Ivan Ožić Bebek

Penetration Tester

Location
Zagreb, Croatia
Ivan Ožić Bebekobivan@infosec.exchange
2026-02-11

Python3 implementation of ADRecon with support for NTLM and Kerberos authentication github.com/l4rm4nd/PyADRecon

Ivan Ožić Bebek boosted:
2026-02-10
Ivan Ožić Bebekobivan@infosec.exchange
2026-02-10

Building a Virtual Security Home Lab: Part 8 - Malware Analysis Lab Setup infosecwriteups.com/building-a

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-09

Open-source web & API security training platform with curated, modular labs and progress tracking github.com/LeighlinRamsay/WebV

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-09
Ivan Ožić Bebekobivan@infosec.exchange
2026-02-07

HTML parser for PEAS output with additional features github.com/YuvalMil/ParsingPeas

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-06

A Claude Code plugin marketplace from Trail of Bits providing skills to enhance AI-assisted security analysis, testing, and development workflows github.com/trailofbits/skills

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-05

Keys to JWT Assessments - From a Cheat Sheet to a Deep Dive trustedsec.com/blog/keys-to-jw

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-04

Splitting the Email Atom: Exploiting Parsers to Bypass Access Controls - Gareth Heyes youtu.be/kVPetdjHF_M?si=Yv3WFl

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-03
Ivan Ožić Bebek boosted:
Ivan Ožić Bebekobivan@infosec.exchange
2026-02-03

Hacking Moltbook: The AI Social Network Any Human Can Control wiz.io/blog/exposed-moltbook-d

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-01

@thornbill Hi! I've just saw that Jellyfin is available on Tizen Store. The version is 1.1.0, updated on 22/12/2025. This should be the official one right?

Ivan Ožić Bebek boosted:
Juanma FernandezXC3LL
2026-02-01

A small rant:

The State of Art in Red Team is whatever you want to believe

x-c3ll.github.io/posts/Rant-Re

Ivan Ožić Bebekobivan@infosec.exchange
2026-02-01

I've just noticed that @jellyfin is finally available on Tizen, no more sideloading! Although there is nothing about it on the official blog yet jellyfin.org/posts/state-of-th

Ivan Ožić Bebekobivan@infosec.exchange
2026-01-30

RelayKing is a comprehensive relay detection and enumeration tool designed to identify relay attack opportunities in Active Directory environments github.com/depthsecurity/Relay

Ivan Ožić Bebekobivan@infosec.exchange
2026-01-29

Weaponizing VirusTotal as a Command and Control (C2) Middleware shinkensec.com/2026/01/28/weap

Ivan Ožić Bebekobivan@infosec.exchange
2026-01-29

@GossiTheDog it showed up uninvited on my TV yesterday.

Ivan Ožić Bebek boosted:

Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

blog.cloudflare.com/serverless

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst