59 Followers
81 Following
65 Posts

🚀red-run 2.0 is live. Key updates:
Claude Code agent teams: each agent in its own tmux pane; hit Esc to pause or redirect in real time
New state-mgr teammate tracks findings and keeps the attack graph current
Still a lean, lab-focused CTF solver.

https://open.substack.com/pub/blacklanternsecurity/p/red-run-20-agent-teams?r=rbmdk&utm_campaign=post&utm_medium=web&showWelcomeOnShare=true

red-run 2.0: Agent Teams

A Claude Code Agent Dashboard

Black Lantern Security (BLSOPS)

It's time for the next question of our OSINT insight quest!

Q2: What is the single biggest missing feature you would like to see in BBOT?

Thx for sharing!

Over the next few weeks we're hoping to gain some insight from the novice & veteran users of subdomain enumeration / OSINT tools via polls.

Q1: What's your favorite OSINT tool?

If your favorite isn't listed, post feedback in the comments.

Thx for participating!

BBOT
100%
Amass
0%
subfinder
0%
theHarvester
0%
Poll ended at .
🚨CVE-2026-2103: Infor Syteline ERP hard-codes encryption keys in binaries. One copy = universal decryption of ALL passwords, DB creds & API keys across every install. No patch.
#CVE
https://blog.blacklanternsecurity.com/p/cve-2026-2103-infor-syteline-erp
CVE-2026-2103 - Infor Syteline ERP

Infor Syteline ERP

Black Lantern Security (BLSOPS)
👀 Recon friends, stop guessing your target’s infra.
CloudCheck is LIVE — 56+ providers, daily-updated sigs, Rust/Python/CLI & a FREE REST API.
BBOT now fingerprints cloud / CDN / WAF in milliseconds.
https://blog.blacklanternsecurity.com/p/introducing-cloudcheck-comprehensive
#OSINT #BugBounty #Infosec #ASM
Introducing CloudCheck: Comprehensive Cloud Provider Detection

An overhaul of BBOT's cloud detection

Black Lantern Security (BLSOPS)

🚨 CVE-2025-12463: an unauth’d SQL injection that, when skillfully weaponized, can leak or overwrite critical data.
PoC + full teardown + hardening tips are live.
Full details👇https://blog.blacklanternsecurity.com/p/cve-2025-12463-98-unauthenticated

#infosec #CVE #SQLi

CVE-2025-12463— 9.8 Unauthenticated SQL Injection in Guetebruck G-Cam Series Cameras

Smile, you’re on camera.

Black Lantern Security (BLSOPS)
📢New drop in our #ASM series! Shadow IT, rogue subdomains, leaked creds—your attack surface is exploding! Discover the 3 goals for Attack Surface Management: 24/7 discovery, risk-based triage, measurable fixes. Read now 👇 https://blog.blacklanternsecurity.com/p/attack-surface-management-asm-goals #Infosec
Attack Surface Management (ASM): Goals, Objectives, and Business Case

“I shouldn’t be able to even reach that from here”

Black Lantern Security (BLSOPS)
🚨 ALERT! 🚨 Over 260,000 #Joomla sites at risk due to TWO newly discovered #zeroday vulnerabilities! 😱 Learn how our team uncovered these critical flaws in a popular Joomla extension and how you can protect yourself. Read the full story: https://blog.blacklanternsecurity.com/p/doomla-zero-days #cybersecurity #websecurity #CVE
Doomla! Zero Days

Discovery and Exploitation of two Zero Days from the perspective of a first year Penetration Tester.

Black Lantern Security (BLSOPS)
Picture not related.

I think my favorite past time is defeating the top EDR with a one line code change for a TTP.

Nothing hits harder.