mastodon.world is one of the many independent Mastodon servers you can use to participate in the fediverse.
Generic Mastodon server for anyone to use.

Server stats:

8.1K
active users

#pentesting

14 posts12 participants1 post today

If I’ve solved all the issues, everything should now be working as intended.
That means tonight or tomorrow I’ll drop the atomic bomb ---> BashCoreT, the first distro in the world built on Debian 13 “Trixie” stable, just two days after its official release. It features Linux Kernel 6.12 💪

Precision, speed, and a little madness. 💻💥

💥 3 Days. 4 Elite Trainings. Unlimited AppSec Growth.

Join us in Washington, D.C., Nov 3–5, 2025 for immersive, hands-on 3-day sessions at OWASP Global AppSec USA:
⚡ Threat Modeling with AI – Adam Shostack
⚡ AI Security for Developers – Jim Manico
⚡ Attacking & Defending Cloud Apps – AWS, Azure, GCP
⚡ Full-Stack Pentesting Lab – 100% hands-on + lifetime access

Register: owasp.glueup.com/event/131624/

You’re security testing AWS infrastructure. You’ve done the work and need to exfiltrate the evidence files. But there's no internet access and no inbound ports... 🤔

Here’s how to use AWS Services Systems Manager (SSM) to create a port forwarding session, access what you need, and securely exfiltrate data with a simple Python web server.

📌 Read the blog post here: pentestpartners.com/security-b

#AWS #CloudSecurity #PenTesting #CyberSecurity #SSM #Infosec #Python #RedTeam

Two criticals. Two known exploited. One a zero-day.
July saw a spike in high-severity vulnerabilities.

Here are CVE Crowd's Top 3 from the 624 CVEs discussed across the Fediverse last month.
For each CVE, I've included a standout post from the community.
Enjoy exploring! 👇