DEV Community

# pentesting

Offensive security techniques and methodologies for penetration testing.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
HaleHound CYD Review: Is a $15 Pwnagotchi Alternative Actually Worth It for WiFi Pentesting? [2026]

HaleHound CYD Review: Is a $15 Pwnagotchi Alternative Actually Worth It for WiFi Pentesting? [2026]

1
Comments
7 min read
Windows PrivEsc 01: Initial Enumeration (The Part That Actually Matters)

Windows PrivEsc 01: Initial Enumeration (The Part That Actually Matters)

Comments
2 min read
Recruiters filtered out the operators who can actually breach

Recruiters filtered out the operators who can actually breach

1
Comments
7 min read
Shannon AI Review: Autonomous Web Pentesting Agent

Shannon AI Review: Autonomous Web Pentesting Agent

Comments
3 min read
Pentesting Methodology: The 5 Phases That Structure Every Engagement

Pentesting Methodology: The 5 Phases That Structure Every Engagement

Comments
1 min read
Pentesting Methodology: The 5 Phases That Structure Every Engagement

Pentesting Methodology: The 5 Phases That Structure Every Engagement

Comments
1 min read
FTP Plaintext Exposure: 3M Unencrypted Servers & Active Exploitation

FTP Plaintext Exposure: 3M Unencrypted Servers & Active Exploitation

1
Comments 1
5 min read
AD pentesting part 2: C2, pivoting & password spraying

AD pentesting part 2: C2, pivoting & password spraying

Comments
1 min read
Basic-Fit Breach: Targeting SaaS Membership Platforms at Scale

Basic-Fit Breach: Targeting SaaS Membership Platforms at Scale

Comments
7 min read
PlugX RAT via Fake Claude: DLL Sideloading Supply Chain Attack

PlugX RAT via Fake Claude: DLL Sideloading Supply Chain Attack

Comments
7 min read
How to Run AI-Assisted Pentesting Locally Without Leaking Client Data

How to Run AI-Assisted Pentesting Locally Without Leaking Client Data

Comments 1
5 min read
Grafana, Passwords, and Poor Life Choices: CVE-2021-43798

Grafana, Passwords, and Poor Life Choices: CVE-2021-43798

Comments
7 min read
Reveal Hidden Files in Google Storage - Pwnedlabs (Google Cloud pentesting)

Reveal Hidden Files in Google Storage - Pwnedlabs (Google Cloud pentesting)

1
Comments
2 min read
PwnedLabs - Exploit SSRF with Gopher for GCP Initial Access (Google Cloud Pentesting)

PwnedLabs - Exploit SSRF with Gopher for GCP Initial Access (Google Cloud Pentesting)

1
Comments
2 min read
ClawJacked WebSocket Hijack: AI Agent Command Injection TTPs

ClawJacked WebSocket Hijack: AI Agent Command Injection TTPs

Comments
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.