⤷ Title: 身份驗證之戰:ShinyHunters 駭客聯盟與多因子驗證武器化的戰術演變研究報告
════════════════════════
𐀪 Author: jerrycho
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 16:13:06 GMT
════════════════════════
⌗ Tags: #infosec #social_engineering #privacy #cybersecurity #zero_trust
════════════════════════
𐀪 Author: jerrycho
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 16:13:06 GMT
════════════════════════
⌗ Tags: #infosec #social_engineering #privacy #cybersecurity #zero_trust
Medium
身份驗證之戰:ShinyHunters 駭客聯盟與多因子驗證武器化的戰術演變研究報告
在 2024 年至 2026 年初的全球資安版圖中,網路攻擊的重心發生了根本性的偏移。傳統上被視為企業資安防禦基石的多因子驗證(MFA),在新型態社交工程攻擊的衝擊下,正逐漸從「防護盾牌」演變為駭客手中的「武器」。以 ShinyHunters…
⤷ Title: Static Application Security Testing (SAST)
════════════════════════
𐀪 Author: Anadi Chiransa
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 16:14:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity_awareness #cybersecurity
════════════════════════
𐀪 Author: Anadi Chiransa
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 16:14:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity_awareness #cybersecurity
Medium
Static Application Security Testing (SAST)
Imagine you are on the construction side. There are two main types of people you will meet here. An inspector who is wearing magical lenses…
⤷ Title: Oh dear, Keir”: A 7,400-Mile Trip to China and All I Got Was This Lousy Trade Report
════════════════════════
𐀪 Author: Graham lear
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 16:11:41 GMT
════════════════════════
⌗ Tags: #united_states #xs #china #uk_politics
════════════════════════
𐀪 Author: Graham lear
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 16:11:41 GMT
════════════════════════
⌗ Tags: #united_states #xs #china #uk_politics
Medium
Oh dear, Keir”: A 7,400-Mile Trip to China and All I Got Was This Lousy Trade Report
Is this a first? Visiting PMs are ALWAYS offered something as a gesture, yet the world’s 2nd largest economy showed up empty-handed — what…
⤷ Title: CSRF Protection Done Wrong: Accepting Requests Without Tokens
════════════════════════
𐀪 Author: Istiyak
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:23:30 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_security #csrf #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Istiyak
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:23:30 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_security #csrf #cybersecurity #bug_bounty
Medium
CSRF Protection Done Wrong: Accepting Requests Without Tokens
Introduction
⤷ Title: Bug Bounty Programlarına Başlamaya Karar Verdim
════════════════════════
𐀪 Author: Hakan ÇEVİK
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:08:33 GMT
════════════════════════
⌗ Tags: #bug_bounty #human_resources #careers #cybersecurity #information_technology
════════════════════════
𐀪 Author: Hakan ÇEVİK
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:08:33 GMT
════════════════════════
⌗ Tags: #bug_bounty #human_resources #careers #cybersecurity #information_technology
Medium
Bug Bounty Programlarına Başlamaya Karar Verdim
Herkese selamlar, bu yazımda neden bug bounty programlarına katılmaya karar verdiğimi aktarıyorum.
⤷ Title: Here’s how I discovered a high-severity broken access control vulnerability (BAC-1)
════════════════════════
𐀪 Author: Br0k3n_1337 Aka Sourav Khan
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:23:50 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #bug_bounty_writeup
════════════════════════
𐀪 Author: Br0k3n_1337 Aka Sourav Khan
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:23:50 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #bug_bounty_writeup
Medium
Here’s how I discovered a high-severity broken access control vulnerability (BAC-1)
In the name of Allah, the Most Gracious, the Most Merciful.
⤷ Title: “Bug Bounty Bootcamp #24: Hacking postMessage — Turning Cross-Domain Communication into Data Theft…
════════════════════════
𐀪 Author: Aman Sharma
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:15:58 GMT
════════════════════════
⌗ Tags: #penetration_testing #hacking #technology #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Aman Sharma
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:15:58 GMT
════════════════════════
⌗ Tags: #penetration_testing #hacking #technology #cybersecurity #bug_bounty
Medium
“Bug Bounty Bootcamp #24: Hacking postMessage — Turning Cross-Domain Communication into Data Theft and XSS”
Your browser lets windows talk to each other for convenience. Hackers abuse this conversation to steal tokens, hijack sessions, and inject…
⤷ Title: Hackviser: PasteZone Write-Up
════════════════════════
𐀪 Author: Çağrı Karakuş
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:02:34 GMT
════════════════════════
⌗ Tags: #ctf #ctf_walkthrough #hacking #ctf_writeup #hackviser
════════════════════════
𐀪 Author: Çağrı Karakuş
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:02:34 GMT
════════════════════════
⌗ Tags: #ctf #ctf_walkthrough #hacking #ctf_writeup #hackviser
Medium
Hackviser: PasteZone Write-Up
Genel Bilgiler
⤷ Title: HTTP/2 downgrading
════════════════════════
𐀪 Author: Songül Kızılay Özügürler
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:51:30 GMT
════════════════════════
⌗ Tags: #hacking #medium #ctf #ctf_writeup #pentesting
════════════════════════
𐀪 Author: Songül Kızılay Özügürler
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:51:30 GMT
════════════════════════
⌗ Tags: #hacking #medium #ctf #ctf_writeup #pentesting
Medium
HTTP/2 downgrading
HTTP/2 hâlâ görece yeni bir protokol olduğu için, onu destekleyen web server’lar çoğu zaman yalnızca HTTP/1 konuşabilen legacy back-end…
⤷ Title: File InclusionVulnerability Analysis in DVWA (Low to Impossible)
════════════════════════
𐀪 Author: Narathama Firmansyah Putra
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:19:54 GMT
════════════════════════
⌗ Tags: #cybersecurity #dvwa #penetration_testing #local_file_inclusion #remote_file_inclusion
════════════════════════
𐀪 Author: Narathama Firmansyah Putra
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 19:19:54 GMT
════════════════════════
⌗ Tags: #cybersecurity #dvwa #penetration_testing #local_file_inclusion #remote_file_inclusion
Medium
File InclusionVulnerability Analysis in DVWA (Low to Impossible)
Introduction
⤷ Title: OSINT-How Public Information Becomes Powerful Intelligence
════════════════════════
𐀪 Author: Amandogra
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:46:09 GMT
════════════════════════
⌗ Tags: #daily_blog #social_engineering #cybersecurity #ethical_hacking #osint
════════════════════════
𐀪 Author: Amandogra
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 18:46:09 GMT
════════════════════════
⌗ Tags: #daily_blog #social_engineering #cybersecurity #ethical_hacking #osint
Medium
OSINT-How Public Information Becomes Powerful Intelligence
When people hear intelligence gathering, they often imagine secret agents, hacked databases, or classified systems.
⤷ Title: THM - Boogeyman 3
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:23:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #security #technology #tech
════════════════════════
𐀪 Author: Francesco Pastore
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:23:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #security #technology #tech
Medium
THM - Boogeyman 3
A writeup for “Boogeyman 3” on TryHackMe.
⤷ Title: Sua Rede é realmente Segura? Por que “Pensar como um Hacker” é a Melhor Defesa para sua Carreira
════════════════════════
𐀪 Author: Paulo Henrique Oliveira
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:14:16 GMT
════════════════════════
⌗ Tags: #segurança #hacker #redes #hacking #cybersecurity
════════════════════════
𐀪 Author: Paulo Henrique Oliveira
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:14:16 GMT
════════════════════════
⌗ Tags: #segurança #hacker #redes #hacking #cybersecurity
Medium
Sua Rede é realmente Segura? Por que “Pensar como um Hacker” é a Melhor Defesa para sua Carreira
Hacker Ético: O profissional que conhece o ataque para garantir a defesa.
⤷ Title: Hacking Networking Services Home Lab
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:01:00 GMT
════════════════════════
⌗ Tags: #smb #protocol #cybersecurity #hacking #networking
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:01:00 GMT
════════════════════════
⌗ Tags: #smb #protocol #cybersecurity #hacking #networking
Medium
Hacking Networking Services Home Lab
In this home lab we are trying to exploit 3 networking services SMB, Telnet, FTP…
⤷ Title: Understanding the Evolution of Darkweb Markets Over Time
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:24:30 GMT
════════════════════════
⌗ Tags: #infosec #osint #cybersecurity #darkweb
════════════════════════
𐀪 Author: Tor BBB
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:24:30 GMT
════════════════════════
⌗ Tags: #infosec #osint #cybersecurity #darkweb
Medium
Understanding the Evolution of Darkweb Markets Over Time
Discussions around darkweb markets often focus on individual platforms or high-profile takedowns. However, when viewed over time, a broader…
⤷ Title: Why Moltbook is Dangerous: Critical Zero-days Found in My Audit (Full Report)
════════════════════════
𐀪 Author: Saad Khalid
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:20:44 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #cybersecurity #moltbook #ai
════════════════════════
𐀪 Author: Saad Khalid
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:20:44 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #cybersecurity #moltbook #ai
Medium
Why Moltbook is Dangerous: Critical Zero-days Found in My Audit (Full Report)
Complete White Hat Pentest Performed by Saad Khalid
⤷ Title: Privilege Escalation: Hijacking an Organization via Billing Notifications
════════════════════════
𐀪 Author: Mohamed Fathy
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 20:16:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #business_logic #security #idor_vulnerability
════════════════════════
𐀪 Author: Mohamed Fathy
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 20:16:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #penetration_testing #business_logic #security #idor_vulnerability
Medium
Privilege Escalation: Hijacking an Organization via Billing Notifications
Sometimes, the most critical bugs are hiding in the most boring features. While testing a web application, I managed to escalate from a…
⤷ Title: MITM lab + tryhackme Detection — Blue vs Red
════════════════════════
𐀪 Author: Khalil
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:48:58 GMT
════════════════════════
⌗ Tags: #tryhackme #ethical_hacking #man_in_the_middle_attack #ctf #wireshark
════════════════════════
𐀪 Author: Khalil
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:48:58 GMT
════════════════════════
⌗ Tags: #tryhackme #ethical_hacking #man_in_the_middle_attack #ctf #wireshark
Medium
MITM lab + tryhackme Detection — Blue vs Red
Pendant une attaque, un hacker peut surveiller les activités digitales, les conversations et les emails pour voler les informations de…
⤷ Title: PortSwigger SQL Injection Labs — Part 3
════════════════════════
𐀪 Author: Emirkilicer
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:52:51 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #web_penetration_testing #sql_injection #portswigger_lab
════════════════════════
𐀪 Author: Emirkilicer
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 21:52:51 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #web_penetration_testing #sql_injection #portswigger_lab
Medium
PortSwigger SQL Injection Labs — Part 3
UNION Exploitation & Query Engineering
⤷ Title: OpenClaw and NetSec for the Uninitiated
════════════════════════
𐀪 Author: Jade Seeker
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 23:43:04 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #ai #penetration_testing #cybersecurity #security
════════════════════════
𐀪 Author: Jade Seeker
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 23:43:04 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #ai #penetration_testing #cybersecurity #security
Medium
OpenClaw and NetSec for the Uninitiated
Dragons, City Walls, and Flat Networks
⤷ Title: Web Fuzzing: A Practical Testing Methodology
════════════════════════
𐀪 Author: Israel Aráoz Severiche
════════════════════════
ⴵ Time: Sat, 07 Feb 2026 02:00:13 GMT
════════════════════════
⌗ Tags: #web_security #ethical_hacking #hacking #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Israel Aráoz Severiche
════════════════════════
ⴵ Time: Sat, 07 Feb 2026 02:00:13 GMT
════════════════════════
⌗ Tags: #web_security #ethical_hacking #hacking #cybersecurity #bug_bounty
Medium
Web Fuzzing: A Practical Testing Methodology
In today’s digital landscape, web applications are at the heart of business and communication. However, their complexity and constant…