⤷ Title: Root Me — JavaScript Obfuscation 3 (walkthrough)
════════════════════════
𐀪 Author: Ariana-FR
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:45:09 GMT
════════════════════════
⌗ Tags: #web_development #programming #hacking #javascript
════════════════════════
𐀪 Author: Ariana-FR
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:45:09 GMT
════════════════════════
⌗ Tags: #web_development #programming #hacking #javascript
Medium
Root Me — JavaScript Obfuscation 3 (walkthrough)
1 january 2026 12:4
⤷ Title: Hunting a Zero-Click Reflected XSS: Breaking Out of Attributes in WordPress Search
════════════════════════
𐀪 Author: Maverick
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:24:18 GMT
════════════════════════
⌗ Tags: #web_security #technology #hacking #cybersecurity #wordpress
════════════════════════
𐀪 Author: Maverick
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:24:18 GMT
════════════════════════
⌗ Tags: #web_security #technology #hacking #cybersecurity #wordpress
Medium
Hunting a Zero-Click Reflected XSS: Breaking Out of Attributes in WordPress Search
As a security researcher, one of the most satisfying finds is a zero-click vulnerability something that executes malicious code the moment…
⤷ Title: The Chameleon Attack: Breaking Apache StreamPipes with Recursive Object Tampering (CVE-2025–47411)
════════════════════════
𐀪 Author: Francisco Paz Mccausland
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:16:14 GMT
════════════════════════
⌗ Tags: #cve #hacking #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Francisco Paz Mccausland
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:16:14 GMT
════════════════════════
⌗ Tags: #cve #hacking #ethical_hacking #cybersecurity
Medium
The Chameleon Attack: Breaking Apache StreamPipes with Recursive Object Tampering (CVE-2025–47411)
Why modern WAFs fail against “Read-Modify-Write” exploits in Java architectures.
⤷ Title: I Tried a 10 Year Old Wi-Fi Hacking Tool and It Still Worked
════════════════════════
𐀪 Author: alopix
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:42:31 GMT
════════════════════════
⌗ Tags: #programming #wifi #cybersecurity #communication #hacking
════════════════════════
𐀪 Author: alopix
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:42:31 GMT
════════════════════════
⌗ Tags: #programming #wifi #cybersecurity #communication #hacking
Medium
I Tried a 10 Year Old Wi-Fi Hacking Tool and It Still Worked
DISCLAIMER: FOR EDUCATIONAL(AND NOSTALGIA) PURPOSES ONLY
⤷ Title: ARP Poisoning with ARP Spoof: A Guide to MITM Attacks
════════════════════════
𐀪 Author: Vignesh R
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:32:26 GMT
════════════════════════
⌗ Tags: #mitm #arp_poisoning #hacking #arp_spoof #arp_spoofing
════════════════════════
𐀪 Author: Vignesh R
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:32:26 GMT
════════════════════════
⌗ Tags: #mitm #arp_poisoning #hacking #arp_spoof #arp_spoofing
Medium
ARP Poisoning with ARP Spoof: A Guide to MITM Attacks
ARP spoofing & Man In The Middle Attacks Execution & Detection
⤷ Title: Linux Privilege Escalation via Sudo Misconfigurations: Shell Escaping, LD_PRELOAD & Real-World…
════════════════════════
𐀪 Author: Amrit Sinha
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:02:18 GMT
════════════════════════
⌗ Tags: #linux #programming #cybersecurity #coding #hacking
════════════════════════
𐀪 Author: Amrit Sinha
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:02:18 GMT
════════════════════════
⌗ Tags: #linux #programming #cybersecurity #coding #hacking
Medium
Linux Privilege Escalation via Sudo Misconfigurations: Shell Escaping, LD_PRELOAD & Real-World Exploits
In Part 1, we kicked down the front door by exploiting weak file permissions on /etc/shadow. But in my recent Red Team engagements, I’ve…
⤷ Title: KaffeeSoc Try Hack Me Room
════════════════════════
𐀪 Author: Mylescorey
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:58:59 GMT
════════════════════════
⌗ Tags: #osint #tryhackme
════════════════════════
𐀪 Author: Mylescorey
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:58:59 GMT
════════════════════════
⌗ Tags: #osint #tryhackme
Medium
KaffeeSoc Try Hack Me Room
The first tasked is simple it asking you who hired us and who we are investigation. Reading the background information, we can find this…
⤷ Title: LokidresCTF Write-Up
════════════════════════
𐀪 Author: Myusuftr
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:01:07 GMT
════════════════════════
⌗ Tags: #ctf #pentesting #cybersecurity #tryhackme #ctf_writeup
════════════════════════
𐀪 Author: Myusuftr
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:01:07 GMT
════════════════════════
⌗ Tags: #ctf #pentesting #cybersecurity #tryhackme #ctf_writeup
Medium
LokidresCTF Write-Up
This write-up covers the solution of my first CTF machine, LokidresCTF.
⤷ Title: Cap — HackTheBox Write-up
════════════════════════
𐀪 Author: CO0L7
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:53:33 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup
════════════════════════
𐀪 Author: CO0L7
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 13:53:33 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup
⤷ Title: When Flexibility Becomes a Backdoor: Analyzing CVE-2025–69288 in Titra
════════════════════════
𐀪 Author: Francisco Paz Mccausland
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:51:21 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cve #cybersecurity
════════════════════════
𐀪 Author: Francisco Paz Mccausland
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:51:21 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cve #cybersecurity
Medium
When Flexibility Becomes a Backdoor: Analyzing CVE-2025–69288 in Titra
How a “custom rule” feature can turn into a Remote Code Execution nightmare.
⤷ Title: Using ffuf as a Practical Replacement for Burp Intruder (Community Edition)
════════════════════════
𐀪 Author: aimbot97
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:15:35 GMT
════════════════════════
⌗ Tags: #web_application_security #sql_injection #fuzzing #burpsuite #blind_sql_injection
════════════════════════
𐀪 Author: aimbot97
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 15:15:35 GMT
════════════════════════
⌗ Tags: #web_application_security #sql_injection #fuzzing #burpsuite #blind_sql_injection
Medium
🔍 Using ffuf as a Practical Replacement for Burp Intruder (Community Edition)
While learning SQL Injection exploitation, I encountered a real limitation that many security learners and professionals face: Burp Suite…
⤷ Title: Sıfırdan Otomasyona: Kapsamlı Recon Rehberi
════════════════════════
𐀪 Author: Sakarya Üniversitesi Siber Güvenlik Topluluğu
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:05:31 GMT
════════════════════════
⌗ Tags: #saüsiber #reconnaissance #recon
════════════════════════
𐀪 Author: Sakarya Üniversitesi Siber Güvenlik Topluluğu
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 14:05:31 GMT
════════════════════════
⌗ Tags: #saüsiber #reconnaissance #recon
Medium
Sıfırdan Otomasyona: Kapsamlı Recon Rehberi
Hazırlayan: Burak Demir
Düzenleyen: Sena Kuzğu
Düzenleyen: Sena Kuzğu
⤷ Title: ThreatsDay Bulletin: GhostAd Drain, macOS Attacks, Proxy Botnets, Cloud Exploits, and 12+ Stories
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 21:22:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 21:22:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: The Multi-Tenancy Bug That Leaked 10,000 User Records
════════════════════════
𐀪 Author: Byte Me Daily
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:46:51 GMT
════════════════════════
⌗ Tags: #software_development #database #software_engineering #technology #bug_bounty
════════════════════════
𐀪 Author: Byte Me Daily
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:46:51 GMT
════════════════════════
⌗ Tags: #software_development #database #software_engineering #technology #bug_bounty
Medium
The Multi-Tenancy Bug That Leaked 10,000 User Records
The Query That Looked Innocent
⤷ Title: Chapter 3: Policies & Escalation
════════════════════════
𐀪 Author: Aang
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:25:45 GMT
════════════════════════
⌗ Tags: #bug_bounty #red_team #ethical_hacking #active_directory #information_technology
════════════════════════
𐀪 Author: Aang
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:25:45 GMT
════════════════════════
⌗ Tags: #bug_bounty #red_team #ethical_hacking #active_directory #information_technology
Medium
Chapter 3 — AD Policies & Escalation
Learning about Group Policy (GPO), Kerberoasting, AS-REP Roasting, and Delegation.
⤷ Title: Beyond the APK: Exploiting Misconfigured Firebase Databases
════════════════════════
𐀪 Author: Samet Yiğit
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:49:00 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #bug_bounty_writeup
════════════════════════
𐀪 Author: Samet Yiğit
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:49:00 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty #bug_bounty_writeup
Medium
Beyond the APK: Exploiting Misconfigured Firebase Databases
In the fast-paced world of mobile development, Google’s Firebase is a lifesaver. However, speed often leads to oversight. One of the most…
⤷ Title: Web Application Security
════════════════════════
𐀪 Author: Rashed Ut
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:11:41 GMT
════════════════════════
⌗ Tags: #pentesting #application_security #web_application_security #information_security
════════════════════════
𐀪 Author: Rashed Ut
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:11:41 GMT
════════════════════════
⌗ Tags: #pentesting #application_security #web_application_security #information_security
Medium
Web Application Security
A Step-by-Step Learning Guide for Beginners
⤷ Title: Your MongoDB Might Be Bleeding Secrets Right Now: Inside CVE‑2025‑14847
════════════════════════
𐀪 Author: cybrNK
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:56:24 GMT
════════════════════════
⌗ Tags: #hacking #cve #mongodb #cybersecurity #cyber
════════════════════════
𐀪 Author: cybrNK
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:56:24 GMT
════════════════════════
⌗ Tags: #hacking #cve #mongodb #cybersecurity #cyber
Medium
Your MongoDB Might Be Bleeding Secrets Right Now: Inside CVE‑2025‑14847
MongoBleed is one of those bugs that turns a quiet piece of infrastructure into a front row security incident, especially if you run self…
⤷ Title: ✌️ 25 Javascript Path Files Used To Store Sensitive Information In Web Application:-
════════════════════════
𐀪 Author: Shardul Sawant
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:24:07 GMT
════════════════════════
⌗ Tags: #hacking #penetration_testing #web_security #red_team #web_penetration_testing
════════════════════════
𐀪 Author: Shardul Sawant
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 16:24:07 GMT
════════════════════════
⌗ Tags: #hacking #penetration_testing #web_security #red_team #web_penetration_testing
Medium
✌️ 25 Javascript Path Files Used To Store Sensitive Information In Web Application:-
1️⃣ /js/config.js
2️⃣ /js/credentials.js
3️⃣ /js/secrets.js
4️⃣ /js/keys.js
5️⃣ /js/password.js
6️⃣ /js/api_keys.js
7️⃣/js/auth_tokens.js…
2️⃣ /js/credentials.js
3️⃣ /js/secrets.js
4️⃣ /js/keys.js
5️⃣ /js/password.js
6️⃣ /js/api_keys.js
7️⃣/js/auth_tokens.js…
⤷ Title: If You Are ISO 27001 Certified, Do You Still Need DPDPA Compliance? (ISO 27001 vs DPDPA)
════════════════════════
𐀪 Author: DPDPAedu.org
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:23:51 GMT
════════════════════════
⌗ Tags: #dpdp_act #cybersecurity #infosec #iso_27001 #compliance
════════════════════════
𐀪 Author: DPDPAedu.org
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:23:51 GMT
════════════════════════
⌗ Tags: #dpdp_act #cybersecurity #infosec #iso_27001 #compliance
Medium
If You Are ISO 27001 Certified, Do You Still Need DPDPA Compliance? (ISO 27001 vs DPDPA)
ISO 27001 taught us how to protect data; the DPDPA is teaching us that we don’t truly own it. If you’re treating these two as the same…
⤷ Title: Pen Testing and Its Role in Cybersecurity
════════════════════════
𐀪 Author: Manar Mohamed
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:20:36 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Manar Mohamed
════════════════════════
ⴵ Time: Thu, 01 Jan 2026 17:20:36 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #cybersecurity
Medium
Pen Testing and Its Role in Cybersecurity
Penetration testing is a security test where a company allows a tester to try to break into its systems. This could be a website, a…