⤷ Title: New China Linked VoidLink Linux Malware Targets Major Cloud Providers
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:37:24 +0000
════════════════════════
⌗ Tags: #Malware #Security #Alibaba #AWS #Azure #China #cloud #Cyber Attack #Cyber Crime #Cybersecurity #Google Cloud #Tencent #VoidLink
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:37:24 +0000
════════════════════════
⌗ Tags: #Malware #Security #Alibaba #AWS #Azure #China #cloud #Cyber Attack #Cyber Crime #Cybersecurity #Google Cloud #Tencent #VoidLink
Hackread
New China Linked VoidLink Linux Malware Targets Major Cloud Providers
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Structure and reliability in e-commerce platforms
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:02:33 +0000
════════════════════════
⌗ Tags: #eCommerce #Technology #Business #Online Shopping
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:02:33 +0000
════════════════════════
⌗ Tags: #eCommerce #Technology #Business #Online Shopping
Hackread
Structure and reliability in e-commerce platforms
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: A 5-Day Bug Bounty Hunt on a Telecom Target: From Recon to RXSS and Open Redirect
════════════════════════
𐀪 Author: SpiX-7
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:25:14 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty_writeup #bug_bounty #web_penetration_testing
════════════════════════
𐀪 Author: SpiX-7
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:25:14 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty_writeup #bug_bounty #web_penetration_testing
Medium
A 5-Day Bug Bounty Hunt on a Telecom Target: From Recon to RXSS and Open Redirect
This story is not about luck.
It is about patience, process, and thinking like the application.
It is about patience, process, and thinking like the application.
⤷ Title: Host Header Injection: A Practical Methodology for Security Testing
════════════════════════
𐀪 Author: Israel Aráoz Severiche
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:09:55 GMT
════════════════════════
⌗ Tags: #pentesting #bug_bounty #web_security #hacking #ethical_hacking
════════════════════════
𐀪 Author: Israel Aráoz Severiche
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 18:09:55 GMT
════════════════════════
⌗ Tags: #pentesting #bug_bounty #web_security #hacking #ethical_hacking
Medium
Host Header Injection: A Practical Methodology for Security Testing
Host Header Injection is a critical vulnerability that affects web applications relying on the HTTP Host header for various operations…
⤷ Title: Como o Instagram teve dados de usuários expostos em janeiro de 2026: a falha de redefinição de…
════════════════════════
𐀪 Author: Henrique Ribeiro
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 19:36:53 GMT
════════════════════════
⌗ Tags: #api_security #instagram #data_security #infosec #cybersecurity
════════════════════════
𐀪 Author: Henrique Ribeiro
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 19:36:53 GMT
════════════════════════
⌗ Tags: #api_security #instagram #data_security #infosec #cybersecurity
Medium
Como o Instagram teve dados de usuários expostos em janeiro de 2026: a falha de redefinição de senha e a reaparição de um dataset…
Incidente de Exposição de Dados — Fatos Confirmados e Lições de Segurança
⤷ Title: SUID Permission — The Silent Door to Privilege Escalation
════════════════════════
𐀪 Author: PriOFF
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 19:12:40 GMT
════════════════════════
⌗ Tags: #cybersecurity #linux_security #ethical_hacking #privilege_escalation #penetration_testing
════════════════════════
𐀪 Author: PriOFF
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 19:12:40 GMT
════════════════════════
⌗ Tags: #cybersecurity #linux_security #ethical_hacking #privilege_escalation #penetration_testing
Medium
SUID Permission — The Silent Door to Privilege Escalation 🔐
One of my mentors once told me:
⤷ Title: An SSRF Sink You’re Probably Skipping (It Earned Me $700 in Bounties)
════════════════════════
𐀪 Author: Thomas A.
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 20:42:29 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #penetration_testing #bug_bounty_writeup #technology
════════════════════════
𐀪 Author: Thomas A.
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 20:42:29 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #penetration_testing #bug_bounty_writeup #technology
Medium
An SSRF Sink You’re Probably Skipping (It Earned Me $700 in Bounties)
Let me share with you a SSRF sink that many hunters are still missing. Not because it’s hard to find or complicated to exploit. I think it…
⤷ Title: Hacked Despite 2FA: My LinkedIn Hack Lessons
════════════════════════
𐀪 Author: Ebube Nwankwo
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 21:34:48 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #2fa_bypass #tech #linkedin
════════════════════════
𐀪 Author: Ebube Nwankwo
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 21:34:48 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #2fa_bypass #tech #linkedin
Medium
Hacked Despite 2FA: My LinkedIn Hack Lessons
I used to wonder how people's accounts get hacked, even with 2FA turned on.
⤷ Title: TryHackMe : Blue Machine Writeup
════════════════════════
𐀪 Author: Azzam Mohammed (WHHacker)
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 20:38:08 GMT
════════════════════════
⌗ Tags: #windows_security #ethical_hacking #penetration_testing #tryhackme #cyebrsecurity
════════════════════════
𐀪 Author: Azzam Mohammed (WHHacker)
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 20:38:08 GMT
════════════════════════
⌗ Tags: #windows_security #ethical_hacking #penetration_testing #tryhackme #cyebrsecurity
Medium
TryHackMe : Blue Machine Writeup
Introduction
⤷ Title: What College Gave Me That Online Platforms Didn’t
════════════════════════
𐀪 Author: Crystal_cascade14
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 15:40:01 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #ethical_hacking #wowenintech #tech_education
════════════════════════
𐀪 Author: Crystal_cascade14
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 15:40:01 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #ethical_hacking #wowenintech #tech_education
Medium
Why Wireshark Finally Made Sense: TryHackMe, College, and the Right Pace
This article is part of my series Learning Cybersecurity in College: The Honest Version, where I document what it’s like to study…
⤷ Title: Building a Secure, Enterprise-Grade API with AWS: A Deep Dive into API Gateway, Custom Domains, and…
════════════════════════
𐀪 Author: Sasmitha Dasanayaka
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 21:43:41 GMT
════════════════════════
⌗ Tags: #aws_cdk #aws_route53 #lambda_authorizer #api_security #aws_private_api_gateway
════════════════════════
𐀪 Author: Sasmitha Dasanayaka
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 21:43:41 GMT
════════════════════════
⌗ Tags: #aws_cdk #aws_route53 #lambda_authorizer #api_security #aws_private_api_gateway
Medium
Building a Secure, Enterprise-Grade API with AWS: A Deep Dive into API Gateway, Custom Domains, and…
Introduction
⤷ Title: What Will Matter for API Security 2026: The Patterns Behind 2025’s Breaches and the Risks Teams Are…
════════════════════════
𐀪 Author: Akansha Shukla
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 21:28:20 GMT
════════════════════════
⌗ Tags: #owasp_api_security_top_10 #secure_coding #api_development #api_security #secure_api
════════════════════════
𐀪 Author: Akansha Shukla
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 21:28:20 GMT
════════════════════════
⌗ Tags: #owasp_api_security_top_10 #secure_coding #api_development #api_security #secure_api
Medium
What Will Matter for API Security 2026: The Patterns Behind 2025’s Breaches and the Risks Teams Are…
APIs quietly run modern software. From payments and hiring platforms to internal tools and AI workflows, they sit behind nearly every…
⤷ Title: Security Analysis and Hardening of a Python Web Application
════════════════════════
𐀪 Author: William Azaria Simanjuntak
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 23:31:50 GMT
════════════════════════
⌗ Tags: #application_security #web_development #programming #cybersecurity #python
════════════════════════
𐀪 Author: William Azaria Simanjuntak
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 23:31:50 GMT
════════════════════════
⌗ Tags: #application_security #web_development #programming #cybersecurity #python
Medium
Security Analysis and Hardening of a Python Web Application
Assignment 1: Security Analysis and Program Hardening
⤷ Title: 30 Days of Red Team: Day 16 — Windows Privilege Escalation
════════════════════════
𐀪 Author: Maxwell Cross
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 22:32:04 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #infosec #windows #cybersecurity
════════════════════════
𐀪 Author: Maxwell Cross
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 22:32:04 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #infosec #windows #cybersecurity
Medium
30 Days of Red Team: Day 16 — Windows Privilege Escalation
From Limited User to SYSTEM: Proven Windows Privilege Escalation Techniques That Actually Work
⤷ Title: HTB Labs — Tier 1 — “Crocodile” Machine Walkthrough | By: CyberAlp0
════════════════════════
𐀪 Author: Mohamed Maher
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 23:21:09 GMT
════════════════════════
⌗ Tags: #crocodile #web_application_security #hackthebox_writeup #ftp_client #penetration_testing
════════════════════════
𐀪 Author: Mohamed Maher
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 23:21:09 GMT
════════════════════════
⌗ Tags: #crocodile #web_application_security #hackthebox_writeup #ftp_client #penetration_testing
⤷ Title: HPE Aruba Patches High-Severity DoS and Data Leak Flaws in Instant On Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:36:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Point Vulnerability #CVE_2025_37165 #CVE_2025_37166 #Denial of Service #firmware update #HPE Networking #Instant On #network_security #SMB Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:36:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Point Vulnerability #CVE_2025_37165 #CVE_2025_37166 #Denial of Service #firmware update #HPE Networking #Instant On #network_security #SMB Security
Daily CyberSecurity
HPE Aruba Patches High-Severity DoS and Data Leak Flaws in Instant On Devices
Critical HPE Instant On update fixes DoS flaw CVE-2025-37166 that forces hard resets. Firmware 3.3.2.0 also stops config leaks. Check your version now.
⤷ Title: Zoho Patches Critical “9.1” Flaw in ADSelfService Plus
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:31:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Management #active directory #ADSelfService Plus #CVE_2025_11250 #CVSS 9.1 #Identity Security #ManageEngine #Patch Alert #SSO Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:31:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Management #active directory #ADSelfService Plus #CVE_2025_11250 #CVSS 9.1 #Identity Security #ManageEngine #Patch Alert #SSO Security
Daily CyberSecurity
Zoho Patches Critical "9.1" Flaw in ADSelfService Plus
ManageEngine patches critical ADSelfService Plus flaw CVE-2025-11250 (CVSS 9.1). Update to Build 6519 immediately to secure your Active Directory.
⤷ Title: SHADOW#REACTOR Malware Builds Remcos RAT via Text Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:27:15 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Security #Fileless Malware #living_off_the_land #Malware Analysis #MSBuild #powershell #Remcos RAT #Securonix #SHADOW#REACTOR #Text_Based Payload
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:27:15 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Security #Fileless Malware #living_off_the_land #Malware Analysis #MSBuild #powershell #Remcos RAT #Securonix #SHADOW#REACTOR #Text_Based Payload
Daily CyberSecurity
SHADOW#REACTOR Malware Builds Remcos RAT via Text Files
Securonix reveals SHADOW#REACTOR: A stealthy framework using "text-only" fragments to deploy Remcos RAT in memory via MSBuild. Avoids disk detection.
⤷ Title: One API Call to Hijack: Critical Cal.com Flaw (CVE-2026-23478, CVSS 10) Bypasses 2FA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:22:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #Cal.com #CVE_2026_23478 #CVSS 10 #JWT Manipulation #NextAuth #Open Source Security #Patch Alert #Scheduling Software
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:22:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #Cal.com #CVE_2026_23478 #CVSS 10 #JWT Manipulation #NextAuth #Open Source Security #Patch Alert #Scheduling Software
Daily CyberSecurity
One API Call to Hijack: Critical Cal.com Flaw (CVE-2026-23478, CVSS 10) Bypasses 2FA
Critical Cal.com flaw (CVE-2026-23478) allows full account takeover via a single API call. CVSS 10.0. Update self-hosted instances to v6.0.7 immediately.
⤷ Title: “Browser-in-the-Browser” Attack Escalates: Trellix Reports Surge in Sophisticated Facebook Phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:18:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BitB #Browser In The Browser #Credential Harvesting #Cyber Security #Facebook Security #Netlify #phishing #social engineering #Trellix #Vercel
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:18:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BitB #Browser In The Browser #Credential Harvesting #Cyber Security #Facebook Security #Netlify #phishing #social engineering #Trellix #Vercel
Daily CyberSecurity
"Browser-in-the-Browser" Attack Escalates: Trellix Reports Surge in Sophisticated Facebook Phishing
Trellix warns: "Browser-in-the-Browser" phishing creates perfect fake Facebook login pop-ups. Learn how this invisible trap steals credentials.
⤷ Title: High-Severity Flaws in HPE Aruba Networking Expose Mobility Controllers to Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:11:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AOS_10 #AOS_8 #Arbitrary File Deletion #Command Injection #CVE_2025_37168 #CVE_2025_37169 #Denial of Service #HPE Aruba Networking #network_security #Patch Alert
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 00:11:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AOS_10 #AOS_8 #Arbitrary File Deletion #Command Injection #CVE_2025_37168 #CVE_2025_37169 #Denial of Service #HPE Aruba Networking #network_security #Patch Alert
Daily CyberSecurity
High-Severity Flaws in HPE Aruba Networking Expose Mobility Controllers to Attack
HPE Aruba Networking has released a critical security advisory patching a swarm of vulnerabilities across its AOS-8 and AOS-10 operating systems. The flaws, which affect Mobility Conductors, Contr…