logo

Home

Tools

Content

Wordlists

Leaderboard

Sign in
logo

Luke Turvey

@turvsec

United Kingdom

Last online 22 hours ago

Kudos

2,297

Joined date

May 31, 2024

@turvsec

Luke Turvey

Last online 22 hours ago

Kudos

2,297

Joined

May 31, 2024

United Kingdom

Blue Wave

About me

Co-Founder of Pentest List

Skills

Web Application Security Testing

Network Penetration Testing

Mobile Security Testing

Certifications

🏆

OSCP

Offensive Security

Issued Jun 2017

Tools submitted (135)

View all tools 

🤑 Free

keyhacks

Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.

🤑 Free

CloudShovel

A tool for scanning public or private AMIs for sensitive files and secrets.

🤑 Free

LaZagne

An open source application used to retrieve lots of passwords stored on a local computer.

🤑 Free

TREVORspray

TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!

🤑 Free

bitcrook

Open-Source Intelligence Apparatus

🤑 Free

Oralyzer

Open Redirection Analyzer

Content submitted (169)

View all content 

📖 READ

CVE Hunting Made Easy

In just three Sunday afternoons, I discovered 14 CVEs - and you can too!

📖 READ

Authorization bypass due to cache misconfiguration

Accessing other shops orders via a cache misconfiguration

📖 READ

Hidden Reflected XSS on 403 Page

I’m going to walk you through how I discovered a hidden vulnerability in an application that led to a Reflected Cross-Site Scripting.

📖 READ

Hacking a Nationwide University Database System

How I Hacked Into a Nationwide University Database System Exposing Thousands of Student Records

📖 READ

SSRF Exploitation via DNS Rebinding

Bypassing Filters: SSRF Exploitation via DNS Rebinding with Just 1 in 30 Successful Requests

📖 READ

Remotely Control Kia Cars by Exploiting License Plates

A critical vulnerability in Kia vehicles allowed hackers to control cars remotely using only license plates.

Similar profiles

Sanjai

@sanjith3hacker

49

RayRT

@rayrt

83

Wise Log

@wisetree317

28

Zesty Leeemon

@robj3d3

34

View leaderboard

indiedex-logo

Pentest List is a curation of the latest top-rated tools and content in penetration testing and security defense. Discover cutting-edge tools, blogs, and more, covering port scanning, SQL injection, and a wide range of other vulnerability exploits.

Links

Wiki

Blog

2024 Pentest List, All Rights Reserved.