Moopinger (@moopinger) 's Twitter Profile
Moopinger

@moopinger

darkforge.io

ID: 1088702396837056512

linkhttps://darkforge.io/ calendar_today25-01-2019 07:37:33

162 Tweet

86 Followers

214 Following

Burp Suite (@burp_suite) 's Twitter Profile Photo

'AI and Security Research: Ask Me Anything' with James Kettle 🔥 Join us on Thursday at 4pm BST (11am EDT) for this exclusive event, and don't forget to submit your questions here: app.sli.do/event/ou8cmSGq… Join the PortSwigger Discord to attend 👉 discord.com/invite/portswi…

'AI and Security Research: Ask Me Anything' with James Kettle 🔥

Join us on Thursday at 4pm BST (11am EDT) for this exclusive event, and don't forget to submit your questions here: app.sli.do/event/ou8cmSGq…

Join the PortSwigger Discord to attend 👉 discord.com/invite/portswi…
slonser (@slonser_) 's Twitter Profile Photo

I think many people are familiar with the topic of blind CSS exfiltration, especially after the post by Gareth Heyes \u2028 However, an important update has occurred since then, which I wrote below ->

Include Security (@includesecurity) 's Twitter Profile Photo

Do you use or exploit WebSockets? Check out our new blog post to see how modern browsers may (or may not) be protecting you from Cross-Site WebSocket Hijacking! blog.includesecurity.com/2025/04/cross-…

Sergey Bobrov (@black2fan) 's Twitter Profile Photo

Wrote a Burp Suite Pro extension that uses AI-powered features to replace values in HTTP requests. Useful for guessing data formats based on parameter or header names. For example, for requests from Swagger / OpenAPI or those generated by my tool BFScan. github.com/BlackFan/Burp-…

James Kettle (@albinowax) 's Twitter Profile Photo

I'm thrilled to announce "HTTP/1 Must Die! The Desync Endgame", at #BHUSA! This is going to be epic, check out the abstract for a teaser ↓↓↓

I'm thrilled to announce "HTTP/1 Must Die! The Desync Endgame", at #BHUSA! This is going to be epic, check out the abstract for a teaser ↓↓↓
Moopinger (@moopinger) 's Twitter Profile Photo

I have launched a new web CTF. Amazon gift-card for first to solve, and swag draw amongst successful submissions. site: hackcentral.darkfor.ge Code: github.com/darkforge-labs…

Moopinger (@moopinger) 's Twitter Profile Photo

Excited to share our latest blog post, where we dive into attacking CEFSharp-based thick clients and introduce CefEnum, our new tool for enumerating and analyzing these applications. Check it out to learn more about securing .NET thick clients: blog.darkforge.io/cef/cefsharp/c…

Pethuraj M (@pethuraj) 's Twitter Profile Photo

🌀 𝗦𝗺𝘂𝗴𝗴𝗹𝗲𝗙𝘂𝘇𝘇 - A modular HTTP request smuggling fuzzer built for deep desync exploration. 👉 github.com/moopinger/smug… Perfect for testing reverse proxies, finding obscure smuggling vectors, and pushing fuzzing boundaries. #CyberSecurity #RedTeam #BugBounty

🌀 𝗦𝗺𝘂𝗴𝗴𝗹𝗲𝗙𝘂𝘇𝘇 - A modular HTTP request smuggling fuzzer built for deep desync exploration.
👉 github.com/moopinger/smug…

Perfect for testing reverse proxies, finding obscure smuggling vectors, and pushing fuzzing boundaries.

#CyberSecurity #RedTeam #BugBounty
Harley (@infinitelogins) 's Twitter Profile Photo

This week’s Disclosed. #BugBounty Beta invite for Hai, the AI security agent for hackers. RCE on Netflix. New tools for XSS, subdomain monitoring, and HTTP smuggling. Plus: SSTI, IDN homographs, and more. Highlights below 🧵

James Kettle (@albinowax) 's Twitter Profile Photo

The upcoming "HTTP/1 must die" Web Security Academy lab is no longer impossible! This is good news because I'm planning to attempt to live-stream solving it...

The upcoming "HTTP/1 must die" <a href="/WebSecAcademy/">Web Security Academy</a> lab is no longer impossible! This is good news because I'm planning to attempt to live-stream solving it...
terjanq (@terjanq) 's Twitter Profile Photo

Google CTF will start in less than 48h from now. Make sure not to miss the great challenges we've prepared this year!! Can't describe how exicted I am for it 😶

Google CTF will start in less than 48h from now. Make sure not to miss the great challenges we've prepared this year!! Can't describe how exicted I am for it 😶
Stephen Sims (@steph3nsims) 's Twitter Profile Photo

Join me on the Off By One Security channel for a stream with the amazing James Kettle on August 15th @ 11AM PT on "Novel HTTP/1 Request Smuggling/Desync Attacks!" Be sure to turn on alerts for the channel on YouTube... youtube.com/watch?v=B7p8dI…

Join me on the <a href="/offby1security/">Off By One Security</a> channel for a stream with the amazing <a href="/albinowax/">James Kettle</a> on August 15th @ 11AM PT on "Novel HTTP/1 Request Smuggling/Desync Attacks!" Be sure to turn on alerts for the channel on YouTube...

youtube.com/watch?v=B7p8dI…
Moopinger (@moopinger) 's Twitter Profile Photo

Add the .gitignore entries from ironpeak.be/blog/leaking-s… to your URL fuzzing wordlist. Let the bounties rain! #bugbountytips