mirror of
https://github.com/CyberSecurityUP/NeuroSploit.git
synced 2026-10-07 16:37:22 +02:00
v4.2.3: full recon arsenal (KingOfBugBounty), version bump
RECON_SYS enriched with the concrete bug-bounty recon arsenal and tool pipelines (subfinder/amass/assetfinder/crt.sh → httpx liveness → gau/waybackurls/katana/ gospider URL harvest → JS analysis & secret regexes → arjun/x8 params → gf vuln patterns + qsreplace → ffuf/feroxbuster content discovery → naabu ports → dnsx/ nuclei takeovers → cloud bucket grep → targeted nuclei → chained pipeline), passive-first and scope-respecting. Shared by the black-box run path, so it applies identically to the CLI, the REPL and the web console. Version bumped to 4.2.3 across CLI/clap/web/README/TUTORIAL. 423 tests. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
This commit is contained in:
1 parent
07f97076de
commit
c258299eb6
8 files changed
+29
-16
No files matched your search
@@ -1,4 +1,4 @@
|
||||
<h1 align="center">🧠 NeuroSploit v4.2.2</h1>
|
||||
<h1 align="center">🧠 NeuroSploit v4.2.3</h1>
|
||||
|
||||
<p align="center">
|
||||
<a href="https://github.com/JoasASantos/NeuroSploit/stargazers"><img src="https://img.shields.io/github/stars/JoasASantos/NeuroSploit?style=for-the-badge&logo=github&color=8b5cf6" alt="Stars"></a>
|
||||
@@ -8,7 +8,7 @@
|
||||
</p>
|
||||
|
||||
<p align="center">
|
||||
<img src="https://img.shields.io/badge/Version-4.2.2-blue?style=flat-square">
|
||||
<img src="https://img.shields.io/badge/Version-4.2.3-blue?style=flat-square">
|
||||
<img src="https://img.shields.io/badge/Harness-Rust%20%7C%20tokio-e6b673?style=flat-square">
|
||||
<img src="https://img.shields.io/badge/License-MIT-green?style=flat-square">
|
||||
<img src="https://img.shields.io/badge/MD%20Agents-479-red?style=flat-square">
|
||||
@@ -52,7 +52,7 @@ Control TUI**.
|
||||
|
||||
### Highlights
|
||||
|
||||
> **New in v4.2.2** — **free, LLM-directed exploration**: an exploit agent's named
|
||||
> **New in v4.2.3** — **free, LLM-directed exploration**: an exploit agent's named
|
||||
> class is a starting point, not a cage — it maps what the app actually does and
|
||||
> reports any class it can prove, with **authentication / identity** (login, signup,
|
||||
> password reset, MFA, OAuth/OIDC/SAML, JWT, session) as a first-class target and
|
||||
|
||||
Reference in new issue
Block a user