⤷ Title: Do Smart People Ever Say They’re Smart? (SmarterTools SmarterMail Pre-Auth RCE CVE-2025-52691)
════════════════════════
𐀪 Author: Piotr Bazydlo (@chudyPB)
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:28:47 GMT
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Piotr Bazydlo (@chudyPB)
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:28:47 GMT
════════════════════════
⌗ Tags: No_Tags
watchTowr Labs
Do Smart People Ever Say They’re Smart? (SmarterTools SmarterMail Pre-Auth RCE CVE-2025-52691)
Welcome to 2026!
While we are all waiting for the scheduled SSLVPN ITW exploitation programming that occurs every January, we’re back from Christmas and idle hands, idle minds, yada yada.
In December, we were alerted to a vulnerability in SmarterTools’…
While we are all waiting for the scheduled SSLVPN ITW exploitation programming that occurs every January, we’re back from Christmas and idle hands, idle minds, yada yada.
In December, we were alerted to a vulnerability in SmarterTools’…
⤷ Title: One Forgotten Subdomain, Thousands of User Records — A Recon Story
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:02:06 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #bug_bounty_tips #hacking #cybersecurity
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:02:06 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #bug_bounty_tips #hacking #cybersecurity
⤷ Title: You Won’t Believe These 6 Labs That Hack Your Cloud in Minutes!
════════════════════════
𐀪 Author: cybrNK
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:15:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #vulnerability #cyber #cloud #hacking
════════════════════════
𐀪 Author: cybrNK
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:15:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #vulnerability #cyber #cloud #hacking
Medium
You Won’t Believe These 6 Labs That Hack Your Cloud in Minutes!
Cloud security teams often learn best by breaking things on purpose. These vulnerable-by-design labs let you deploy insecure environments…
⤷ Title: DOM XSS in jQuery anchor href attribute sink using location.search source (Portswigger lab 5)
════════════════════════
𐀪 Author: Sanjivani Dobhal
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:01:16 GMT
════════════════════════
⌗ Tags: #hacking #portswigger #xss_vulnerability #xss_attack #web_security
════════════════════════
𐀪 Author: Sanjivani Dobhal
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:01:16 GMT
════════════════════════
⌗ Tags: #hacking #portswigger #xss_vulnerability #xss_attack #web_security
Medium
DOM XSS in jQuery anchor href attribute sink using location.search source (Portswigger lab 5)
When I first opened this lab, I made the same mistake most beginners make:
I tried to inject <script>alert(1)</script> and waited for…
I tried to inject <script>alert(1)</script> and waited for…
⤷ Title: The Air Is Hostile by Default: A Realistic Guide to Wi Fi Hacking and Wireless Survival
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:57:11 GMT
════════════════════════
⌗ Tags: #coding #hacking_tools #cybersecurity #ethical_hacking #hacking
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:57:11 GMT
════════════════════════
⌗ Tags: #coding #hacking_tools #cybersecurity #ethical_hacking #hacking
⤷ Title: Interview saved by Claude Code — I Almost Got Hacked by a “Job Offer” on LinkedIn
════════════════════════
𐀪 Author: Andreas Abros
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:45:10 GMT
════════════════════════
⌗ Tags: #anthropic_claude #scam #interview #hacking #claude
════════════════════════
𐀪 Author: Andreas Abros
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:45:10 GMT
════════════════════════
⌗ Tags: #anthropic_claude #scam #interview #hacking #claude
Medium
6. Interview saved by Claude Code — I Almost Got Hacked by a “Job Offer” on LinkedIn
How Scammers Are Targeting Developers with Malware Hidden in the Blockchain
⤷ Title: CopyPasta IDOR — BugForge Daily Challenge
════════════════════════
𐀪 Author: 0ber1n
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:12:42 GMT
════════════════════════
⌗ Tags: #hacking #idor_vulnerability #web_application_security #ctf_walkthrough #bugforge
════════════════════════
𐀪 Author: 0ber1n
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:12:42 GMT
════════════════════════
⌗ Tags: #hacking #idor_vulnerability #web_application_security #ctf_walkthrough #bugforge
Medium
CopyPasta IDOR — BugForge Daily Challenge
What’s up everyone and welcome to the first ever walk-through! Is this going to be the best walk-through you’ve ever read? Probably not…
⤷ Title: THM - Boogeyman 1
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:02:59 GMT
════════════════════════
⌗ Tags: #tech #hacking #security #technology #cybersecurity
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:02:59 GMT
════════════════════════
⌗ Tags: #tech #hacking #security #technology #cybersecurity
Medium
THM - Boogeyman 1
A writeup for “Boogeyman 1” on TryHackMe.
⤷ Title: # TryHackMe: RootMe Write-up
**Machine Name:** RootMe
**Difficulty:** Easy
**Platform:**…
════════════════════════
𐀪 Author: Rishith soni
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:02:39 GMT
════════════════════════
⌗ Tags: #technology #ethical_hacking #cybersecurity #tryhackme #hacking
**Machine Name:** RootMe
**Difficulty:** Easy
**Platform:**…
════════════════════════
𐀪 Author: Rishith soni
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:02:39 GMT
════════════════════════
⌗ Tags: #technology #ethical_hacking #cybersecurity #tryhackme #hacking
Medium
# TryHackMe: RootMe Write-up 🚩 **Machine Name:** RootMe **Difficulty:** Easy **Platform:**…
⚠️Disclaimer: This walkthrough is for educational purposes only. The IP address used in this documentation (10.49.178.211) was specific to…
⤷ Title: Archa CTF [2026] — Ghost Stallion
════════════════════════
𐀪 Author: 3Bytes
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 17:59:25 GMT
════════════════════════
⌗ Tags: #hacking #ctf_writeup #reverse_engineering #ctf
════════════════════════
𐀪 Author: 3Bytes
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 17:59:25 GMT
════════════════════════
⌗ Tags: #hacking #ctf_writeup #reverse_engineering #ctf
Medium
Archa CTF [2026] — Ghost Stallion
1. ทำการ Decompile [ghoststallion] ใน Ida และเมื่อทำการ Graphs และทำการดู Function Calls
⤷ Title: Offsec Funbox Rookie Writeup
════════════════════════
𐀪 Author: sabR
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:07:43 GMT
════════════════════════
⌗ Tags: #offensive_security #blue_team #penetration_testing #ctf #cybersecurity
════════════════════════
𐀪 Author: sabR
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:07:43 GMT
════════════════════════
⌗ Tags: #offensive_security #blue_team #penetration_testing #ctf #cybersecurity
Medium
Offsec Funbox Rookie Writeup
Step 1 (recon)
⤷ Title: TryHackMe-Silver Platter(CTF) WriteUp
════════════════════════
𐀪 Author: Aydan
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:17:15 GMT
════════════════════════
⌗ Tags: #red_team #ctf_writeup #tryhackme
════════════════════════
𐀪 Author: Aydan
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:17:15 GMT
════════════════════════
⌗ Tags: #red_team #ctf_writeup #tryhackme
Medium
TryHackMe-Silver Platter(CTF) WriteUp
Merhabalar, Bugün TryHackMe platformundaki Silver Platter (CTF) çözüm adımlarını ele alacağım.
⤷ Title: HackTheBox — Editor
════════════════════════
𐀪 Author: XAL6
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:26:15 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup
════════════════════════
𐀪 Author: XAL6
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 18:26:15 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup
⤷ Title: Astaroth Banking Trojan Targets Brazilians via WhatsApp Messages
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 21:04:11 +0000
════════════════════════
⌗ Tags: #Malware #Security #Acronis #Astaroth #Banking #Boto Cor_de_Rosa #Brazil #Cybersecurity #Fraud #Scam #TROJAN #WhatsApp
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 21:04:11 +0000
════════════════════════
⌗ Tags: #Malware #Security #Acronis #Astaroth #Banking #Boto Cor_de_Rosa #Brazil #Cybersecurity #Fraud #Scam #TROJAN #WhatsApp
Hackread
Astaroth Banking Trojan Targets Brazilians via WhatsApp Messages
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: n8n Users Urged to Patch CVSS 10.0 Full System Takeover Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 20:02:35 +0000
════════════════════════
⌗ Tags: #Security #Application Security #Cybersecurity #database #n8n #Upwind #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 20:02:35 +0000
════════════════════════
⌗ Tags: #Security #Application Security #Cybersecurity #database #n8n #Upwind #Vulnerability
Hackread
n8n Users Urged to Patch CVSS 10.0 Full System Takeover Vulnerability
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Password Policy Bypass: Missing Server-Side Validation
════════════════════════
𐀪 Author: Sushil Ram
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 20:51:08 GMT
════════════════════════
⌗ Tags: #web_security #owasp #password_security #bug_bounty #pentesting
════════════════════════
𐀪 Author: Sushil Ram
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 20:51:08 GMT
════════════════════════
⌗ Tags: #web_security #owasp #password_security #bug_bounty #pentesting
⤷ Title: Anatomy of Failure: How One Click Destroys Years of Anonymity
════════════════════════
𐀪 Author: Jayson Morale
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 20:03:50 GMT
════════════════════════
⌗ Tags: #privacy #anonymous #osint #infosec #cybersecurity
════════════════════════
𐀪 Author: Jayson Morale
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 20:03:50 GMT
════════════════════════
⌗ Tags: #privacy #anonymous #osint #infosec #cybersecurity
Medium
Anatomy of Failure: How One Click Destroys Years of Anonymity
They were careful. Used VPNs, Tor, encrypted messengers. Remained invisible for years. And it all collapsed because of one forgotten…
⤷ Title: MFA Is Not Enough: How MFA Phishing Works in Real Life
════════════════════════
𐀪 Author: Ozkan Sonmez
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:56:30 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #infosec #it_security #cybersecurity #phishing
════════════════════════
𐀪 Author: Ozkan Sonmez
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 19:56:30 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #infosec #it_security #cybersecurity #phishing
Medium
MFA Is Not Enough: How MFA Phishing Works in Real Life
Multi-factor authentication (MFA) is widely used to protect systems that rely on usernames and passwords. It adds an extra layer of…
⤷ Title: n8n: CVE-2025–68613 | TryHackMe | Walkthrough
════════════════════════
𐀪 Author: Sornphut
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 21:02:14 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cve_2025_68613 #tryhackme_writeup #tryhackme
════════════════════════
𐀪 Author: Sornphut
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 21:02:14 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cve_2025_68613 #tryhackme_writeup #tryhackme
Medium
n8n: CVE-2025–68613 | TryHackMe | Walkthrough
Regarding CVE-2025–68613, here is a technical breakdown of the vulnerability, its impact, and how the exploitation works in a real-world…
⤷ Title: When a USB Keyboard Becomes a Root Shell: A Walkthrough of the Exploit
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 23:03:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #badusb #hacking #hardware_hacking #exploit
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 23:03:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #badusb #hacking #hardware_hacking #exploit
Medium
When a USB Keyboard Becomes a Root Shell: A Walkthrough of the Exploit
You notice it because the LED flickers wrong.
⤷ Title: Evasive Remote Memory Write
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 22:07:18 GMT
════════════════════════
⌗ Tags: #malware #pentesting #red_team #cybersecurity #hacking
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 08 Jan 2026 22:07:18 GMT
════════════════════════
⌗ Tags: #malware #pentesting #red_team #cybersecurity #hacking
Medium
Evasive Remote Memory Write
Welcome to this new Medium post, in this article, I’ve developed a custom technique for remotely writing arbitrary data (such as a payload…