⤷ Title: Advent of Cyber — Day 6: Malware Analysis — Egg-xecutable
════════════════════════
𐀪 Author: Samuel Mikeng Mbongo
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 23:15:01 GMT
════════════════════════
⌗ Tags: #advent_of_cyber_2025 #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Samuel Mikeng Mbongo
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 23:15:01 GMT
════════════════════════
⌗ Tags: #advent_of_cyber_2025 #tryhackme #cybersecurity
Medium
Advent of Cyber — Day 6: Malware Analysis — Egg-xecutable
Advent of Cyber — Day 6: Malware Analysis — Egg-xecutable While Wareville sleeps peacefully under the winter sky, the SOC team at The Best Festival Company (TBFC) is wide awake. Screens glow …
⤷ Title: Advent of Cyber — Day 5: IDOR — Santa’s Little IDOR
════════════════════════
𐀪 Author: Samuel Mikeng Mbongo
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 23:11:57 GMT
════════════════════════
⌗ Tags: #tryhackme #advent_of_cyber_2025 #cybersecurity
════════════════════════
𐀪 Author: Samuel Mikeng Mbongo
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 23:11:57 GMT
════════════════════════
⌗ Tags: #tryhackme #advent_of_cyber_2025 #cybersecurity
Medium
Advent of Cyber — Day 5: IDOR — Santa’s Little IDOR
Advent of Cyber — Day 5: IDOR — Santa’s Little IDOR Since McSkidy went missing, the elves of Wareville have been on high alert. What started as a few support tickets quickly turned into …
⤷ Title: Natas17 Write‑Up Time‑Based Blind SQL Injection
════════════════════════
𐀪 Author: Oct Diz
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 22:13:49 GMT
════════════════════════
⌗ Tags: #sql_injection #blind_sql_injection #sql
════════════════════════
𐀪 Author: Oct Diz
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 22:13:49 GMT
════════════════════════
⌗ Tags: #sql_injection #blind_sql_injection #sql
Medium
🔐 Natas17 Write‑Up Time‑Based Blind SQL Injection
OverTheWire Natas Level 17
⤷ Title: CVE-2025-14026: Forcepoint DLP Flaw Lets Attackers Unchain Restricted Python
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:53:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CERT/CC #CVE_2025_14026 #DLP (Data Loss Prevention) #Enterprise Security #Forcepoint #Python Security #Sandbox Escape
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:53:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CERT/CC #CVE_2025_14026 #DLP (Data Loss Prevention) #Enterprise Security #Forcepoint #Python Security #Sandbox Escape
Daily CyberSecurity
CVE-2025-14026: Forcepoint DLP Flaw Lets Attackers Unchain Restricted Python
A high-severity vulnerability in the Forcepoint One DLP Client has been disclosed, revealing a method for attackers to break out of a vendor-imposed “sandbox” and execute arbitrary cod…
⤷ Title: Google Patches High-Severity “WebView” Flaw in Chrome 143
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:44:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #CVE_2026_0628 #Gal Weizman #google chrome #software update #vulnerability management #WebView #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:44:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #CVE_2026_0628 #Gal Weizman #google chrome #software update #vulnerability management #WebView #zero_day
Daily CyberSecurity
Google Patches High-Severity “WebView” Flaw in Chrome 143
Google has announced an important security update for the Stable channel of its Chrome browser, rolling out patches to Windows, Mac, and Linux users to address a high-severity vulnerability that c…
⤷ Title: Zero-Day Chronomaly Exploit Grants Root Access to Vulnerable Linux Kernels
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:22:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Android security #Chronomaly #CVE_2025_38352 #farazsth98 #InfoSec 2026 #Linux Kernel #POSIX CPU Timers #privilege escalation #Root Exploit #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:22:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Android security #Chronomaly #CVE_2025_38352 #farazsth98 #InfoSec 2026 #Linux Kernel #POSIX CPU Timers #privilege escalation #Root Exploit #zero_day
Daily CyberSecurity
Zero-Day Chronomaly Exploit Grants Root Access to Vulnerable Linux Kernels
Cybersecurity researcher farazsth98 has presented new findings related to an exploited security issue in Linux kernel flaw that could be abused by an attacker to privilege escalation. The vulnerab…
⤷ Title: The ClickFix Trap: PHALT#BLYX Targets Hotels with Fake Blue Screens and DCRat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:18:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #Booking.com Scam #BSOD Malware #ClickFix #Cyber Espionage 2026 #DCRat #Hospitality Security #PHALT#BLYX #Securonix #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:18:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #Booking.com Scam #BSOD Malware #ClickFix #Cyber Espionage 2026 #DCRat #Hospitality Security #PHALT#BLYX #Securonix #social engineering
Daily CyberSecurity
The ClickFix Trap: PHALT#BLYX Targets Hotels with Fake Blue Screens and DCRat
A sophisticated new cyber-espionage campaign is targeting the hospitality industry, turning everyday booking management into a nightmare scenario. Securonix threat researchers have uncovered a ste…
⤷ Title: Popular Chinese Utility Hijacked to Deploy Browser Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:06:51 +0000
════════════════════════
⌗ Tags: #Malware #browser hijacking #cybersecurity #Data Privacy #Digital Signatures #Malware Analysis #Microsoft Edge Extensions #Mltab #Office Assistant #QiAnXin #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:06:51 +0000
════════════════════════
⌗ Tags: #Malware #browser hijacking #cybersecurity #Data Privacy #Digital Signatures #Malware Analysis #Microsoft Edge Extensions #Mltab #Office Assistant #QiAnXin #threat intelligence
Daily CyberSecurity
Popular Chinese Utility Hijacked to Deploy Browser Malware
The RedDrip Team at QiAnXin Technology’s Threat Intelligence Center has uncovered a widespread malware campaign hiding inside a popular productivity tool. The “Office Assistant” softwa…
⤷ Title: CVE-2025-67732: Dify Patch Fixes High-Severity Plaintext API Key Exposure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:01:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #API security #Credential Harvesting #CVE_2025_67732 #Dify #Information Disclosure #Langgenius #LLM #OpenAI #Patch Alert #Plaintext Credentials #RAG
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:01:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #API security #Credential Harvesting #CVE_2025_67732 #Dify #Information Disclosure #Langgenius #LLM #OpenAI #Patch Alert #Plaintext Credentials #RAG
Daily CyberSecurity
CVE-2025-67732: Dify Patch Fixes High-Severity Plaintext API Key Exposure
Dify, the popular open-source platform used by developers to build Large Language Model (LLM) applications and RAG pipelines, has patched a high-severity vulnerability that could leave administrat…
⤷ Title: Why Your Cache Rules are Leaking User Data (Web Cache Deception)
════════════════════════
𐀪 Author: Nullifiedsec
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:58:19 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #web_cache_deception #bug_bounty #web_cache_poisoning
════════════════════════
𐀪 Author: Nullifiedsec
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:58:19 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #web_cache_deception #bug_bounty #web_cache_poisoning
Medium
Why Your Cache Rules are Leaking User Data (Web Cache Deception)
(The original article is in my website click here to view it)
⤷ Title: Nmap Guide for Bug Bounty: Port Scanning and WAF Evasion
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:02:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #technology #cybersecurity #penetration_testing #hacking
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:02:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #technology #cybersecurity #penetration_testing #hacking
Medium
Nmap Guide for Bug Bounty: Port Scanning and WAF Evasion
Master Nmap for Bug Bounty: rapid scanning techniques, use of NSE scripts, and advanced strategies for evading firewalls and WAFs.
⤷ Title: JTAG Is the Quietest Backdoor You’ve Never Logged
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:13:38 GMT
════════════════════════
⌗ Tags: #jtag #backdoor #programming #hacking_tools #hacking
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:13:38 GMT
════════════════════════
⌗ Tags: #jtag #backdoor #programming #hacking_tools #hacking
Medium
JTAG Is the Quietest Backdoor You’ve Never Logged
Photo by Rene on Unsplash
⤷ Title: Tanuki -Writeup
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:15:02 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bug_bounty_writeup #cybersecurity #bugforge #xxe
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:15:02 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bug_bounty_writeup #cybersecurity #bugforge #xxe
Medium
Tanuki -Writeup
I recently became aware of bugforge.io , a great new platform that’s still in its infancy but has a lot of potential. They do a daily…
⤷ Title: Automating HackerOne Scope Parsing with qsv for Bug Bounty Recon
════════════════════════
𐀪 Author: Sam Hilliard
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:27:29 GMT
════════════════════════
⌗ Tags: #scripting #bug_bounty #recon #csv
════════════════════════
𐀪 Author: Sam Hilliard
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:27:29 GMT
════════════════════════
⌗ Tags: #scripting #bug_bounty #recon #csv
Medium
Automating HackerOne Scope Parsing with qsv for Bug Bounty Recon
Before you start bug hunting on a new program, you need to feed the right assets to the right tools for automated recon. Sorting through…
⤷ Title: From Code to Cloud: How App Security Audits Protect Your Digital Assets
════════════════════════
𐀪 Author: Smart City System - HR Software | HRMS | Payroll
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:48:35 GMT
════════════════════════
⌗ Tags: #application_security #app_security #app_security_audit #web_app_security #web_application_security
════════════════════════
𐀪 Author: Smart City System - HR Software | HRMS | Payroll
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:48:35 GMT
════════════════════════
⌗ Tags: #application_security #app_security #app_security_audit #web_app_security #web_application_security
Medium
From Code to Cloud: How App Security Audits Protect Your Digital Assets
Modern applications no longer reside in a single location. They span source code repositories, development pipelines, cloud platforms…
⤷ Title: Hack Supreme Duelist Stickman
════════════════════════
𐀪 Author: Apkpuredev
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:12:53 GMT
════════════════════════
⌗ Tags: #supreme_duelist_stickman #apk_games #apkpure #games #hacking
════════════════════════
𐀪 Author: Apkpuredev
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:12:53 GMT
════════════════════════
⌗ Tags: #supreme_duelist_stickman #apk_games #apkpure #games #hacking
Medium
Hack Supreme Duelist Stickman
Hack Supreme Duelist Stickman là tựa game chiến đấu đầy hấp dẫn, với tính năng vô hạn tiền, giúp bạn không cần lo lắng về việc thiếu tài…
⤷ Title: TryHackMe Microsoft Sentinel Module
════════════════════════
𐀪 Author: Bethany House
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:35:33 GMT
════════════════════════
⌗ Tags: #microsoft_sentinel #tryhackme_writeup #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: Bethany House
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:35:33 GMT
════════════════════════
⌗ Tags: #microsoft_sentinel #tryhackme_writeup #tryhackme_walkthrough #tryhackme
Medium
TryHackMe Microsoft Sentinel Module
Hello Everyone, today I will be discussing a walkthrough of TryHackMe’s Microsoft Sentinel module. My goal is to work through this module…
⤷ Title: 2026 Techniques to find Hidden Bugcrowd & HackerOne Programs
════════════════════════
𐀪 Author: Abhirup Konwar
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:42:13 GMT
════════════════════════
⌗ Tags: #osint_tool #osint #ethical_hacking #bug_bounty_hunter #pentesting
════════════════════════
𐀪 Author: Abhirup Konwar
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:42:13 GMT
════════════════════════
⌗ Tags: #osint_tool #osint #ethical_hacking #bug_bounty_hunter #pentesting
Medium
2026 Techniques to find Hidden Bugcrowd & HackerOne Programs
How to find bug bounty programs via OSINT Techniques
⤷ Title: What the WIRED Subscriber Leak Reveals About Modern Systems
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:16:57 GMT
════════════════════════
⌗ Tags: #digital_trust #cybersecurity #wired #data_breach #api_security
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:16:57 GMT
════════════════════════
⌗ Tags: #digital_trust #cybersecurity #wired #data_breach #api_security
Medium
What the WIRED Subscriber Leak Reveals About Modern Systems
WIRED has spent decades explaining how technology shapes power, privacy, and society. That’s why the recent exposure of its subscriber data…
⤷ Title: When prompt engineering goes undercover
════════════════════════
𐀪 Author: R.E.Keerthana
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 02:32:27 GMT
════════════════════════
⌗ Tags: #ai_recruiting #prompt_engineering #sql_injection #information_retrieval
════════════════════════
𐀪 Author: R.E.Keerthana
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 02:32:27 GMT
════════════════════════
⌗ Tags: #ai_recruiting #prompt_engineering #sql_injection #information_retrieval
Medium
When prompt engineering goes undercover
Stumbled upon this Reddit thread: Someone hid an AI prompt in white text, smallest font size, inside their resume and got shortlisted.
⤷ Title: Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy D-Link DSL Routers
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 10:01:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 10:01:00 +0530
════════════════════════
⌗ Tags: No_Tags