⤷ Title: Knife: The Invisible Wound in the Supply Chain
════════════════════════
𐀪 Author: Nicholas Mullenski
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 23:47:33 GMT
════════════════════════
⌗ Tags: #red_team #htb_writeup #cybersecurity #penetration_testing #ethical_hacking
════════════════════════
𐀪 Author: Nicholas Mullenski
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 23:47:33 GMT
════════════════════════
⌗ Tags: #red_team #htb_writeup #cybersecurity #penetration_testing #ethical_hacking
Medium
🔪 Knife: The Supply Chain Deception
Uncovering the infamous PHP 8.1.0-dev backdoor and executing the User-Agent RCE! 🔓🚀
⤷ Title: Which Bugs to Hunt for in 2026
════════════════════════
𐀪 Author: Appsec.pt
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 01:40:58 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #ai #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Appsec.pt
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 01:40:58 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #ai #bug_bounty #cybersecurity
Medium
Which Bugs to Hunt for in 2026
Bug Bounty is a super competitive field and if you want to stay ahead of other hunters, you need to seriously know what to look for…
⤷ Title: Bug Bounty Hunters: Hunt this bug in 2026
════════════════════════
𐀪 Author: Jeosantos
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 00:34:47 GMT
════════════════════════
⌗ Tags: #bug_bounty #programming #cybersecurity #bug_bounty_tips #bug_bounty_writeup
════════════════════════
𐀪 Author: Jeosantos
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 00:34:47 GMT
════════════════════════
⌗ Tags: #bug_bounty #programming #cybersecurity #bug_bounty_tips #bug_bounty_writeup
Medium
Bug Bounty Hunters: Hunt this bug in 2026
Some security flaws are so simple that almost anyone can grasp them with minimal explanation. The problem is that these common weaknesses…
⤷ Title: Commix Guide: Automating OS Command Injection in Bug Bounty
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 00:02:48 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #bug_bounty #hacking #technology
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 00:02:48 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #bug_bounty #hacking #technology
Medium
Commix Guide: Automating OS Command Injection in Bug Bounty
Master Commix to ethically detect and exploit OS Command Injection vulnerabilities in Bug Bounty programs.
⤷ Title: Common Security Bugs in Go — Part 2: Filesystem & Input Handling
════════════════════════
𐀪 Author: Dhruv Gundecha
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 00:09:56 GMT
════════════════════════
⌗ Tags: #secure_coding #application_security #cybersecurity
════════════════════════
𐀪 Author: Dhruv Gundecha
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 00:09:56 GMT
════════════════════════
⌗ Tags: #secure_coding #application_security #cybersecurity
Medium
Common Security Bugs in Go — Part 2: Filesystem & Input Handling
This post is part of a series based on PentesterLab snippet review exercises. One article would have been too lengthy, so the series is…
⤷ Title: How I Started a Bug-Bounty Career in 2026 — A Practical Roadmap
════════════════════════
𐀪 Author: Hackers Things
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:48:58 GMT
════════════════════════
⌗ Tags: #pentesting #bug_bounty #careers #cybersecurity #infosec
════════════════════════
𐀪 Author: Hackers Things
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:48:58 GMT
════════════════════════
⌗ Tags: #pentesting #bug_bounty #careers #cybersecurity #infosec
Medium
How I Started a Bug-Bounty Career in 2026 — A Practical Roadmap
Step-by-step approach: skills, platforms, report templates, and a 30/60/90 plan that actually gets you paying gigs.
⤷ Title: How Kerberos Authentication Works — End to End
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 03:23:29 GMT
════════════════════════
⌗ Tags: #kerberos #hacking #active_directory #how_to #cybersecurity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 03:23:29 GMT
════════════════════════
⌗ Tags: #kerberos #hacking #active_directory #how_to #cybersecurity
Medium
How Kerberos Authentication Works — End to End
Kerberos is one of those security technologies that almost everyone uses, but very few people truly understand.
⤷ Title: Unlocking the Power of CUpp: Advanced Password Profiling for Red Team Operations
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:50:54 GMT
════════════════════════
⌗ Tags: #password_security #cybersecurity #hacking #security #information_security
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:50:54 GMT
════════════════════════
⌗ Tags: #password_security #cybersecurity #hacking #security #information_security
Medium
Unlocking the Power of CUpp: Advanced Password Profiling for Red Team Operations 🔓
Most people use CUpp as a simple wordlist generator. But in real penetration tests, CUpp becomes a precision weapon when combined with…
⤷ Title: Getting Started with CUpp: The Fast Lane to Smart Password Wordlists
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:49:58 GMT
════════════════════════
⌗ Tags: #information_security #password_security #security #cybersecurity #hacking
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:49:58 GMT
════════════════════════
⌗ Tags: #information_security #password_security #security #cybersecurity #hacking
Medium
Getting Started with CUpp: The Fast Lane to Smart Password Wordlists 🔍
Passwords tell stories.
⤷ Title: Assessing Wi-Fi Security with Rogue AP Simulations
════════════════════════
𐀪 Author: Hackers Things
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:49:28 GMT
════════════════════════
⌗ Tags: #wifi #pentesting #ethical_hacking #infosec #red_team
════════════════════════
𐀪 Author: Hackers Things
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 02:49:28 GMT
════════════════════════
⌗ Tags: #wifi #pentesting #ethical_hacking #infosec #red_team
Medium
Assessing Wi-Fi Security with Rogue AP Simulations
Practical lessons from controlled rogue access point testing and how defenders should respond
⤷ Title: SQL injection UNION attack …… retrieving multiple values in a single column
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 03:17:34 GMT
════════════════════════
⌗ Tags: #sql #sql_injection #hackthebox #hackthebox_walkthrough #hackthebox_writeup
════════════════════════
𐀪 Author: SilentExploit
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 03:17:34 GMT
════════════════════════
⌗ Tags: #sql #sql_injection #hackthebox #hackthebox_walkthrough #hackthebox_writeup
Medium
SQL injection UNION attack …… retrieving multiple values in a single column
Lab Link: Portswigger
⤷ Title: File Path Traversal, Validation of File Extension with Null Byte Bypass
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:52:55 GMT
════════════════════════
⌗ Tags: #directory_traversal #file_path_traversal #bug_bounty #bypass_extension_file #null_byte_bypass
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:52:55 GMT
════════════════════════
⌗ Tags: #directory_traversal #file_path_traversal #bug_bounty #bypass_extension_file #null_byte_bypass
Medium
File Path Traversal, Validation of File Extension with Null Byte Bypass
How weak filename checks lead to arbitrary file reads in web applications.
⤷ Title: Multitasking Is Quietly Killing Your Bug Bounty Results
════════════════════════
𐀪 Author: Gl1tch
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:51:18 GMT
════════════════════════
⌗ Tags: #mental_health #productivity #bug_bounty #bug_bounty_writeup #bug_bounty_tips
════════════════════════
𐀪 Author: Gl1tch
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:51:18 GMT
════════════════════════
⌗ Tags: #mental_health #productivity #bug_bounty #bug_bounty_writeup #bug_bounty_tips
Medium
Multitasking Is Quietly Killing Your Bug Bounty Results
“The man who chases two rabbits catches neither.”
⤷ Title: APICrash writeup — YesWeHack dojo
════════════════════════
𐀪 Author: B13ss3d
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:06:42 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #ctf #graphql #ctf_writeup
════════════════════════
𐀪 Author: B13ss3d
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:06:42 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #ctf #graphql #ctf_writeup
Medium
APICrash writeup — YesWeHack dojo
This is the Writeup for December’s YesWeHack challenge. Challenge description says “A new API has been developed in Python. The developers…
⤷ Title: APICrash writeup — YesWeHack dojo
════════════════════════
𐀪 Author: B13ss3d
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:06:28 GMT
════════════════════════
⌗ Tags: #ctf #graphql #pentesting #ctf_writeup #hacking
════════════════════════
𐀪 Author: B13ss3d
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:06:28 GMT
════════════════════════
⌗ Tags: #ctf #graphql #pentesting #ctf_writeup #hacking
Medium
APICrash writeup — YesWeHack dojo (Español)
Este es el Writeup para el reto de Diciembre de YesWeHack.
⤷ Title: Hack The Gioi Hai Tac
════════════════════════
𐀪 Author: Apkpuredev
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 04:26:35 GMT
════════════════════════
⌗ Tags: #hacking #apkpure #thế_giới_hải_tặc #games #gamemods
════════════════════════
𐀪 Author: Apkpuredev
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 04:26:35 GMT
════════════════════════
⌗ Tags: #hacking #apkpure #thế_giới_hải_tặc #games #gamemods
Medium
Hack The Gioi Hai Tac
Phiên bản Hack Thế Giới Hải Tặc mang đến trải nghiệm chơi game hoàn toàn khác so với bản gốc, đặc biệt phù hợp với những người chơi muốn…
⤷ Title: Business Logic Flaws: The Vulnerability That Thinks Like a Human
════════════════════════
𐀪 Author: Deezacker
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:42:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #owasp #business_logic_flaw #business_logic
════════════════════════
𐀪 Author: Deezacker
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:42:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #owasp #business_logic_flaw #business_logic
Medium
Business Logic Flaws: The Vulnerability That Thinks Like a Human
In cybersecurity, we spend a lot of time protecting systems from malicious inputs, broken authentication, and misconfigured servers. But…
⤷ Title: PJPT Exam Review: What to Expect From TCM Security’s Practical Junior Penetration Tester…
════════════════════════
𐀪 Author: VulnKraft
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:19:31 GMT
════════════════════════
⌗ Tags: #pjpt #penetration_testing #tcm_security #ethical_hacking #active_directory
════════════════════════
𐀪 Author: VulnKraft
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:19:31 GMT
════════════════════════
⌗ Tags: #pjpt #penetration_testing #tcm_security #ethical_hacking #active_directory
Medium
PJPT Exam Review: What to Expect From TCM Security’s Practical Junior Penetration Tester…
When I attempted PJPT, I was still earlier in my security journey and didn’t have the same level of real-world exposure I have now.
⤷ Title: PNPT Exam Review: What the Exam Is Really Like
════════════════════════
𐀪 Author: VulnKraft
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:07:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #tcm_security #active_directory #penetration_testing #pnpt
════════════════════════
𐀪 Author: VulnKraft
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 05:07:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #tcm_security #active_directory #penetration_testing #pnpt
Medium
PNPT Exam Review: What the Exam Is Really Like
You are probably reading this before buying the exam or in the middle of it desperately trying to grasp at any hint or clue. If it’s the…
⤷ Title: Why testing password policies matters in advanced web application penetration testing
════════════════════════
𐀪 Author: Marwan Alsaifi
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 04:42:22 GMT
════════════════════════
⌗ Tags: #penetration_testing #password_security #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Marwan Alsaifi
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 04:42:22 GMT
════════════════════════
⌗ Tags: #penetration_testing #password_security #ethical_hacking #cybersecurity
Medium
Why testing password policies matters in advanced web application penetration testing
Why testing password policies matters in advanced web application penetration testing User authentication is often the first line of defense in modern web applications. Weak password policies can …
⤷ Title: Penetration Testing on AWS Cloud
════════════════════════
𐀪 Author: Saria Mubeen
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 04:02:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #aws #penetration_testing #cloud_security #devsecops
════════════════════════
𐀪 Author: Saria Mubeen
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 04:02:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #aws #penetration_testing #cloud_security #devsecops
Medium
Penetration Testing on AWS Cloud
What you can test, what is prohibited, and how AWS handles controlled DDoS simulations