⤷ Title: From “Just a Number” to a Privacy Leak: An IDOR Case Study
════════════════════════
𐀪 Author: Tilaksingh Rana
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:55:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty #ethical_hacking #owasp_top_10
════════════════════════
𐀪 Author: Tilaksingh Rana
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:55:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty #ethical_hacking #owasp_top_10
Medium
From “Just a Number” to a Privacy Leak: An IDOR Case Study
Introduction
⤷ Title: $150 Bug Bounty: SQL Injection in Nextcloud Android Content Provider
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:06:20 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #bug_bounty #web_security #technology
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:06:20 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #bug_bounty #web_security #technology
Medium
$150 Bug Bounty: SQL Injection in Nextcloud Android Content Provider
Abusing an Exposed Content Provider to Enumerate Internal Databases and Sensitive Account Data
⤷ Title: MongoDB Hacked: MongoBleed CVE-2025–14847
════════════════════════
𐀪 Author: Muhammad Haider Tallal
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:05:45 GMT
════════════════════════
⌗ Tags: #mongodb #bug_bounty #data_breach #cybersecurity #cloud_security
════════════════════════
𐀪 Author: Muhammad Haider Tallal
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:05:45 GMT
════════════════════════
⌗ Tags: #mongodb #bug_bounty #data_breach #cybersecurity #cloud_security
Medium
MongoDB Hacked: MongoBleed CVE-2025–14847
Database Bleeding? Why You Must Patch the “MongBleed” Vulnerability Now
⤷ Title: Earn $1000 by Using an AI Agent to Find XSS
════════════════════════
𐀪 Author: Muhammad Haider Tallal
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:03:59 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #web_security #cross_site_scripting #bug_bounty #xss_attack
════════════════════════
𐀪 Author: Muhammad Haider Tallal
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:03:59 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #web_security #cross_site_scripting #bug_bounty #xss_attack
Medium
AI Agent to Find XSS
How to use autonomous AI workflows to detect real-world XSS flaws faster than manual testing
⤷ Title: How I Chained 3 Vulnerabilities for Complete Account Takeover
════════════════════════
𐀪 Author: Raja Uzair Abdullah
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:01:45 GMT
════════════════════════
⌗ Tags: #security_testing #bug_bounty #application_security #penetration_testing #admin_takeover
════════════════════════
𐀪 Author: Raja Uzair Abdullah
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:01:45 GMT
════════════════════════
⌗ Tags: #security_testing #bug_bounty #application_security #penetration_testing #admin_takeover
Medium
How I Chained 3 Vulnerabilities for Complete Account Takeover
Complete Account Takeover: Chaining Three Vulnerabilities for Full System Compromise
⤷ Title: Containers — DoorDasher’s Demise— Writeup(DAY 14— Advent of Cyber TryHackMe 2025)
════════════════════════
𐀪 Author: Cyb3r-Kr4k3s
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:42:23 GMT
════════════════════════
⌗ Tags: #information_technology #cybersecurity #ctf #tryhackme #hacking
════════════════════════
𐀪 Author: Cyb3r-Kr4k3s
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 08:42:23 GMT
════════════════════════
⌗ Tags: #information_technology #cybersecurity #ctf #tryhackme #hacking
Medium
Containers — DoorDasher’s Demise— Writeup(DAY 14— Advent of Cyber TryHackMe 2025)
Containers — DoorDasher’s Demise
⤷ Title: Learning Ethical Hacking with Termux: How My Smartphone Became My First Cybersecurity Lab
════════════════════════
𐀪 Author: Sooraj Pandey
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 09:26:43 GMT
════════════════════════
⌗ Tags: #programming #ethical_hacking #termux #web_security #cybersecurity
════════════════════════
𐀪 Author: Sooraj Pandey
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 09:26:43 GMT
════════════════════════
⌗ Tags: #programming #ethical_hacking #termux #web_security #cybersecurity
Medium
📱 Learning Ethical Hacking with Termux: How My Smartphone Became My First Cybersecurity Lab
By Sooraj Pandey — Cybersecurity Trainer | Ethical Hacker | Web Penetration Tester | Full-Stack Developer
⤷ Title: CTF Walkthrough : SantaCloud by Intigriti.
════════════════════════
𐀪 Author: roguenull
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:58:58 GMT
════════════════════════
⌗ Tags: #idor_vulnerability #information_exposure #bug_bounty #ctf_walkthrough #ctf_writeup
════════════════════════
𐀪 Author: roguenull
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:58:58 GMT
════════════════════════
⌗ Tags: #idor_vulnerability #information_exposure #bug_bounty #ctf_walkthrough #ctf_writeup
Medium
CTF Walkthrough : SantaCloud by Intigriti.
Note : This is a walkthrough, but I’ve included what I did for better understanding.
⤷ Title: When CDNs Lie: How Cached Responses Exposed Private Data at Scale
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:02:13 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #infosec #hacking #cybersecurity
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:02:13 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #infosec #hacking #cybersecurity
Medium
When CDNs Lie: How Cached Responses Exposed Private Data at Scale 🌐💣
Free Link 🎈
⤷ Title: SOC Analyst ROADMAP [2026 ]
════════════════════════
𐀪 Author: Mr Horbio
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 11:07:54 GMT
════════════════════════
⌗ Tags: #hacking #ethical_hacking #roadmaps #cybersecurity #soc_analyst
════════════════════════
𐀪 Author: Mr Horbio
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 11:07:54 GMT
════════════════════════
⌗ Tags: #hacking #ethical_hacking #roadmaps #cybersecurity #soc_analyst
Medium
SOC Analyst ROADMAP [2026 ]
Happy New Year to all cybersecurity enthusiast. This is my research for you of Road map of SOC 2026. Hi Horbio great you Happy new year…
⤷ Title: Understanding Permissions in the New Microsoft Defender Portal
════════════════════════
𐀪 Author: Saikat Paul
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 11:00:02 GMT
════════════════════════
⌗ Tags: #information_technology #hacking #information_security #azure #cybersecurity
════════════════════════
𐀪 Author: Saikat Paul
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 11:00:02 GMT
════════════════════════
⌗ Tags: #information_technology #hacking #information_security #azure #cybersecurity
Medium
Understanding Permissions in the New Microsoft Defender Portal
Microsoft is Killing the Azure Portal for Sentinel — Here’s What Your Team Needs to Know About Permissions
⤷ Title: The Ghost and the Machine: Kevin Mitnick and the Art of Human Hacking
════════════════════════
𐀪 Author: Ann Isabelle
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:16:41 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #kevin_mitnick #social_engineering
════════════════════════
𐀪 Author: Ann Isabelle
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:16:41 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #kevin_mitnick #social_engineering
Medium
The Ghost and the Machine: Kevin Mitnick and the Art of Human Hacking
We like to imagine cybersecurity as a digital fortress. Firewalls stacked on firewalls. Encryption wrapped in encryption. Somewhere, a…
⤷ Title: Cybersecurity 2026 Forecast and Why I am Scary
════════════════════════
𐀪 Author: Motasem Hamdan
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:15:22 GMT
════════════════════════
⌗ Tags: #ai_agent #infosec #ai #generative_ai_tools #cybersecurity
════════════════════════
𐀪 Author: Motasem Hamdan
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:15:22 GMT
════════════════════════
⌗ Tags: #ai_agent #infosec #ai #generative_ai_tools #cybersecurity
Medium
Cybersecurity 2026 Forecast and Why I am Scared
If you’re celebrating the arrival of a new year, you’re not alone. The party mood outside feels like a fresh start and a clean slate. But…
⤷ Title: The Most Dangerous Vulnerability Nobody Patches on Time
════════════════════════
𐀪 Author: Rajat Srivastava
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:09:26 GMT
════════════════════════
⌗ Tags: #cyebrsecurity #cyberattack #vulnerability #data_breach #sql_injection
════════════════════════
𐀪 Author: Rajat Srivastava
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 10:09:26 GMT
════════════════════════
⌗ Tags: #cyebrsecurity #cyberattack #vulnerability #data_breach #sql_injection
Medium
The Most Dangerous Vulnerability Nobody Patches on Time
During a recent security assessment, I identified a Boolean-based blind SQL injection on a live application endpoint: /CMS/GetMarqueeData
⤷ Title: Admin Dashboard Access Wasn’t Hacked — It Was Allowed
════════════════════════
𐀪 Author: XoX
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:32:29 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #infosec #security #cybersecurity
════════════════════════
𐀪 Author: XoX
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:32:29 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #infosec #security #cybersecurity
Medium
Admin Dashboard Access Wasn’t Hacked — It Was Allowed
No exploits. No malware. No brute force. Just exposed APIs, missing authorization checks, and a clear path from visitor to admin.
⤷ Title: Unlocking the Power of DNSRecon: Advanced Recon Techniques for Red Teamers
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:50:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #reconnaissance #security #hacking #information_security
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:50:24 GMT
════════════════════════
⌗ Tags: #cybersecurity #reconnaissance #security #hacking #information_security
Medium
Unlocking the Power of DNSRecon: Advanced Recon Techniques for Red Teamers
Go beyond basic lookups — leverage DNSRecon to expose deep infrastructure insights.
⤷ Title: Getting Started with DNSRecon: Discover Hidden DNS Information Like a Pro
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:49:36 GMT
════════════════════════
⌗ Tags: #information_security #security #hacking #cybersecurity #reconnaissance
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:49:36 GMT
════════════════════════
⌗ Tags: #information_security #security #hacking #cybersecurity #reconnaissance
Medium
Getting Started with DNSRecon: Discover Hidden DNS Information Like a Pro
Your first step into the world of DNS enumeration and cybersecurity reconnaissance.
⤷ Title: [TK] Writeup for picoCTF challenge “picobrowser”
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:02:39 GMT
════════════════════════
⌗ Tags: #picoctf #ctf #hacking #ctf_writeup #cybersecurity
════════════════════════
𐀪 Author: Walter Moar
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 12:02:39 GMT
════════════════════════
⌗ Tags: #picoctf #ctf #hacking #ctf_writeup #cybersecurity
Medium
[TK] Writeup for picoCTF challenge “picobrowser”
Spoof User-Agent headers and learn why client-controlled data can’t be trusted for security
⤷ Title: Linux Security Habit #13: I Treat Every Cron Job as a Potential Persistence Mechanism
════════════════════════
𐀪 Author: Faruk Ahmed
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:02:30 GMT
════════════════════════
⌗ Tags: #infosec #devsecops #linux_admin #linux_security #cybersecurity
════════════════════════
𐀪 Author: Faruk Ahmed
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:02:30 GMT
════════════════════════
⌗ Tags: #infosec #devsecops #linux_admin #linux_security #cybersecurity
Medium
Linux Security Habit #13: I Treat Every Cron Job as a Potential Persistence Mechanism
Cron is one of the most trusted tools on a Linux system.
⤷ Title: Chapter 2: The Loud Scan That Got Grounded
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:08:04 GMT
════════════════════════
⌗ Tags: #network_security #cybersecurity #technology #ethical_hacking #coding
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:08:04 GMT
════════════════════════
⌗ Tags: #network_security #cybersecurity #technology #ethical_hacking #coding
Medium
Chapter 2: The Loud Scan That Got Grounded
When the firewall stopped playing nice
⤷ Title: Sequel Dump (TryHackMe) — In-Depth Analysis
════════════════════════
𐀪 Author: East Striker
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:41:47 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme_walkthrough #sql_injection #pcapng
════════════════════════
𐀪 Author: East Striker
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:41:47 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme_walkthrough #sql_injection #pcapng
Medium
Sequel Dump (TryHackMe) — In-Depth Analysis
Category: Forensics | Difficulty: Hard | MITRE ATT&CK TTPs (Potential Alignment): TA0001, TA0005, T1190, T1027.010