SmashTheStack is a wargaming network that provides a realistic and challenging environment for penetration testers to hone their skills. It offers a variety of scenarios, including web applications, networks, and IoT devices, allowing testers to practice their skills in a realistic and immersive environment. The network is designed to mimic real-world scenarios, making it an excellent tool for both beginners and experienced testers to improve their skills and stay up-to-date with the latest threats and vulnerabilities.
FEATURES
ALTERNATIVES
A blog post discussing the often overlooked dangers of CSV injection in applications.
A cross-platform tool for creating malicious MS Office documents with hidden VBA macros and anti-analysis features.
An image with commonly used tools for creating a pentest environment easily and quickly, with detailed instructions for launching in a VPS.
Offensive security tool for reconnaissance and information gathering with a wide range of features and future roadmap.
A COM Command & Control framework using JScript for stealthy and flexible command and control capabilities on Windows systems.
CLI tool for offensive and defensive security assessments on the Joi validator library with a wide range of attacks.
Create a vulnerable active directory for testing various Active Directory attacks.
A blog post about abusing exported functions and exposed DCOM interfaces for pass-thru command execution and lateral movement
PINNED
InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
RoboShadow
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.