mstdn.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A general-purpose Mastodon server with a 500 character limit. All languages are welcome.

Administered by:

Server stats:

11K
active users

#projectdiscovery

0 posts0 participants0 posts today
Pyrzout :vm:<p>Critical Next.js auth bypass vulnerability opens web apps to compromise (CVE-2025-29927) <a href="https://www.helpnetsecurity.com/2025/03/24/critical-next-js-auth-bypass-vulnerability-opens-web-apps-to-compromise-cve-2025-29927/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">helpnetsecurity.com/2025/03/24</span><span class="invisible">/critical-next-js-auth-bypass-vulnerability-opens-web-apps-to-compromise-cve-2025-29927/</span></a> <a href="https://social.skynetcloud.site/tags/webapplicationsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>webapplicationsecurity</span></a> <a href="https://social.skynetcloud.site/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a> <a href="https://social.skynetcloud.site/tags/webdevelopment" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>webdevelopment</span></a> <a href="https://social.skynetcloud.site/tags/vulnerability" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>vulnerability</span></a> <a href="https://social.skynetcloud.site/tags/Cloudflare" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cloudflare</span></a> <a href="https://social.skynetcloud.site/tags/opensource" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opensource</span></a> <a href="https://social.skynetcloud.site/tags/Don" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Don</span></a>'tmiss <a href="https://social.skynetcloud.site/tags/framework" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>framework</span></a> <a href="https://social.skynetcloud.site/tags/Hotstuff" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hotstuff</span></a> <a href="https://social.skynetcloud.site/tags/Next" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Next</span></a>.js <a href="https://social.skynetcloud.site/tags/News" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>News</span></a> <a href="https://social.skynetcloud.site/tags/PoC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PoC</span></a></p>
🦠Toxic Flange (Gurjeet)🔬⚱️🌚<p>Has anyone used <a href="https://infosec.exchange/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a> suite, or developed Nuclei templates?</p><p>How well does it work compared to other tools like Greenbone or some other similar scanning suites?</p><p>It looks.. cumbersome and tech-debt-y full of kludges. I definitely couldn't make anything better or maybe at all, so props for that, however I can see it being a problem in the future, and its weird limitations.</p><p><a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
Wiz :verified:<p>🚨 Wiz uncovered CVE-2024-43405, a bypass in <a href="https://infosec.exchange/tags/Nuclei" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nuclei</span></a> enabling code execution. Fixed with <a href="https://infosec.exchange/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a>. Update to v3.3.2+, Run tools in isolated environments! </p><p><a href="https://www.wiz.io/blog/nuclei-signature-verification-bypass" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">wiz.io/blog/nuclei-signature-v</span><span class="invisible">erification-bypass</span></a></p>
Pyrzout :vm:<p>Exploit code for critical GitLab auth bypass flaw released (CVE-2024-45409) <a href="https://www.helpnetsecurity.com/2024/10/09/exploit-cve-2024-45409/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">helpnetsecurity.com/2024/10/09</span><span class="invisible">/exploit-cve-2024-45409/</span></a> <a href="https://social.skynetcloud.site/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a> <a href="https://social.skynetcloud.site/tags/authentication" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>authentication</span></a> <a href="https://social.skynetcloud.site/tags/securityupdate" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>securityupdate</span></a> <a href="https://social.skynetcloud.site/tags/vulnerability" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>vulnerability</span></a> <a href="https://social.skynetcloud.site/tags/Don" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Don</span></a>'tmiss <a href="https://social.skynetcloud.site/tags/Hotstuff" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hotstuff</span></a> <a href="https://social.skynetcloud.site/tags/Synactiv" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Synactiv</span></a> <a href="https://social.skynetcloud.site/tags/exploit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>exploit</span></a> <a href="https://social.skynetcloud.site/tags/GitLab" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GitLab</span></a> <a href="https://social.skynetcloud.site/tags/News" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>News</span></a> <a href="https://social.skynetcloud.site/tags/PoC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PoC</span></a></p>
Pyrzout :vm:<p>Critical Zimbra RCE vulnerability under mass exploitation (CVE-2024-45519) <a href="https://www.helpnetsecurity.com/2024/10/02/cve-2024-45519-exploited/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">helpnetsecurity.com/2024/10/02</span><span class="invisible">/cve-2024-45519-exploited/</span></a> <a href="https://social.skynetcloud.site/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a> <a href="https://social.skynetcloud.site/tags/vulnerability" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>vulnerability</span></a> <a href="https://social.skynetcloud.site/tags/Proofpoint" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Proofpoint</span></a> <a href="https://social.skynetcloud.site/tags/Don" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Don</span></a>'tmiss <a href="https://social.skynetcloud.site/tags/Hotstuff" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hotstuff</span></a> <a href="https://social.skynetcloud.site/tags/exploit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>exploit</span></a> <a href="https://social.skynetcloud.site/tags/Synacor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Synacor</span></a> <a href="https://social.skynetcloud.site/tags/News" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>News</span></a> <a href="https://social.skynetcloud.site/tags/CVE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CVE</span></a> <a href="https://social.skynetcloud.site/tags/PoC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PoC</span></a></p>
MassivelyOP<p>For Science: EVE Online ramps up cancer-fighting Project Discovery with new minigames and rewards<br>🔗 <a href="https://massivelyop.com/2024/07/30/for-science-eve-online-ramps-up-cancer-fighting-project-discovery-with-new-minigames-and-rewards" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">massivelyop.com/2024/07/30/for</span><span class="invisible">-science-eve-online-ramps-up-cancer-fighting-project-discovery-with-new-minigames-and-rewards</span></a><br><a href="https://mastodon.social/tags/EVEOnline" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EVEOnline</span></a> <a href="https://mastodon.social/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a> <a href="https://mastodon.social/tags/CitizenScience" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CitizenScience</span></a> <a href="https://mastodon.social/tags/MMORPG" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MMORPG</span></a></p>
gary<p>install go <a href="https://infosec.exchange/tags/golang" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>golang</span></a> <a href="https://infosec.exchange/tags/rust" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rust</span></a> <a href="https://infosec.exchange/tags/mold" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mold</span></a> <a href="https://infosec.exchange/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a>/nuclei<br><a href="https://royzsec.medium.com/install-go-1-21-0-in-ubuntu-22-04-2-in-5-minutes-468a5330c64e" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">royzsec.medium.com/install-go-</span><span class="invisible">1-21-0-in-ubuntu-22-04-2-in-5-minutes-468a5330c64e</span></a></p>
MassivelyOP<p>For Science: EVE Online’s Project Discovery initiative opens signups for mobile testing<br>🔗 <a href="https://massivelyop.com/2024/04/03/for-science-eve-onlines-project-discovery-initiative-opens-signups-for-mobile-testing" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">massivelyop.com/2024/04/03/for</span><span class="invisible">-science-eve-onlines-project-discovery-initiative-opens-signups-for-mobile-testing</span></a><br><a href="https://mastodon.social/tags/EVEOnline" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EVEOnline</span></a> <a href="https://mastodon.social/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a></p>
rffuste<p>Cvemap from ProjectDiscovery<br>Introduction</p><p>Cvemap is a new tool developed by Project Discovery to deliver a structured and easily navigable interface to Common Vulnerabilities and Exposures (CVEs) within multiple databases.</p><p>It takes a comprehensive approach to prioritize CVEs, moving beyond the usual Common Vulnerability Scoring System (CVSS) score. It looks at<br><a href="https://www.rffuste.com/2024/02/05/cvemap-from-projectdiscovery/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">rffuste.com/2024/02/05/cvemap-</span><span class="invisible">from-projectdiscovery/</span></a><br><a href="https://infosec.exchange/tags/General" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>General</span></a> <a href="https://infosec.exchange/tags/Tutoriales" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tutoriales</span></a> <a href="https://infosec.exchange/tags/cve" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cve</span></a> <a href="https://infosec.exchange/tags/cvemap" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cvemap</span></a> <a href="https://infosec.exchange/tags/projectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectDiscovery</span></a> <a href="https://infosec.exchange/tags/tools" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tools</span></a></p>
Pyrzout :vm:<p>CVEMap: Open-source tool to query, browse and search CVEs <a href="https://www.helpnetsecurity.com/2024/02/01/cvemap-query-browse-search-cve/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">helpnetsecurity.com/2024/02/01</span><span class="invisible">/cvemap-query-browse-search-cve/</span></a> <a href="https://social.skynetcloud.site/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a> <a href="https://social.skynetcloud.site/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://social.skynetcloud.site/tags/opensource" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opensource</span></a> <a href="https://social.skynetcloud.site/tags/Don" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Don</span></a>'tmiss <a href="https://social.skynetcloud.site/tags/HackerOne" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>HackerOne</span></a> <a href="https://social.skynetcloud.site/tags/Hotstuff" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hotstuff</span></a> <a href="https://social.skynetcloud.site/tags/software" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>software</span></a> <a href="https://social.skynetcloud.site/tags/GitHub" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GitHub</span></a> <a href="https://social.skynetcloud.site/tags/News" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>News</span></a> <a href="https://social.skynetcloud.site/tags/CISA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CISA</span></a> <a href="https://social.skynetcloud.site/tags/CVE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CVE</span></a></p>
SΛNJΛYMENØN<p>CVEmap</p><p>A command-line interface (CLI) tool designed to provide a structured and easily navigable interface to various vulnerability databases</p><p><a href="https://blog.projectdiscovery.io/announcing-cvemap-from-projectdiscovery" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.projectdiscovery.io/annou</span><span class="invisible">ncing-cvemap-from-projectdiscovery</span></a></p><p><a href="https://mastodon.social/tags/bugbounty" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>bugbounty</span></a> <a href="https://mastodon.social/tags/cve" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cve</span></a> <a href="https://mastodon.social/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://mastodon.social/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a> <a href="https://mastodon.social/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a></p>
Michael Weber<p>Looks like the good folks at Project Discovery have implemented the full F5 RCE attack chain in a Nuclei Template already. That didn't take long at all, I suspect we'll be posting the rest of the blog this week.</p><p><a href="https://github.com/projectdiscovery/nuclei-templates/pull/8496" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/projectdiscovery/nu</span><span class="invisible">clei-templates/pull/8496</span></a></p><p><a href="https://infosec.exchange/tags/CVE202346747" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CVE202346747</span></a> <a href="https://infosec.exchange/tags/f5" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>f5</span></a> <a href="https://infosec.exchange/tags/nuclei" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nuclei</span></a> <a href="https://infosec.exchange/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a></p>
:hacker_z: :hacker_o: :hacker_d: :hacker_s: :hacker_e: :hacker_c: 0xD :verified:<p>Best Nuclei scan for beginners. </p><p>sudo nuclei -u example. com -as </p><p>This uses wapalyzer to check what technologies it can detect then automatically choose the tags and templates for you. </p><p><a href="https://infosec.exchange/tags/z0ds3c" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>z0ds3c</span></a> <a href="https://infosec.exchange/tags/nuclei" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nuclei</span></a> <a href="https://infosec.exchange/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a> <a href="https://infosec.exchange/tags/webhacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>webhacking</span></a> <a href="https://infosec.exchange/tags/webscan" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>webscan</span></a></p>
MassivelyOP<p>EVE Fanfest 2023: EVE players will help cure cancer with new Project Discovery minigame <a href="https://massivelyop.com/2023/09/23/eve-fanfest-2023-eve-players-will-help-cure-cancer-with-new-project-discovery-minigame" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">massivelyop.com/2023/09/23/eve</span><span class="invisible">-fanfest-2023-eve-players-will-help-cure-cancer-with-new-project-discovery-minigame</span></a> <a href="https://mastodon.social/tags/EVE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EVE</span></a> <a href="https://mastodon.social/tags/EVEOnline" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EVEOnline</span></a> <a href="https://mastodon.social/tags/EVEFanfest" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EVEFanfest</span></a> <a href="https://mastodon.social/tags/EVEFanfest2023" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EVEFanfest2023</span></a> <a href="https://mastodon.social/tags/ProjectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ProjectDiscovery</span></a></p>
Jonas Lejon<p>Jag har testat verktyget Katana från Project Discovery som kan spindla/crawla webbsidor. Bra för den som vill analysera attackytan mot en sajt eller webbtjänst <a href="https://penetrationstest.se/katana-fran-project-discovery/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">penetrationstest.se/katana-fra</span><span class="invisible">n-project-discovery/</span></a></p><p><a href="https://infosec.exchange/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a> <a href="https://infosec.exchange/tags/katana" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>katana</span></a> <a href="https://infosec.exchange/tags/bugbounty" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>bugbounty</span></a> <a href="https://infosec.exchange/tags/bugbountytips" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>bugbountytips</span></a> <span class="h-card" translate="no"><a href="https://bird.makeup/users/pdiscoveryio" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>pdiscoveryio</span></a></span></p>
Tedi Heriyanto<p>All ProjectDiscovery Tools explained in 30 minutes: <a href="https://www.youtube.com/watch?v=cBkfk0VbvLw" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">youtube.com/watch?v=cBkfk0VbvL</span><span class="invisible">w</span></a></p><p><a href="https://infosec.exchange/tags/pentesting" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>pentesting</span></a> <a href="https://infosec.exchange/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a></p>
Eden 💀 Chaos Wrangler<p>A few words of advice to those building and contributing to <a href="https://defcon.social/tags/projectdiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectdiscovery</span></a> / <a href="https://defcon.social/tags/nuclei" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nuclei</span></a></p><p>1. Save yourself from making the same mistake I did. Little did I know that Nuclei cares a lot about the difference between .yml and .yaml</p><p>Go with .yaml</p><p>2. If you're basing your template off of a CVE, make sure you don't need to be authenticated to exploit it :') Kind of makes your template useless. Learned my lesson with <a href="https://defcon.social/tags/CVE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CVE</span></a>-2023-30777</p><p>Regardless, next template I build I'll know better for next time ^_^</p>
rffuste<p>Pdtm by Project Discovery<br>Project Discovery is an open-source software company that builds tools for cybersecurity.They are under nuclei, subfinder, httpx, katana or naabu.</p><p>Recently they have published pdtm.Pdtm&nbsp;is a simple and easy-to-use golang based tool for managing open-source projects from ProjectDiscovery.</p><p>Install </p><p>go1.19 is required to install successfully pdtm.</p><p>$ <br><a href="https://www.rffuste.com/2023/03/13/pdtm-by-project-discovery/" rel="nofollow noopener" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">rffuste.com/2023/03/13/pdtm-by</span><span class="invisible">-project-discovery/</span></a><br><a href="https://infosec.exchange/tags/Tutoriales" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tutoriales</span></a> <a href="https://infosec.exchange/tags/pdtm" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>pdtm</span></a> <a href="https://infosec.exchange/tags/projectDiscovery" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>projectDiscovery</span></a> <a href="https://infosec.exchange/tags/tools" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tools</span></a></p>