⤷ Title: Understanding PII and Initial Discovery Techniques (Part 1/3)
════════════════════════
𐀪 Author: Cybersecplayground
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:29:01 GMT
════════════════════════
⌗ Tags: #leakage #bug_bounty_writeup #bug_bounty_tips #cybersecplayground #bug_bounty
════════════════════════
𐀪 Author: Cybersecplayground
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:29:01 GMT
════════════════════════
⌗ Tags: #leakage #bug_bounty_writeup #bug_bounty_tips #cybersecplayground #bug_bounty
Medium
🎓 Understanding PII and Initial Discovery Techniques (Part 1/3) 🎓
Personally Identifiable Information (PII) is any data that can identify an individual. In security testing and bug bounty hunting, finding…
⤷ Title: Linux’ta Ağ Yönetimi
════════════════════════
𐀪 Author: g.o.
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:21:39 GMT
════════════════════════
⌗ Tags: #networking #hacking #siber_guvenlik #cybersecurity #linux
════════════════════════
𐀪 Author: g.o.
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:21:39 GMT
════════════════════════
⌗ Tags: #networking #hacking #siber_guvenlik #cybersecurity #linux
Medium
Linux’ta Ağ Yönetimi
Siber Vatan Yolculuğu — 11
⤷ Title: Linux’ta Süreç (Process) Yönetimi
════════════════════════
𐀪 Author: g.o.
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:40:32 GMT
════════════════════════
⌗ Tags: #linux #process #cybersecurity #hacking #siber_guvenlik
════════════════════════
𐀪 Author: g.o.
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:40:32 GMT
════════════════════════
⌗ Tags: #linux #process #cybersecurity #hacking #siber_guvenlik
Medium
Linux’ta Süreç (Process) Yönetimi
Siber Vatan Yolculuğu — 10
⤷ Title: eMAPT Review: How I Got Certified in Mobile Pentesting
════════════════════════
𐀪 Author: B13ss3d
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:35:56 GMT
════════════════════════
⌗ Tags: #pentesting #emapt #android #hacking #certification
════════════════════════
𐀪 Author: B13ss3d
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:35:56 GMT
════════════════════════
⌗ Tags: #pentesting #emapt #android #hacking #certification
Medium
eMAPT Review: How I Got Certified in Mobile Pentesting
Hi everyone! I’m Luis Eduardo Platero Fuentes (B13ss3d). Since the beginning of 2025, I set myself a clear goal: I didn’t want to end the…
⤷ Title: NMAP: The GOAT of Reconnaissance
════════════════════════
𐀪 Author: Cybersensus
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:17:35 GMT
════════════════════════
⌗ Tags: #hacking #technology #cybersecurity #ethical_hacking #red_team
════════════════════════
𐀪 Author: Cybersensus
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 20:17:35 GMT
════════════════════════
⌗ Tags: #hacking #technology #cybersecurity #ethical_hacking #red_team
Medium
NMAP: The GOAT of Reconnaissance
In the vast cybersecurity universe, we’re spoiled for choice. Tools, frameworks, and scripts flood our feeds daily — so much that it’s…
⤷ Title: CyberTalents — Evil Rick writeup
════════════════════════
𐀪 Author: Abdelrahman Zourob
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:27:22 GMT
════════════════════════
⌗ Tags: #infosec #web_security #cybersecurity #ctf #ctf_writeup
════════════════════════
𐀪 Author: Abdelrahman Zourob
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:27:22 GMT
════════════════════════
⌗ Tags: #infosec #web_security #cybersecurity #ctf #ctf_writeup
Medium
CyberTalents — Evil Rick writeup
Hey everyone! I recently decided to tackle the Evil Rick challenge. It’s a Web Security challenge that involves investigating a…
⤷ Title: The Watchman’s Residue Sherlock | Hack The Box Walkthrough
════════════════════════
𐀪 Author: Jack Dignam
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:18:00 GMT
════════════════════════
⌗ Tags: #hackthebox #blue_team #hackthebox_walkthrough #hackthebox_writeup
════════════════════════
𐀪 Author: Jack Dignam
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:18:00 GMT
════════════════════════
⌗ Tags: #hackthebox #blue_team #hackthebox_walkthrough #hackthebox_writeup
Medium
The Watchman’s Residue Sherlock | Hack The Box Walkthrough
Analyze multiple artifacts using RMM Logs, Windows Triage images, and Packet Captures to create an incident timeline
⤷ Title: Host Header Injection in Password Reset Function Leading to Account Takeover and Blind SSRF
════════════════════════
𐀪 Author: Mahmoud Gamal
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 22:42:39 GMT
════════════════════════
⌗ Tags: #ssrf #bug_bounty #writeup #account_takeover #cybersecurity
════════════════════════
𐀪 Author: Mahmoud Gamal
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 22:42:39 GMT
════════════════════════
⌗ Tags: #ssrf #bug_bounty #writeup #account_takeover #cybersecurity
Medium
Host Header Injection in Password Reset Function Leading to Account Takeover and Blind SSRF
Introduction
⤷ Title: Thread Name Calling Injection
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 22:34:51 GMT
════════════════════════
⌗ Tags: #malware #hacker #hacking #pentesting #cybersecurity
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 22:34:51 GMT
════════════════════════
⌗ Tags: #malware #hacker #hacking #pentesting #cybersecurity
Medium
Thread Name Calling Injection
Welcome to this new Medium post, in this one I will show you an interesting technique created and documented by hasherezade! The technique…
⤷ Title: Malware Reverse Engineering Infrastructure
════════════════════════
𐀪 Author: bl77rd
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:55:29 GMT
════════════════════════
⌗ Tags: #malware_analysis #cybersecurity #information_technology #malware #infosec
════════════════════════
𐀪 Author: bl77rd
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 21:55:29 GMT
════════════════════════
⌗ Tags: #malware_analysis #cybersecurity #information_technology #malware #infosec
Medium
Malware Reverse Engineering Infrastructure
Hello all and longtime no see!
⤷ Title: Baby | Hack The Box Walkthrough
════════════════════════
𐀪 Author: WireHawk Security
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 22:33:58 GMT
════════════════════════
⌗ Tags: #security #penetration_testing #information_technology #cybersecurity #information_security
════════════════════════
𐀪 Author: WireHawk Security
════════════════════════
ⴵ Time: Sun, 28 Dec 2025 22:33:58 GMT
════════════════════════
⌗ Tags: #security #penetration_testing #information_technology #cybersecurity #information_security
Medium
Baby 👶 | Hack The Box Walkthrough
Walkthrough for “Baby” on Hack The Box
⤷ Title: The iOS 26.2 Trap: New WebKit Integer Overflow Discovered with PoC—Is Your iPhone at Risk?
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 01:53:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apple #Gigacage #integer overflow #iOS 26.2 #iPhone security #JavaScriptCore #Joseph Goydish #PoC #rce #Remote Code Execution #Safari #Vulnerability #WebKit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 01:53:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apple #Gigacage #integer overflow #iOS 26.2 #iPhone security #JavaScriptCore #Joseph Goydish #PoC #rce #Remote Code Execution #Safari #Vulnerability #WebKit
Daily CyberSecurity
The iOS 26.2 Trap: New WebKit Integer Overflow Discovered with PoC—Is Your iPhone at Risk?
Joseph Goydish uncovers a critical integer overflow in iOS 26.2’s WebKit. Proof of Concept shows how attackers can crash browsers or trigger RCE.
⤷ Title: PoC Released: MongoBleed Exploit Allows Unauthenticated Attackers to Drain MongoDB Memory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:40:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_14847 #Data Breach #database security #Heap Over_read #Information Disclosure #infosec #Joe Desimone #Memory Leak #MongoBleed #mongodb #PoC #zlib
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:40:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_14847 #Data Breach #database security #Heap Over_read #Information Disclosure #infosec #Joe Desimone #Memory Leak #MongoBleed #mongodb #PoC #zlib
Daily CyberSecurity
PoC Released: MongoBleed Exploit Allows Unauthenticated Attackers to Drain MongoDB Memory
MongoBleed (CVE-2025-14847) allows unauthenticated MongoDB memory leaks. With Joe Desimone's PoC released, upgrade to v8.0.17 or v7.0.28 now!
⤷ Title: Holiday ColdFusion Attacks Reveal Massive 2.5 Million Request Onslaught
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:35:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Adobe ColdFusion #Christmas 2025 #CTG Server Limited #CVE_2017_9841 #CVE_2023_26360 #cyber_espionage #GreyNoise #IAB #initial access broker #Japan_based Threat #java #Mass Exploitation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:35:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Adobe ColdFusion #Christmas 2025 #CTG Server Limited #CVE_2017_9841 #CVE_2023_26360 #cyber_espionage #GreyNoise #IAB #initial access broker #Japan_based Threat #java #Mass Exploitation
Daily CyberSecurity
Holiday ColdFusion Attacks Reveal Massive 2.5 Million Request Onslaught
GreyNoise reveals a massive Japan-based holiday campaign: 2.5 million attacks targeting 767 CVEs to harvest access for ransomware gangs.
⤷ Title: “Headphone Jacking”: Critical Flaws in Popular Earbuds Let Hackers Hijack Your Phone
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:29:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Airoha RACE #Bluetooth security #CVE_2025_20700 #firmware update #Headphone Jacking #infosec #Jabra #JBL #Marshall #sony #TWS Earbuds #Wireless Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:29:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Airoha RACE #Bluetooth security #CVE_2025_20700 #firmware update #Headphone Jacking #infosec #Jabra #JBL #Marshall #sony #TWS Earbuds #Wireless Security
Daily CyberSecurity
"Headphone Jacking": Critical Flaws in Popular Earbuds Let Hackers Hijack Your Phone
ERNW exposes "Headphone Jacking," a critical Airoha RACE flaw in Sony & JBL chips allowing hackers to eavesdrop and hijack connected smartphones.
⤷ Title: CVE-2025-54322 (CVSS 10): AI Agents Uncover Critical Zero-Day in Global Networking Gear
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Agents #Autonomous Hacking #CVE_2025_54322 #Networking Security #pwn.ai #rce #Remote Code Execution #SD_WAN #SXZOS #Xspeeder #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Agents #Autonomous Hacking #CVE_2025_54322 #Networking Security #pwn.ai #rce #Remote Code Execution #SD_WAN #SXZOS #Xspeeder #zero_day
Daily CyberSecurity
CVE-2025-54322 (CVSS 10): AI Agents Uncover Critical Zero-Day in Global Networking Gear
pwn.ai reveals CVE-2025-54322, the first remotely exploitable zero-day found by autonomous AI agents, targeting Xspeeder SD-WAN gear globally.
⤷ Title: EmEditor Compromised: “WALSHAM” Imposter Poisons Official Installer with Spyware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:16:52 +0000
════════════════════════
⌗ Tags: #Malware #browser extension #cyber_espionage #cybersecurity #Data Breach #EmEditor #Google Drive Caching #Infostealer #malware #RedDrip Team #supply chain attack #WALSHAM INVESTMENTS LIMITED
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:16:52 +0000
════════════════════════
⌗ Tags: #Malware #browser extension #cyber_espionage #cybersecurity #Data Breach #EmEditor #Google Drive Caching #Infostealer #malware #RedDrip Team #supply chain attack #WALSHAM INVESTMENTS LIMITED
Daily CyberSecurity
EmEditor Compromised: "WALSHAM" Imposter Poisons Official Installer with Spyware
EmEditor confirms its official site was compromised, redirecting users to a malicious MSI signed by WALSHAM INVESTMENTS LIMITED to steal sensitive data.
⤷ Title: The Performance Propeller: Google Proposes Upstreaming Its High-Octane Optimizer to LLVM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:16:48 +0000
════════════════════════
⌗ Tags: #Linux #BOLT #Clang #Compiler Optimization #google #Linux Kernel #LLD #LLVM #open_source #Performance Engineering #PGO #Post_Link Optimization #Propeller
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:16:48 +0000
════════════════════════
⌗ Tags: #Linux #BOLT #Clang #Compiler Optimization #google #Linux Kernel #LLD #LLVM #open_source #Performance Engineering #PGO #Post_Link Optimization #Propeller
Daily CyberSecurity
The Performance Propeller: Google Proposes Upstreaming Its High-Octane Optimizer to LLVM
Google is upstreaming Propeller to LLVM, bringing its 10% performance boost for the Linux kernel and large-scale apps to the standard compiler toolchain.
⤷ Title: The Christmas Drain: How a Backdoor in Trust Wallet v2.68 Stole $7M
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:15:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Binance #Blockchain security #Crypto Hack #infosec #PostHog #Recovery Phrase #SlowMist #supply chain attack #Trust Wallet #v2.68.0 #ZachXBT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:15:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Binance #Blockchain security #Crypto Hack #infosec #PostHog #Recovery Phrase #SlowMist #supply chain attack #Trust Wallet #v2.68.0 #ZachXBT
Daily CyberSecurity
The Christmas Drain: How a Backdoor in Trust Wallet v2.68 Stole $7M
The well-known cryptocurrency wallet extension Trust Wallet appears to have recently fallen victim to a supply-chain attack. Attackers somehow compromised the extension and injected malicious code…
⤷ Title: The Stalled Update: Why Your Samsung’s Google Play Patch is Stuck in 2025
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:13:28 +0000
════════════════════════
⌗ Tags: #Android #Android 16 #Galaxy #Google Play System Update #heise online #One UI 8 #One UI 8.5 #Project Mainline #samsung #Samsung Members #security patch #software update
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:13:28 +0000
════════════════════════
⌗ Tags: #Android #Android 16 #Galaxy #Google Play System Update #heise online #One UI 8 #One UI 8.5 #Project Mainline #samsung #Samsung Members #security patch #software update
Daily CyberSecurity
The Stalled Update: Why Your Samsung’s Google Play Patch is Stuck in 2025
Samsung confirms it has "frozen" Google Play system updates to protect One UI 8 stability. Learn why your Galaxy is stuck and when it will resume in 2026.
⤷ Title: “Prefix Swap” Panic: Sophisticated “Jackson” Imposter Infiltrates Maven Central
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:06:49 +0000
════════════════════════
⌗ Tags: #Malware #Aikido Security #cybersecurity #DevOps #Jackson Library #jackson_databind #Java security #malware #Maven Central #org.fasterxml #supply chain attack #Typosquatting
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 00:06:49 +0000
════════════════════════
⌗ Tags: #Malware #Aikido Security #cybersecurity #DevOps #Jackson Library #jackson_databind #Java security #malware #Maven Central #org.fasterxml #supply chain attack #Typosquatting
Daily CyberSecurity
"Prefix Swap" Panic: Sophisticated "Jackson" Imposter Infiltrates Maven Central
Aikido Security uncovers the first sophisticated malware on Maven Central: a "prefix swap" attack on the Jackson library used to steal data.