⤷ Title: When Encryption Replaced Authorization — and the IDOR Didn’t Go Away
════════════════════════
𐀪 Author: Xp10it
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:46:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #web_security #bug_bounty #software_engineering
════════════════════════
𐀪 Author: Xp10it
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:46:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #web_security #bug_bounty #software_engineering
Medium
When Encryption Replaced Authorization — and the IDOR Didn’t Go Away
A real-world example of why cryptography cannot substitute object-level authorization.
⤷ Title: The Hidden Danger in XML: A Deep Dive into XXE Injection for Modern Pentesters
════════════════════════
𐀪 Author: Fuzzyy Duck
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:32:54 GMT
════════════════════════
⌗ Tags: #security #bug_bounty #web_development #bug_bounty_writeup #bug_bounty_tips
════════════════════════
𐀪 Author: Fuzzyy Duck
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:32:54 GMT
════════════════════════
⌗ Tags: #security #bug_bounty #web_development #bug_bounty_writeup #bug_bounty_tips
Medium
The Hidden Danger in XML: A Deep Dive into XXE Injection for Modern Pentesters
If you have spent any time testing APIs, legacy enterprise systems, or authentication workflows, you have probably seen XML quietly sitting…
⤷ Title: How to Analyze a Suspicious URL Without Clicking It
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:06:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #phishing #hacking #bug_bounty
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:06:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #phishing #hacking #bug_bounty
Medium
How to Analyze a Suspicious URL Without Clicking It
Because curiosity is good. Clicking random links is not. 😅
⤷ Title: From Theory to Blue Team Reality: What Completing TryHackMe’s SOC Level 1 Path Taught Me
════════════════════════
𐀪 Author: sree
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:18:06 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #application_security
════════════════════════
𐀪 Author: sree
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:18:06 GMT
════════════════════════
⌗ Tags: #cybersecurity #security #application_security
Medium
From Theory to Blue Team Reality: What Completing TryHackMe’s SOC Level 1 Path Taught Me
After building a solid foundation in cybersecurity and web application security, I realized the next step was to see security from a…
⤷ Title: If I Were Attacking Your Company in 2026, I Wouldn’t Start With Code
════════════════════════
𐀪 Author: Faizan Ahmad Wani
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:10:59 GMT
════════════════════════
⌗ Tags: #socialengineeringattack #hacking #cyber_security_awareness #redteam_tool #cybersecurity
════════════════════════
𐀪 Author: Faizan Ahmad Wani
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:10:59 GMT
════════════════════════
⌗ Tags: #socialengineeringattack #hacking #cyber_security_awareness #redteam_tool #cybersecurity
Medium
If I Were Attacking Your Company in 2026, I Wouldn’t Start With Code
Everyone wants to talk about AI exploits, zero-days, and automated attack chains. That’s not where I’d start.
⤷ Title: From SDR to Exploit
════════════════════════
𐀪 Author: Michael Preston
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:44:21 GMT
════════════════════════
⌗ Tags: #hacking #sdr #penetration_testing #coding #pentesting
════════════════════════
𐀪 Author: Michael Preston
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:44:21 GMT
════════════════════════
⌗ Tags: #hacking #sdr #penetration_testing #coding #pentesting
Medium
From SDR to Exploit
How I Used Cheap Hardware to Start Pentesting Wireless Devices
⤷ Title: Nully Cybersecurity CTF — Flag 1: Mail Server Root
════════════════════════
𐀪 Author: IO
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:47:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_writeup #ethical_hacking #vulnhub
════════════════════════
𐀪 Author: IO
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:47:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_writeup #ethical_hacking #vulnhub
Medium
Nully Cybersecurity CTF — Flag 1: Mail Server Root
⚠️ Disclaimer: This lab was performed in a controlled environment for educational purposes only. This is a publicly available CTF from…
⤷ Title: My approach for passing the CPSA Exam
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:32:35 GMT
════════════════════════
⌗ Tags: #ethical_hacking #crest #cpsa_exam #certification #offensive_security
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 03:32:35 GMT
════════════════════════
⌗ Tags: #ethical_hacking #crest #cpsa_exam #certification #offensive_security
Medium
My approach for passing the CPSA Exam
Hi everyone, in this article, I’ll be discussing the approach I took to passing the CPSA exam.
⤷ Title: Docker Fixes a Critical AI Flaw That Turned Image Metadata into Executable Code
════════════════════════
𐀪 Author: Er Raj Aryan
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:43:46 GMT
════════════════════════
⌗ Tags: #data_science #kubernetes #docker #ethical_hacking #ai
════════════════════════
𐀪 Author: Er Raj Aryan
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:43:46 GMT
════════════════════════
⌗ Tags: #data_science #kubernetes #docker #ethical_hacking #ai
Medium
Docker Fixes a Critical AI Flaw That Turned Image Metadata into Executable Code
Modern developer tools are quietly becoming autonomous actors. And as Docker just learned the hard way, autonomy without trust boundaries…
⤷ Title: Sliver C2 Framework Lab — Setup and Basic Operations
════════════════════════
𐀪 Author: IO
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:15:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #framework #red_team #command_and_control #ethical_hacking
════════════════════════
𐀪 Author: IO
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:15:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #framework #red_team #command_and_control #ethical_hacking
Medium
Sliver C2 Framework Lab — Setup and Basic Operations
⚠️ Disclaimer: This lab was performed in a controlled environment for educational purposes only. Do not use these techniques on systems…
⤷ Title: One Identity Appoints Gihan Munasinghe as Chief Technology Officer
════════════════════════
𐀪 Author: CyberNewswire
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:32:44 +0000
════════════════════════
⌗ Tags: #Press Release
════════════════════════
𐀪 Author: CyberNewswire
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:32:44 +0000
════════════════════════
⌗ Tags: #Press Release
⤷ Title: One Identity Appoints Gihan Munasinghe as Chief Technology Officer
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:33:06 +0000
════════════════════════
⌗ Tags: #Press Release
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:33:06 +0000
════════════════════════
⌗ Tags: #Press Release
Daily CyberSecurity
One Identity Appoints Gihan Munasinghe as Chief Technology Officer
Alisa Viejo, United States, 4th February 2026, CyberNewsWire
⤷ Title: A Simple Chain That Leads to “Android App” Account Takeover via Intent Hijacking
════════════════════════
𐀪 Author: November Rain
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:31:02 GMT
════════════════════════
⌗ Tags: #android_security #red_team #bug_bounty #android_pentesting #pentesting
════════════════════════
𐀪 Author: November Rain
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:31:02 GMT
════════════════════════
⌗ Tags: #android_security #red_team #bug_bounty #android_pentesting #pentesting
Medium
A Simple Chain That Leads to “Android App” Account Takeover via Intent Hijacking
In the mid-Q3 2025, I found a single report that turned into one of my largest bounties and the case itself was unusually tricky (but…
⤷ Title: How a Password Reset Email Became a Phishing Link
════════════════════════
𐀪 Author: Harshavardhanreddy
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:27:48 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bug_bounty #web_security
════════════════════════
𐀪 Author: Harshavardhanreddy
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:27:48 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #bug_bounty #web_security
Medium
How a Password Reset Email Became a Phishing Link
A bug bounty story about HTML injection, Pre-account takeover, and the hidden risks of trusting account recovery flows
⤷ Title: How Teams Actually Stop Developers from Leaking Secrets (Without Trusting Them)
════════════════════════
𐀪 Author: Muneeb Islam
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:36:43 GMT
════════════════════════
⌗ Tags: #startup_engineering #application_security #software_engineering #developer_productivity #devops_practice
════════════════════════
𐀪 Author: Muneeb Islam
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:36:43 GMT
════════════════════════
⌗ Tags: #startup_engineering #application_security #software_engineering #developer_productivity #devops_practice
Medium
How Teams Actually Stop Developers from Leaking Secrets (Without Trusting Them)
Every engineering team eventually hits the same wall.
⤷ Title: License Bypass via Binary Patching
════════════════════════
𐀪 Author: Abhirup Konwar
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:20:14 GMT
════════════════════════
⌗ Tags: #pentesting #binary_patching #reverse_engineering #ethical_hacking #hacking
════════════════════════
𐀪 Author: Abhirup Konwar
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:20:14 GMT
════════════════════════
⌗ Tags: #pentesting #binary_patching #reverse_engineering #ethical_hacking #hacking
Medium
License Bypass via Binary Patching
Fundamentals of Desktop Application Strings Analysis
⤷ Title: SQL Injection: Anatomy of a Breach (And How I Prevent It)
════════════════════════
𐀪 Author: Adryan Prawira
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:19:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #database #hacking #sql #sql_injection
════════════════════════
𐀪 Author: Adryan Prawira
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:19:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #database #hacking #sql #sql_injection
Medium
SQL Injection: Anatomy of a Breach (And How I Prevent It)
A step-by-step guide to exploiting a live practice site — and the engineering principles to stop it.
⤷ Title: One-Prompt AI-Powered Black-Box Kubernetes Penetration Test
════════════════════════
𐀪 Author: Andrey Pautov
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:49:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #hexstrike #ai #kubernetes_security #penetration_testing
════════════════════════
𐀪 Author: Andrey Pautov
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:49:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #hexstrike #ai #kubernetes_security #penetration_testing
Medium
One-Prompt AI-Powered Black-Box Kubernetes Penetration Test
How Cursor + HexStrike MCP Automatically Discovers and Exploits Vulnerabilities. From single entry point to full cluster compromise
⤷ Title: Learning Red Team: Command Injection on DVWA
════════════════════════
𐀪 Author: Narathama Firmansyah Putra
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:18:23 GMT
════════════════════════
⌗ Tags: #dvwa_command_injection #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Narathama Firmansyah Putra
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 05:18:23 GMT
════════════════════════
⌗ Tags: #dvwa_command_injection #cybersecurity #penetration_testing
Medium
Learning Red Team: Command Injection on DVWA
Introduction
⤷ Title: Zero to eJPT v2 certified in 14 Days. (2026 Edition)
════════════════════════
𐀪 Author: Luke Maharaj
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:01:06 GMT
════════════════════════
⌗ Tags: #ejpt #cybersecurity #offensive_security #penetration_testing #certification
════════════════════════
𐀪 Author: Luke Maharaj
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 04:01:06 GMT
════════════════════════
⌗ Tags: #ejpt #cybersecurity #offensive_security #penetration_testing #certification
Medium
Zero to eJPT v2 certified in 14 Days. (2026 Edition)
In Trinidad, where I’m from, we have a colloquial saying “What don’t meet yuh (you), Don’t miss yuh (you).” Simply put: just because you…
⤷ Title: Eclipse Foundation Mandates Pre-Publish Security Checks for Open VSX Extensions
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 11:56:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 11:56:00 +0530
════════════════════════
⌗ Tags: No_Tags