⤷ Title: From Restriction to Exposure: How a Single Feature Leaked Thousands of PII Records
════════════════════════
𐀪 Author: bhargabKaushik
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 19:10:10 GMT
════════════════════════
⌗ Tags: #security_misconfiguration #web_security #bug_bounty_writeup #vulnerability
════════════════════════
𐀪 Author: bhargabKaushik
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 19:10:10 GMT
════════════════════════
⌗ Tags: #security_misconfiguration #web_security #bug_bounty_writeup #vulnerability
Medium
From Restriction to Exposure: How a Single Feature Leaked Thousands of PII Records
Hello Everyone, hope you’re all doing great. In this write-up, we’ll walk through one of my recent findings on a Vulnerability Rewards…
⤷ Title: Network Services 2 lab in THM WalkThrough
════════════════════════
𐀪 Author: SUSHANT TELRANDHE
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 20:49:51 GMT
════════════════════════
⌗ Tags: #ejpt #vapt #penetration_testing #network_security #cybersecurity
════════════════════════
𐀪 Author: SUSHANT TELRANDHE
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 20:49:51 GMT
════════════════════════
⌗ Tags: #ejpt #vapt #penetration_testing #network_security #cybersecurity
Medium
Network Services 2 lab in THM WalkThrough
Connect to the TryHackMe OpenVPN Server (See https://tryhackme.com/access for help!)
⤷ Title: Telegram Phishing Campaign Hijacks Accounts by Abusing Trust
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:00:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #API Abuse #Cyber Security #Cyfirma #infosec #mobile security #phishing #QR Code Scam #social engineering #Telegram
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:00:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #API Abuse #Cyber Security #Cyfirma #infosec #mobile security #phishing #QR Code Scam #social engineering #Telegram
Daily CyberSecurity
Telegram Phishing Campaign Hijacks Accounts by Abusing Trust
New Telegram phishing campaign abuses the "This is me" feature for account takeover. CYFIRMA reveals a global framework evading detection. Stay alert.
⤷ Title: AWS S3 Bucket Recon Bugbounty
════════════════════════
𐀪 Author: Mr Robot Hackteam
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 23:56:06 GMT
════════════════════════
⌗ Tags: #bug_bounty_hunter #aws_s3_hack #bug_bounty #hacking #aws_s3
════════════════════════
𐀪 Author: Mr Robot Hackteam
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 23:56:06 GMT
════════════════════════
⌗ Tags: #bug_bounty_hunter #aws_s3_hack #bug_bounty #hacking #aws_s3
Medium
AWS S3 Bucket Recon Bugbounty
Hello Amazon S3 buckets can detect unauthorized access and allow command-based deletion of data. aws s3 ls s3://flaws.cloud —…
⤷ Title: AppDomainManager Injection — Bend .NET Assemblies to Your Will
════════════════════════
𐀪 Author: Matt Swann
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 23:08:50 GMT
════════════════════════
⌗ Tags: #threat_intelligence #threat_hunting #hacking #cybersecurity #red_team
════════════════════════
𐀪 Author: Matt Swann
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 23:08:50 GMT
════════════════════════
⌗ Tags: #threat_intelligence #threat_hunting #hacking #cybersecurity #red_team
Medium
AppDomainManager Injection — Bend .NET Assemblies to Your Will
In this week’s Tradecraft Tuesday put on by Huntress, Staff Threat Intelligence Analyst Casey Smith and Senior Principal Security…
⤷ Title: The “Packet” That Never Lies: A Hacker’s Guide to Digital Evidence (Section 65B)
════════════════════════
𐀪 Author: Aman Kumar (ak)
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:54:28 GMT
════════════════════════
⌗ Tags: #hacking #digital_forensics #cyber_law #india #infosec
════════════════════════
𐀪 Author: Aman Kumar (ak)
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:54:28 GMT
════════════════════════
⌗ Tags: #hacking #digital_forensics #cyber_law #india #infosec
Medium
The “Packet” That Never Lies: A Hacker’s Guide to Digital Evidence (Section 65B)
Debugging the Indian Evidence Act: A Technical Deep Dive into Section 65B, Hashing, and the Arjun Panditrao Judgment.
⤷ Title: Loading Kernel Drivers In-Memory
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:07:43 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #malware #hacker #cybersecurity
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:07:43 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #malware #hacker #cybersecurity
Medium
Loading Kernel Drivers In-Memory
Welcome to this new Medium post! Today I’ll share a technique for loading kernel drivers (.sys files) without distributing them as separate…
⤷ Title: TryHackMe Benign Walkthrough: Investigating Suspicious Process Execution with Splunk
════════════════════════
𐀪 Author: sn0x
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:55:23 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme_walkthrough #tryhackme #cybersecurity
════════════════════════
𐀪 Author: sn0x
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:55:23 GMT
════════════════════════
⌗ Tags: #ctf #tryhackme_walkthrough #tryhackme #cybersecurity
Medium
TryHackMe Benign Walkthrough: Investigating Suspicious Process Execution with Splunk
Introduction
⤷ Title: Recon Like a Hunter: Practical Tips from Real Findings Part 3
════════════════════════
𐀪 Author: Aya Ayman(GERR4Y)
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:05:59 GMT
════════════════════════
⌗ Tags: #information_disclosure #wayback_machine #recon #bug_bounty_tips
════════════════════════
𐀪 Author: Aya Ayman(GERR4Y)
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 22:05:59 GMT
════════════════════════
⌗ Tags: #information_disclosure #wayback_machine #recon #bug_bounty_tips
Medium
Recon Like a Hunter: Practical Tips from Real Findings Part 3
بسم الله والصلاة والسلام على رسول الله الحمد لله الذي علم بالقلم علم الإنسان ما لم يعلم والصلاة والسلام على خير معلم الناس الخير محمد
⤷ Title: Triple Threat Patched: Zimbra 10.1.16 Fixes XSS, XXE & LDAP Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:33:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Collaboration Suite #CSRF #Email Security #LDAP injection #Patch Alert #security update #XSS #xxe #Zimbra #Zimbra 10.1.16
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:33:15 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Collaboration Suite #CSRF #Email Security #LDAP injection #Patch Alert #security update #XSS #xxe #Zimbra #Zimbra 10.1.16
Daily CyberSecurity
Triple Threat Patched: Zimbra 10.1.16 Fixes XSS, XXE & LDAP Injection
Zimbra 10.1.16 patches critical XSS, XXE, and LDAP injection flaws. Update immediately to secure your email collaboration suite and restore PDF previews.
⤷ Title: Email Under Siege: Storm-2603 Exploits SmarterMail to Deploy Warlock Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:28:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_23760 #CVE_2026_24423 #Email Security #living_off_the_land #Patch Alert #ReliaQuest #SmarterMail #Storm_2603 #Velociraptor #Warlock Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:28:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_23760 #CVE_2026_24423 #Email Security #living_off_the_land #Patch Alert #ReliaQuest #SmarterMail #Storm_2603 #Velociraptor #Warlock Ransomware
Daily CyberSecurity
Email Under Siege: Storm-2603 Exploits SmarterMail to Deploy Warlock Ransomware
Storm-2603 exploits SmarterMail vulnerability CVE-2026-23760 to deploy Warlock ransomware. Upgrade to Build 9511 immediately to prevent system compromise.
⤷ Title: Dream Job or Nightmare? Lazarus Group Hunts Crypto Devs with “Graphalgo” Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:22:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Crypto Malware #Fake Recruiter #Graphalgo #javascript #Lazarus Group #North Korea #npm Security #Python #ReversingLabs #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:22:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Crypto Malware #Fake Recruiter #Graphalgo #javascript #Lazarus Group #North Korea #npm Security #Python #ReversingLabs #supply chain attack
Daily CyberSecurity
Dream Job or Nightmare? Lazarus Group Hunts Crypto Devs with "Graphalgo" Malware
Lazarus Group targets crypto developers with fake job offers in new "Graphalgo" campaign. Malicious npm packages deliver multi-stage malware. Stay alert.
⤷ Title: The Human Hack: LummaStealer Returns with Deceptive “ClickFix” Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:18:53 +0000
════════════════════════
⌗ Tags: #Malware #Bitdefender #CAPTCHA Fraud #CastleLoader #ClickFix #Cybercrime #Infostealer #LummaStealer #Malware_as_a_Service #phishing #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:18:53 +0000
════════════════════════
⌗ Tags: #Malware #Bitdefender #CAPTCHA Fraud #CastleLoader #ClickFix #Cybercrime #Infostealer #LummaStealer #Malware_as_a_Service #phishing #social engineering
Daily CyberSecurity
The Human Hack: LummaStealer Returns with Deceptive "ClickFix" Attacks
LummaStealer is back, evading takedowns with "ClickFix" tactics. Bitdefender reveals how fake CAPTCHAs trick users into running malware. Stay alert.
⤷ Title: Back to the Future: SSHStalker Botnet Revives 2009 Tactics to Hijack Linux Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:13:36 +0000
════════════════════════
⌗ Tags: #Malware #Cloud Security #Cybercrime #ddos #Flare Research #IRC Malware #Legacy Linux #Linux Botnet #SSH Brute_Force #SSHStalker #Tsunami Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:13:36 +0000
════════════════════════
⌗ Tags: #Malware #Cloud Security #Cybercrime #ddos #Flare Research #IRC Malware #Legacy Linux #Linux Botnet #SSH Brute_Force #SSHStalker #Tsunami Malware
Daily CyberSecurity
Back to the Future: SSHStalker Botnet Revives 2009 Tactics to Hijack Linux Servers
New SSHStalker botnet uses vintage IRC tactics & automated SSH brute-forcing to compromise Linux servers. Flare research reveals a "zombie army" in the making.
⤷ Title: Trojan Horse in the Server Room: Muddled Libra’s Rogue VM Strategy Exposed
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:06:52 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyber Crime #Incident Response #Muddled Libra #Rogue VM #Scattered Spider #Snowflake #social engineering #UNC3944 #Unit 42 #VMware vSphere
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:06:52 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyber Crime #Incident Response #Muddled Libra #Rogue VM #Scattered Spider #Snowflake #social engineering #UNC3944 #Unit 42 #VMware vSphere
Daily CyberSecurity
Trojan Horse in the Server Room: Muddled Libra's Rogue VM Strategy Exposed
Unit 42 reveals Muddled Libra (Scattered Spider) uses rogue VMs in vSphere to persist. Learn how they bypass defenses without malware. Read more.
⤷ Title: Top 10 Recon Mistakes That Make Hackers Miss Easy Bugs
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 01:23:44 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking #programming #ai
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 01:23:44 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking #programming #ai
Medium
Top 10 Recon Mistakes That Make Hackers Miss Easy Bugs
Hi Vipul from The Hacker’s Log here 👋 Alright, let’s talk about money left on the table. 💸
⤷ Title: Breaking Role Barriers: Exploiting Broken Access Control in CriticalOps — HTB Walkthrough
════════════════════════
𐀪 Author: Fuzzyy Duck
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 01:23:15 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #hackthebox #owasp_top_10 #ctf
════════════════════════
𐀪 Author: Fuzzyy Duck
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 01:23:15 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #hackthebox #owasp_top_10 #ctf
Medium
Breaking Role Barriers: Exploiting Broken Access Control in CriticalOps — HTB Walkthrough
How a simple role manipulation led to full admin access in the HTB OWASP Top 10 2025 track
⤷ Title: Anonymous Auto Tor Proxy IP Changer
════════════════════════
𐀪 Author: Mr Robot Hackteam
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:01:31 GMT
════════════════════════
⌗ Tags: #proxy #cybersecurity #hacking #bug_bounty #hacks
════════════════════════
𐀪 Author: Mr Robot Hackteam
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:01:31 GMT
════════════════════════
⌗ Tags: #proxy #cybersecurity #hacking #bug_bounty #hacks
Medium
Anonymous Auto Tor Proxy IP Changer
Hello, you can use Tor IP to remain anonymous, and since the IP address is automatically changed, tracking becomes impossible, which makes…
⤷ Title: Arp-Scan para Pentesting: Escaneo de Red y Bypass de Firewalls
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:01:01 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #bug_bounty #technology #cybersecurity
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 00:01:01 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #bug_bounty #technology #cybersecurity
Medium
Arp-Scan para Pentesting: Escaneo de Red y Bypass de Firewalls
Domina arp-scan para descubrir hosts invisibles, realizar fingerprinting de hardware y evadir la segmentación de red en auditorías.
⤷ Title: The “Open Window” in the SSO Fortress: How I Accessed Internal GraphQL Schemas Without Login (And…
════════════════════════
𐀪 Author: Zer0Figure
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 02:57:09 GMT
════════════════════════
⌗ Tags: #security #bug_bounty_tips #cybersecurity #bug_bounty #bug_bounty_writeup
════════════════════════
𐀪 Author: Zer0Figure
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 02:57:09 GMT
════════════════════════
⌗ Tags: #security #bug_bounty_tips #cybersecurity #bug_bounty #bug_bounty_writeup
Medium
The “Open Window” in the SSO Fortress: How I Accessed Internal GraphQL Schemas Without Login (And Why It Was N/A)
I found a direct line into the backend of a Fortune 500 company’s private code infrastructure. No passwords, no tokens — just one forgotten…
⤷ Title: Fixing Custom Segmented Control
════════════════════════
𐀪 Author: Jerry PM
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 02:51:45 GMT
════════════════════════
⌗ Tags: #swift #ios #iphone #bug_bounty #swiftui
════════════════════════
𐀪 Author: Jerry PM
════════════════════════
ⴵ Time: Fri, 13 Feb 2026 02:51:45 GMT
════════════════════════
⌗ Tags: #swift #ios #iphone #bug_bounty #swiftui
Medium
Fixing Custom Segmented Control
A Real Bug Story from Production Code: When Your Border Disappears Behind Parent View