⤷ Title: How I Exploited a Secondary Context Bug to Trigger SSRF & Path Traversal in Backend API Calls
════════════════════════
𐀪 Author: Bryan Matthew
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 03:41:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #pentesting #ssrf #path_traversal #red_team
════════════════════════
𐀪 Author: Bryan Matthew
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 03:41:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #pentesting #ssrf #path_traversal #red_team
Medium
How I Exploited a Secondary Context Bug to Trigger SSRF & Path Traversal in Backend API Calls
Modern Website Architecture
⤷ Title: Intermediate Nmap Walkthrough (TryHackMe)
════════════════════════
𐀪 Author: Crystalcascade14
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 02:41:01 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #penetration_testing #nmap #tryhackme_walkthrough
════════════════════════
𐀪 Author: Crystalcascade14
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 02:41:01 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_writeup #penetration_testing #nmap #tryhackme_walkthrough
Medium
Intermediate Nmap Walkthrough (TryHackMe)
TryHackMe room for beginners
⤷ Title: HOW THE WEB WORKS – TryHackMe Module. Room 1: DNS In Detail
════════════════════════
𐀪 Author: Raymond Ebonine
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 02:22:21 GMT
════════════════════════
⌗ Tags: #web #tryhackme #cybersecurity #tryhackme_writeup #tryhackme_walkthrough
════════════════════════
𐀪 Author: Raymond Ebonine
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 02:22:21 GMT
════════════════════════
⌗ Tags: #web #tryhackme #cybersecurity #tryhackme_writeup #tryhackme_walkthrough
Medium
HOW THE WEB WORKS – TryHackMe Module. Room 1: DNS In Detail
Understand how the World Wide Web (www) truly works.
⤷ Title: Hackers Exploit React2Shell to Hijack Web Traffic via Compromised NGINX Servers
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 10:26:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 10:26:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: The “Guest” Trap: Canada Computers Under Fire for Opacity Following Massive Credit Card Breach
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:20:15 +0000
════════════════════════
⌗ Tags: #Data Leak #Canada Computers #credit card leak #cybersecurity Canada #data breach #guest checkout #identity theft #Magecart #Office of the Privacy Commissioner #Tech News 2026 #York Regional Police
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:20:15 +0000
════════════════════════
⌗ Tags: #Data Leak #Canada Computers #credit card leak #cybersecurity Canada #data breach #guest checkout #identity theft #Magecart #Office of the Privacy Commissioner #Tech News 2026 #York Regional Police
Penetration Testing Tools
The "Guest" Trap: Canada Computers Under Fire for Opacity Following Massive Credit Card Breach
A significant data breach targeting the Canadian retail giant Canada Computers & Electronics has ignited a furor among
⤷ Title: The “Slop” Tsunami: GitHub Eyes “Kill Switch” for Pull Requests to Save Buried Maintainers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:18:08 +0000
════════════════════════
⌗ Tags: #Technology #AI Slop #AI transparency #Copilot #curl #Daniel Stenberg #Github #maintainer burnout #open source #Operation Neusploit #pull request crisis #Tech News 2026 #technical debt
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:18:08 +0000
════════════════════════
⌗ Tags: #Technology #AI Slop #AI transparency #Copilot #curl #Daniel Stenberg #Github #maintainer burnout #open source #Operation Neusploit #pull request crisis #Tech News 2026 #technical debt
Penetration Testing Tools
The "Slop" Tsunami: GitHub Eyes "Kill Switch" for Pull Requests to Save Buried Maintainers
GitHub is currently grappling with the unforeseen repercussions of the proliferation of AI-driven development instrumentation. The platform, having
⤷ Title: The “Dumpster Fire” of AI: How OpenClaw Mutated from Viral Assistant to a $30,000 Security Disaster
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:14:14 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #AI security #Claude Opus tokens #Clawdbot #ClawHub #malware #Moltbot #OpenClaw #Peter Steinberger #Prompt Injection #RCE vulnerability #supply chain attack #Tech News 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:14:14 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #AI security #Claude Opus tokens #Clawdbot #ClawHub #malware #Moltbot #OpenClaw #Peter Steinberger #Prompt Injection #RCE vulnerability #supply chain attack #Tech News 2026
Penetration Testing Tools
The "Dumpster Fire" of AI: How OpenClaw Mutated from Viral Assistant to a $30,000 Security Disaster
The OpenClaw project—a personal AI interlocutor with whom users engage via messaging platforms and to whom they frequently
⤷ Title: The API Assassin: How “LOLAPI” Unmasks the Native Commands Turning Windows and Cloud Against You
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:10:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #.NET reflection #API abuse #AWS #Azure #Cloud metadata #COM objects #cyber security news 2026 #GCP #Living_off_the_land #LOLAPI #Magic Claw #Windows API #WMI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:10:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #.NET reflection #API abuse #AWS #Azure #Cloud metadata #COM objects #cyber security news 2026 #GCP #Living_off_the_land #LOLAPI #Magic Claw #Windows API #WMI
Penetration Testing Tools
The API Assassin: How "LOLAPI" Unmasks the Native Commands Turning Windows and Cloud Against You
Magic Claw’s LOLAPI repository catalogs over 50 native Windows and Cloud APIs used by hackers to bypass WDAC and EDR. See the 2026 guide to stealthy API abuse.
⤷ Title: Solana Under Siege: Step Finance Drained of $30M as STEP Token Plummets 80% in Hours
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:08:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CertiK #Cryptocurrency Theft #DeFi Hack #executive device hack #Halborn #SOL #Solana #Step Finance #STEP token #Tech News 2026 #treasury breach
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:08:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CertiK #Cryptocurrency Theft #DeFi Hack #executive device hack #Halborn #SOL #Solana #Step Finance #STEP token #Tech News 2026 #treasury breach
Penetration Testing Tools
Solana Under Siege: Step Finance Drained of $30M as STEP Token Plummets 80% in Hours
A formidable cyber incursion within the Solana ecosystem has profoundly destabilized the decentralized finance landscape. The Step Finance
⤷ Title: Extortion Shifts to the Playground: Fake “Lock-Bit” Group Targets Parents After Antwerp School Refuses Ransom
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:06:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Antwerp cyberattack #Belgium tech news 2026 #Berchem school breach #data privacy #Lock_Bit impostors #mental health data theft #OLV Pulhof #parent extortion #school ransomware #student data leak
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:06:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Antwerp cyberattack #Belgium tech news 2026 #Berchem school breach #data privacy #Lock_Bit impostors #mental health data theft #OLV Pulhof #parent extortion #school ransomware #student data leak
Penetration Testing Tools
Extortion Shifts to the Playground: Fake "Lock-Bit" Group Targets Parents After Antwerp School Refuses Ransom
Cybercriminals who compromised an academic institution in Antwerp have resorted to exerting psychological pressure on parents after the
⤷ Title: Three-Day Turnaround: How APT28 Rapidly Weaponized the Latest Microsoft Office Zero-Day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:04:24 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT28 #CERT_UA #Covenant Grunt #CVE_2026_21509 #Microsoft Office #MiniDoor #Operation Neusploit #PixyNetLoader #RTF exploit #Steganography #Ukraine #Zscaler
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:04:24 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT28 #CERT_UA #Covenant Grunt #CVE_2026_21509 #Microsoft Office #MiniDoor #Operation Neusploit #PixyNetLoader #RTF exploit #Steganography #Ukraine #Zscaler
Penetration Testing Tools
Three-Day Turnaround: How APT28 Rapidly Weaponized the Latest Microsoft Office Zero-Day
The sophisticated threat actor APT28 has commenced the exploitation of a nascent Microsoft Office vulnerability almost immediately following
⤷ Title: The Stealth Oracle: How “Safe” Chrome Extensions Can Reconstruct Your Private URLs Character by Character
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:01:26 +0000
════════════════════════
⌗ Tags: #Data Leak #chrome #cyber security news 2026 #declarativeNetRequest #dynamic rules #Manifest V3 #privacy vulnerability #regexFilter #side_channel attack #URL exfiltration #web security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:01:26 +0000
════════════════════════
⌗ Tags: #Data Leak #chrome #cyber security news 2026 #declarativeNetRequest #dynamic rules #Manifest V3 #privacy vulnerability #regexFilter #side_channel attack #URL exfiltration #web security
Penetration Testing Tools
The Stealth Oracle: How "Safe" Chrome Extensions Can Reconstruct Your Private URLs Character by Character
A sophisticated technique has been unearthed within Chrome that permits the exfiltration of the complete URL from any
⤷ Title: CyberNova — Lazarus Phantom DB CTF Write-Up (SQLi → JWT → XOR Decrypt)
════════════════════════
𐀪 Author: vulnhunter
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:48:33 GMT
════════════════════════
⌗ Tags: #ctf #ctf_writeup #cybersecurity #bug_bounty #infosec
════════════════════════
𐀪 Author: vulnhunter
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:48:33 GMT
════════════════════════
⌗ Tags: #ctf #ctf_writeup #cybersecurity #bug_bounty #infosec
Medium
🔐 CyberNova — Lazarus Phantom DB CTF Write-Up (SQLi → JWT → XOR Decrypt)
This challenge combines SQL Injection, JWT token forgery, and simple XOR encryption reversal. Below is a full step-by-step walkthrough.
⤷ Title: How SS7 Attacks Break Telecom Trust and Compromise Security
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:28:34 GMT
════════════════════════
⌗ Tags: #ss7 #television #bug_bounty #cybersecurity #hacking
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:28:34 GMT
════════════════════════
⌗ Tags: #ss7 #television #bug_bounty #cybersecurity #hacking
Medium
How SS7 Attacks Break Telecom Trust and Compromise Security
In today’s world, it’s hard to envision life without telecommunication services. Individuals engaging in activities like online payments…
⤷ Title: Apache + PHP deployment pattern turns into instant RCE
════════════════════════
𐀪 Author: 24BkDoor
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:28:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #hacking #bug_bounty #web_development
════════════════════════
𐀪 Author: 24BkDoor
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:28:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #hacking #bug_bounty #web_development
Medium
Apache + PHP deployment pattern turns into instant RCE
Apache + PHP deployment pattern turns into instant RCE Scanners always miss these bugs Observed deployment: •
openSUSE Leap 15.5 •
Apache 2.4.x •
PHP 7.4.33 (mod_php) Not everything we find is …
openSUSE Leap 15.5 •
Apache 2.4.x •
PHP 7.4.33 (mod_php) Not everything we find is …
⤷ Title: Weaponizing Useless XSS: How Path Traversal Turned Reflection into Exploitation
════════════════════════
𐀪 Author: Prasannasalunkhe
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:33:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #application_security #path_traversal #xss_attack
════════════════════════
𐀪 Author: Prasannasalunkhe
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:33:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #application_security #path_traversal #xss_attack
Medium
Weaponizing Useless XSS: How Path Traversal Turned Reflection into Exploitation
So there I was, poking around this shopping website with your standard product listings and search functionality. You know the drill: click…
⤷ Title: Exploitation of Microsoft Office Zero-Day (CVE-2026–21509) by Russian State-Sponsored Threat Group
════════════════════════
𐀪 Author: NSHC ThreatRecon Team
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:52:04 GMT
════════════════════════
⌗ Tags: #cyberattack #vulnerability #threat_intelligence #hacking #cybersecurity
════════════════════════
𐀪 Author: NSHC ThreatRecon Team
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:52:04 GMT
════════════════════════
⌗ Tags: #cyberattack #vulnerability #threat_intelligence #hacking #cybersecurity
Medium
Exploitation of Microsoft Office Zero-Day (CVE-2026–21509) by Russian State-Sponsored Threat Group
⤷ Title: Why AI Governance is the “New Frontier” for Information Security Professionals
════════════════════════
𐀪 Author: Adityagoswami
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:55:28 GMT
════════════════════════
⌗ Tags: #risk_management #infosec #artificial_intelligence #ai_governance #cybersecurity
════════════════════════
𐀪 Author: Adityagoswami
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:55:28 GMT
════════════════════════
⌗ Tags: #risk_management #infosec #artificial_intelligence #ai_governance #cybersecurity
Medium
Why AI Governance is the “New Frontier” for Information Security Professionals
In the rapid evolution of technology, we have transitioned from the era of “Software is eating the world” to “AI is transforming the…
⤷ Title: Information About Linux
════════════════════════
𐀪 Author: DefenAsh
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:02:52 GMT
════════════════════════
⌗ Tags: #ethical_hacking #linux_tutorial #red_teaming #blue_teaming
════════════════════════
𐀪 Author: DefenAsh
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 05:02:52 GMT
════════════════════════
⌗ Tags: #ethical_hacking #linux_tutorial #red_teaming #blue_teaming
Medium
Information About Linux
What is Linux?
⤷ Title: The Art of Reconnaissance Part 1 : How Hackers Find Vulnerabilities Before You Do
════════════════════════
𐀪 Author: cat0x01
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:18:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #reconnaissance #bug_hunting #vulnerability #ethical_hacking
════════════════════════
𐀪 Author: cat0x01
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:18:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #reconnaissance #bug_hunting #vulnerability #ethical_hacking
Medium
The Art of Reconnaissance Part 1 : How Hackers Find Vulnerabilities Before You Do
Introduction :
⤷ Title: Critical n8n Flaw CVE-2026-25049 Enables System Command Execution via Malicious Workflows
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 11:46:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 11:46:00 +0530
════════════════════════
⌗ Tags: No_Tags