⤷ Title: SQL Injection (SQLI)
════════════════════════
𐀪 Author: M4rc0sX
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 19:51:09 GMT
════════════════════════
⌗ Tags: #sql_injection_attack #blind_sql_injection #sql_injection
════════════════════════
𐀪 Author: M4rc0sX
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 19:51:09 GMT
════════════════════════
⌗ Tags: #sql_injection_attack #blind_sql_injection #sql_injection
Medium
SQL Injection (SQLI)
Esta vulnerabilidad utiliza las consultas SQL para obtener información de la base de datos y o hacer login sin contraseña.
⤷ Title: PortSwigger SQL Injection Labs — Part 1
════════════════════════
𐀪 Author: Emirkilicer
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 15:49:44 GMT
════════════════════════
⌗ Tags: #sql_injection #web_security #application_security #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Emirkilicer
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 15:49:44 GMT
════════════════════════
⌗ Tags: #sql_injection #web_security #application_security #cybersecurity #penetration_testing
Medium
PortSwigger SQL Injection Labs — Part 1
Introduction
⤷ Title: Technical Bug Bounty Methodology: Deep Recon, Automation and Human Insight
════════════════════════
𐀪 Author: NullSecurityX
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 17:47:00 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #cybersecurity #bug_bounty #bug_bounty_tips #bug_bounty_methodology
════════════════════════
𐀪 Author: NullSecurityX
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 17:47:00 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #cybersecurity #bug_bounty #bug_bounty_tips #bug_bounty_methodology
Medium
Technical Bug Bounty Methodology: Deep Recon, Automation and Human Insight
Introduction
⤷ Title: Breaking the Gate: How We Bypassed Email Verification on a Major Platform
════════════════════════
𐀪 Author: LETCHU PKT
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 13:45:39 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #bug_bounty #cybersecurity #bug_bounty_tips
════════════════════════
𐀪 Author: LETCHU PKT
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 13:45:39 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #bug_bounty #cybersecurity #bug_bounty_tips
Medium
Breaking the Gate: How We Bypassed Email Verification on a Major Platform
A Story of JWT Token Rotation and Rate Limit Evasion
⤷ Title: How I Took Over Accounts Using a Weak Password Reset Token
════════════════════════
𐀪 Author: Aswin Thambi Panikulangara
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 13:19:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #bug_bounty #bug_bounty_writeup #bug_bounty_tips
════════════════════════
𐀪 Author: Aswin Thambi Panikulangara
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 13:19:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #bug_bounty #bug_bounty_writeup #bug_bounty_tips
Medium
How I Took Over Accounts Using a Weak Password Reset Token
A Case Study in Insecure Token Design
⤷ Title: How a Temporary Invite Led to a Permanent Billing Takeover
════════════════════════
𐀪 Author: Muhammed Mubarak
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 12:45:46 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup
════════════════════════
𐀪 Author: Muhammed Mubarak
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 12:45:46 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup
Medium
How a Temporary Invite Led to a Permanent Billing Takeover
بسم الله الرحمن الرحيم
اللهم صلِّ على سيدنا محمد ﷺ وعلى آله وصحبه وسلم تسليمًا كثيرًا
اللهم صلِّ على سيدنا محمد ﷺ وعلى آله وصحبه وسلم تسليمًا كثيرًا
⤷ Title: New rate limit bypass , other won’t say
════════════════════════
𐀪 Author: BALAJI
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:21:46 GMT
════════════════════════
⌗ Tags: #idor #bug_bounty_writeup #bug_bounty_tips #bug_bounty #account_takeover
════════════════════════
𐀪 Author: BALAJI
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:21:46 GMT
════════════════════════
⌗ Tags: #idor #bug_bounty_writeup #bug_bounty_tips #bug_bounty #account_takeover
Medium
New rate limit bypass , other won’t say
Description:
⤷ Title: How I Got My First Real Attention in Bug Bounty (And Why This Matters More Than Money)
════════════════════════
𐀪 Author: Nayan Ghimire
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 12:57:10 GMT
════════════════════════
⌗ Tags: #getting_started #bug_bounty #cybersecurity #my_first_earning #bug_bounty_writeup
════════════════════════
𐀪 Author: Nayan Ghimire
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 12:57:10 GMT
════════════════════════
⌗ Tags: #getting_started #bug_bounty #cybersecurity #my_first_earning #bug_bounty_writeup
Medium
How I Got My First Real Attention in Bug Bounty (And Why This Matters More Than Money)
Bug bounty hunting can feel like shouting into the void sometimes. You spend hours, days, even weeks hunting for vulnerabilities, writing…
⤷ Title: 2. OAuth Misbinding Vulnerability
════════════════════════
𐀪 Author: Abhijeet kumawat
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 10:50:49 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty_writeup #authorization #bug_bounty_tips #bug_bounty
════════════════════════
𐀪 Author: Abhijeet kumawat
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 10:50:49 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty_writeup #authorization #bug_bounty_tips #bug_bounty
Medium
2. OAuth Misbinding Vulnerability
The Silent Account Takeover Nobody Notices.
⤷ Title: The “TMI” Endpoint: Why Unauthenticated Health Checks Are a Hacker’s Best Friend (And Why I Got 0…
════════════════════════
𐀪 Author: Zer0Figure
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 04:02:54 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #bug_bounty_writeup #cybersecurity #security
════════════════════════
𐀪 Author: Zer0Figure
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 04:02:54 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #bug_bounty_writeup #cybersecurity #security
Medium
The “TMI” Endpoint: Why Unauthenticated Health Checks Are a Hacker’s Best Friend (And Why I Got 0 Points)
It wasn’t an RCE. It wasn’t an SQLi. It was a simple JSON response that told me exactly which version of Java to attack. Here is the story…
⤷ Title: TryHackMe (THM) Active Reconnaissance Walkthrough + Answers
════════════════════════
𐀪 Author: Mann Diwani
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 19:34:17 GMT
════════════════════════
⌗ Tags: #active_reconnaissance #tryhackme_walkthrough #recon #tryhackme #active_recon
════════════════════════
𐀪 Author: Mann Diwani
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 19:34:17 GMT
════════════════════════
⌗ Tags: #active_reconnaissance #tryhackme_walkthrough #recon #tryhackme #active_recon
Medium
TryHackMe (THM) Active Reconnaissance Walkthrough + Answers
🔗Room Link : https://tryhackme.com/room/activerecon
⤷ Title: Why Walking Beats Driving for Wardriving Data
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 26 Jan 2026 03:11:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #wardriving #recon #wifi
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Mon, 26 Jan 2026 03:11:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #wardriving #recon #wifi
Medium
Why Walking Beats Driving for Wardriving Data
My legs hurt before my rig ever warmed up.
⤷ Title: $500 for a UUID Swap: I Almost Gave Up on This IDOR
════════════════════════
𐀪 Author: tinopreter
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 12:54:04 GMT
════════════════════════
⌗ Tags: #broken_access_control #idor #information_disclosure #bugbounty_writeup #hackerone
════════════════════════
𐀪 Author: tinopreter
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 12:54:04 GMT
════════════════════════
⌗ Tags: #broken_access_control #idor #information_disclosure #bugbounty_writeup #hackerone
Medium
$500 for a UUID Swap: I Almost Gave Up on This IDOR
I have to admit; I had initially given up on finding an IDOR but the JavaScript files had different plans. …
⤷ Title: Day-18 of Bug Bounty Journey : XSS Concept
════════════════════════
𐀪 Author: Anshkamra
════════════════════════
ⴵ Time: Wed, 21 Jan 2026 20:26:42 GMT
════════════════════════
⌗ Tags: #concept #bug_bounty #bugbounty_writeup #xss_attack
════════════════════════
𐀪 Author: Anshkamra
════════════════════════
ⴵ Time: Wed, 21 Jan 2026 20:26:42 GMT
════════════════════════
⌗ Tags: #concept #bug_bounty #bugbounty_writeup #xss_attack
Medium
Day-18 of Bug Bounty Journey : XSS Concept
Cross-Site Scripting (XSS) is one of the most common and misunderstood web vulnerabilities.
Many beginners see it as “just an alert box,”…
Many beginners see it as “just an alert box,”…
⤷ Title: From Job Hunting to Bug Hunting: Discovering an SQL Injection Vulnerability
════════════════════════
𐀪 Author: Wonde D
════════════════════════
ⴵ Time: Tue, 20 Jan 2026 13:44:32 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #bug_hunting #sql_injection #bug_bounty #vulnerability
════════════════════════
𐀪 Author: Wonde D
════════════════════════
ⴵ Time: Tue, 20 Jan 2026 13:44:32 GMT
════════════════════════
⌗ Tags: #bugbounty_writeup #bug_hunting #sql_injection #bug_bounty #vulnerability
Medium
From Job Hunting to Bug Hunting: Discovering an SQL Injection Vulnerability
While searching for job opportunities, I came across a vacancy posted on vacancy.example.com for a Web Penetration Tester. Naturally, I…
⤷ Title: The Professional’s Playbook: 25 Rules for the Bug Bounty Grind
════════════════════════
𐀪 Author: Thexssrat
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 17:44:37 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacker #bug_bounty_tips #ethical_hacking #hacking
════════════════════════
𐀪 Author: Thexssrat
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 17:44:37 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacker #bug_bounty_tips #ethical_hacking #hacking
Medium
The Professional’s Playbook: 25 Rules for the Bug Bounty Grind
Why are you failing?
⤷ Title: I Never Touched the Database — Still Got All the Data
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 18:14:39 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #infosec #cybersecurity #hacking #bug_bounty
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 18:14:39 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #infosec #cybersecurity #hacking #bug_bounty
Medium
I Never Touched the Database — Still Got All the Data 🧩📂
Hey there!😁
⤷ Title: IDOR: The Easiest High-Severity Bug Most Hunters Still Miss
════════════════════════
𐀪 Author: Vivek PS
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 08:32:56 GMT
════════════════════════
⌗ Tags: #programming #bug_bounty #bug_bounty_tips #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Vivek PS
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 08:32:56 GMT
════════════════════════
⌗ Tags: #programming #bug_bounty #bug_bounty_tips #ethical_hacking #cybersecurity
Medium
IDOR: The Easiest High-Severity Bug Most Hunters Still Miss
(Bug Bounty Tutorial Series — Part 1)
⤷ Title: Iran-Linked RedKitten Cyber Campaign Targets Human Rights NGOs and Activists
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 17:32:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 17:32:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: US Seizes $400 Million Linked to Helix Dark Web Crypto Mixer
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 12:55:06 +0000
════════════════════════
⌗ Tags: #Cryptocurrency #Cyber Crime #Crypto #Crytpo Mixer #Cybersecurity #Helix #Larry Dean Harmon #Money Laundering #Scam
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 12:55:06 +0000
════════════════════════
⌗ Tags: #Cryptocurrency #Cyber Crime #Crypto #Crytpo Mixer #Cybersecurity #Helix #Larry Dean Harmon #Money Laundering #Scam
Hackread
US Seizes $400 Million Linked to Helix Dark Web Crypto Mixer
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: A Subtle SSRF Through the Referer Header
════════════════════════
𐀪 Author: AKU
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 13:52:11 GMT
════════════════════════
⌗ Tags: #bugcrowd #hacking #bug_bounty #cybersecurity #ssrf
════════════════════════
𐀪 Author: AKU
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 13:52:11 GMT
════════════════════════
⌗ Tags: #bugcrowd #hacking #bug_bounty #cybersecurity #ssrf
Medium
A Subtle SSRF Through the Referer Header
This post shares a real-world SSRF discovery, focusing on methodology and lessons learned, with all sensitive details intentionally…