Log inSign up
NoScope
60 posts
NoScope profile banner
@trynoscope

NoScope

@trynoscope
Find and fix more vulnerabilities with an AI pentest
noscope.com
Joined March 2026
5
Following
161
Followers
RepliesRepliesRepostsRepostsMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • Pinned
    @trynoscope
    NoScope
    @trynoscope
    May 27
    NoScope's AI agent discovered an important vulnerability (CVE-2026-27771) in Gitea, one of the most widely used self-hosted Git platforms. The finding is now being discussed across @TheHackersNews and the broader security community. If Gitea is part of the stack, patch it now.
    @TheHackersNews
    The Hacker News
    @TheHackersNews
    May 27
    🚨 Gitea flaw exposes private container images without authentication. thehackernews.com/2026/05/gitea-… CVE-2026-27771 affects all Gitea versions before 1.26.2 and likely impacts 30,000+ deployments worldwide. Attackers can pull private images without an account or password. Update now
    Image
  • @trynoscope
    NoScope
    @trynoscope
    Jul 29
    We asked a Gitea server for a token we had no business getting. It said 200 OK. Here's how NoScope's AI agent found a 4-year-old flaw that exposed private container images on ~30,000 servers 🧵
    Image
    3
  • @trynoscope
    NoScope
    @trynoscope
    Jul 10
    Every finding in NoScope now comes with a video attached to it. Instead of reading a report and guessing how a vulnerability actually plays out, you watch it get triggered, reproduced, and confirmed, step by step.
    Image
    GIF
    1
  • @trynoscope
    NoScope
    @trynoscope
    Jul 7
    We're adding a badge for solving the NoScopeRCE room on TryHackMe. 2500+ people have solved it already, if you haven't, now's the time. Craft a sandbox escape payload using the returnClass binding, trigger it through the Extensions API, and chain it into a full reverse shell.
    Image
    1
  • @trynoscope
    NoScope
    @trynoscope
    Jul 2
    We recently found a critical RCE, and turned it into a free @tryhackme room. 1500+ people have already solved it. If you haven't tried it yet, it's worth a go. You'll craft a sandbox-escape payload using the returnClass binding, trigger it through the Extensions API, and
    Image
    GIF
    1
Advertisement
Advertisement