eml attachment) to scan@phish.ly, Tines will automatically analyze the URLs with urlscan and send you a report.

The DNA test for websites.

NEW

FotoForensics provides tools and training for digital picture analysis, including error level analysis, metadata, and tutorials.

Pentest List is a curation of the latest top-rated tools and content in penetration testing and security defense. Discover cutting-edge tools, blogs, and more, covering port scanning, SQL injection, and a wide range of other vulnerability exploits.

The web application vulnerabilities index lists vulnerabilities according to its severity and is classified by the compliance standard it falls under.

The quick and simple editor for cron schedule expressions by Cronitor.

Leading source of security tools, hacking tools, cybersecurity and network security. Learn about new tools and updates in one place.

At Objective-See our goal is simple, create free open-source security tools for macOS!

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis.

Hacking Tools & Media

All in One Hacking tool For Hackers

A portable multi-tool for pentesters and geeks in a toy-like body. It loves hacking digital stuff, such as radio protocols, access control systems, hardware, and more. It's fully open-source and customizable, so you can extend it in whatever way you like.

The Most Popular & Fastest Growing Open Source Security Projects on GitHub.