⤷ Title: From Subtle IDOR to Full Account Takeover (Including Admin Access)
════════════════════════
𐀪 Author: Amit Dutta
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:02:08 GMT
════════════════════════
⌗ Tags: #broken_access_control #idor_vulnerability #cybersecurity #hacking #bug_bounty
════════════════════════
𐀪 Author: Amit Dutta
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:02:08 GMT
════════════════════════
⌗ Tags: #broken_access_control #idor_vulnerability #cybersecurity #hacking #bug_bounty
Medium
From Subtle IDOR to Full Account Takeover (Including Admin Access)
Note :The website name isn’t disclosed, and all user details are blurred in black-and-white images.
⤷ Title: [AD攻防] NTLM Relay 攻擊
════════════════════════
𐀪 Author: 陳禹璿
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:02:25 GMT
════════════════════════
⌗ Tags: #active_directory_security #oscp #ntlm_relay #hacking #windows_authentication
════════════════════════
𐀪 Author: 陳禹璿
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:02:25 GMT
════════════════════════
⌗ Tags: #active_directory_security #oscp #ntlm_relay #hacking #windows_authentication
Medium
[AD攻防] NTLM Relay 攻擊
NTLM Relay Attack
⤷ Title: CEHv12: SQL Injectio(Practised) (Module 15)
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:07:36 GMT
════════════════════════
⌗ Tags: #owaspzap #sql_injection #hacking #proxy #che
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:07:36 GMT
════════════════════════
⌗ Tags: #owaspzap #sql_injection #hacking #proxy #che
Medium
CEHv12: SQL Injectio(Practised) (Module 15)
What is SQL Injection?
⤷ Title: Understanding CWE-290: Authentication Bypass by Spoofing
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:02:24 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #infosec #cwe #software_development
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:02:24 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #infosec #cwe #software_development
Medium
Understanding CWE-290: Authentication Bypass by Spoofing
Authentication systems verify the identity of users before granting access to protected resources. These systems rely on various…
⤷ Title: CEHv12: Hacking Web Applications (Practised) (Module 14)
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:02:04 GMT
════════════════════════
⌗ Tags: #hacking #application #web #web_application_hacking #che
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:02:04 GMT
════════════════════════
⌗ Tags: #hacking #application #web #web_application_hacking #che
Medium
CEHv12: Hacking Web Applications (Practised) (Module 14)
Web Application:
⤷ Title: Linux Security Habit #12: I Always Check Kernel Timers Before Trusting System Stability
════════════════════════
𐀪 Author: Faruk Ahmed
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:02:25 GMT
════════════════════════
⌗ Tags: #devsecops #linux_security #cybersecurity #infosec #linux_admin
════════════════════════
𐀪 Author: Faruk Ahmed
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:02:25 GMT
════════════════════════
⌗ Tags: #devsecops #linux_security #cybersecurity #infosec #linux_admin
Medium
Linux Security Habit #12: I Always Check Kernel Timers Before Trusting System Stability
A Linux system can look perfectly healthy — and still be minutes away from doing something destructive.
⤷ Title: PWN101 — TryHackMe
════════════════════════
𐀪 Author: SilentHex
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:59:09 GMT
════════════════════════
⌗ Tags: #hacking #buffer_overflow #pwn #exploitation #tryhackme
════════════════════════
𐀪 Author: SilentHex
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:59:09 GMT
════════════════════════
⌗ Tags: #hacking #buffer_overflow #pwn #exploitation #tryhackme
Medium
PWN101 — TryHackMe
Hi guys.
In this writeup we’re going to solve the first challenge from the Pwn101 collection on TryHackMe.
In this writeup we’re going to solve the first challenge from the Pwn101 collection on TryHackMe.
⤷ Title: picoCTF Trickster Walkthrough: Exploiting a PNG-Only Image Processing Web App
════════════════════════
𐀪 Author: Debashish Sadhu
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:47:00 GMT
════════════════════════
⌗ Tags: #ctf #picoctf #bugs #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Debashish Sadhu
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:47:00 GMT
════════════════════════
⌗ Tags: #ctf #picoctf #bugs #cybersecurity #ethical_hacking
Medium
picoCTF Trickster Walkthrough: Exploiting a PNG-Only Image Processing Web App
In this picoCTF Trickster walkthrough, the first step is web directory enumeration, where I use Gobuster to discover hidden files and…
⤷ Title: My AI Hired Another AI to Run My Twitter
════════════════════════
𐀪 Author: Lab2Aid
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:28:49 GMT
════════════════════════
⌗ Tags: #automation #n8n #build_in_public #ai #xs
════════════════════════
𐀪 Author: Lab2Aid
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 12:28:49 GMT
════════════════════════
⌗ Tags: #automation #n8n #build_in_public #ai #xs
Medium
My AI Hired Another AI to Run My Twitter
I successfully automated my entire social media workflow using n8n and GPT-4o.
⤷ Title: ⚡ Weekly Recap: MongoDB Attacks, Wallet Breaches, Android Spyware, Insider Crime & More
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 19:08:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 19:08:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Finding Broken Access Control in Multi-Tenant Systems
════════════════════════
𐀪 Author: Afi0pchik
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:50:34 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #meetcyber #bug_bounty_tips #infosec_write_ups
════════════════════════
𐀪 Author: Afi0pchik
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:50:34 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #meetcyber #bug_bounty_tips #infosec_write_ups
Medium
Finding Broken Access Control in Multi-Tenant Systems
How Broken Access Control Leads to Cross-Tenant Data Exposure
⤷ Title: Consistency Over Chaos: A 360-Day Bug Hunting Experiment
════════════════════════
𐀪 Author: Rizwan_siddiqui
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:42:31 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Rizwan_siddiqui
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:42:31 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty
Medium
Consistency Over Chaos: A 360-Day Bug Hunting Experiment
After my final tweet of 360-Day Bug Hunting I got lot of DM asking
⤷ Title: The Keys to the Kingdom: An Advanced Look at Remote Code Execution (RCE)
════════════════════════
𐀪 Author: Yassin Salah
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:24:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #infosec #programming #web_development
════════════════════════
𐀪 Author: Yassin Salah
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:24:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #infosec #programming #web_development
Medium
The Keys to the Kingdom: An Advanced Look at Remote Code Execution (RCE)
Going beyond basics to understand how attackers turn input into arbitrary command execution, and how modern architecture fights back.
⤷ Title: China Attacks Thirty American Firms In Bizarre New Cyber Hack
════════════════════════
𐀪 Author: Linda Caroll
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:20:01 GMT
════════════════════════
⌗ Tags: #tech #security #ai #technology #hacking
════════════════════════
𐀪 Author: Linda Caroll
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:20:01 GMT
════════════════════════
⌗ Tags: #tech #security #ai #technology #hacking
Medium
China Attacks Thirty American Firms In Bizarre New Cyber Hack
Anthropic says it’s the first documented case of a large-scale cyberattack executed without substantial human intervention
⤷ Title: HACK THE BOX — Active
════════════════════════
𐀪 Author: Alleyezonme
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:50:17 GMT
════════════════════════
⌗ Tags: #white_hat_hacker #hacking #pentesting #hackthebox_walkthrough #netexec
════════════════════════
𐀪 Author: Alleyezonme
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 13:50:17 GMT
════════════════════════
⌗ Tags: #white_hat_hacker #hacking #pentesting #hackthebox_walkthrough #netexec
Medium
HACK THE BOX — Active
OS: Windows(Active Directory) Difficulty: Easy Status: Retired
⤷ Title: MongoBleed in the Wild: Technical Analysis and Impact of CVE-2025–14847
════════════════════════
𐀪 Author: RealSec.io
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:34:34 GMT
════════════════════════
⌗ Tags: #mongodb #cybersecurity #cve #infosec #vulnerability
════════════════════════
𐀪 Author: RealSec.io
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:34:34 GMT
════════════════════════
⌗ Tags: #mongodb #cybersecurity #cve #infosec #vulnerability
Medium
MongoBleed in the Wild: Technical Analysis and Impact of CVE-2025–14847
MongoDB has confirmed active exploitation of a high-severity unauthenticated information disclosure vulnerability tracked as…
⤷ Title: Blue Team Level 1 (BTL1) Review
════════════════════════
𐀪 Author: Cyd Tseng
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:27:12 GMT
════════════════════════
⌗ Tags: #information_technology #infosec #cybersecurity #blue_team #information_security
════════════════════════
𐀪 Author: Cyd Tseng
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:27:12 GMT
════════════════════════
⌗ Tags: #information_technology #infosec #cybersecurity #blue_team #information_security
Medium
Blue Team Level 1 (BTL1) Review
If you are looking for an entry-level blue team certification that actually builds investigation skills, Blue Team Level 1 is a strong…
⤷ Title: Working Like a Professional Pentester (script -f mlog.log)
════════════════════════
𐀪 Author: Mert Baykal
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:59:43 GMT
════════════════════════
⌗ Tags: #kali_linux #information_security #ethical_hacking #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Mert Baykal
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:59:43 GMT
════════════════════════
⌗ Tags: #kali_linux #information_security #ethical_hacking #penetration_testing #cybersecurity
Medium
Working Like a Professional Pentester (script -f mlog.log)
In penetration testing, technical skills alone are not enough. Documentation and proper logging are just as important as the attacks…
⤷ Title: Lab: Reflected XSS into HTML context with all tags blocked except custom ones
════════════════════════
𐀪 Author: KRY
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:50:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyberkry #penetration_testing #portswigger #xx
════════════════════════
𐀪 Author: KRY
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:50:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyberkry #penetration_testing #portswigger #xx
Medium
Lab: Reflected XSS into HTML context with all tags blocked except custom ones
Description
⤷ Title: Lab: Reflected XSS into HTML context with most tags and attributes blocked
════════════════════════
𐀪 Author: KRY
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:48:22 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #cyberkry #xx #portswigger
════════════════════════
𐀪 Author: KRY
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 14:48:22 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #cyberkry #xx #portswigger
Medium
Lab: Reflected XSS into HTML context with most tags and attributes blocked
Description
⤷ Title: How I Phished a Toy Factory: A Write-up for THM's Merry Clickmas Room
════════════════════════
𐀪 Author: Spiritsimba
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:36:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #phishing #ctf_writeup
════════════════════════
𐀪 Author: Spiritsimba
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 15:36:35 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme #phishing #ctf_writeup
Medium
How I Phished a Toy Factory: A Write-up for THM's Merry Clickmas Room
Room Name: Phishing — Merry Clickmas
Level: Easy
Category: Phishing
Level: Easy
Category: Phishing