⤷ Title: Insecure CaptchaVulnerability Analysis in DVWA (Low to Impossible)
════════════════════════
𐀪 Author: Narathama Firmansyah Putra
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:27:37 GMT
════════════════════════
⌗ Tags: #penetration_testing #dvwa #insecure_captcha #cybersecurity #captcha
════════════════════════
𐀪 Author: Narathama Firmansyah Putra
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:27:37 GMT
════════════════════════
⌗ Tags: #penetration_testing #dvwa #insecure_captcha #cybersecurity #captcha
Medium
Insecure CaptchaVulnerability Analysis in DVWA (Low to Impossible)
Introduction Insecure Captcha adalah salah satu fitur latihan keamanan di Damn Vulnerable Web Application (DVWA) yang menunjukkan bagaimana…
⤷ Title: Google Dorking: The Art of Uncovering Hidden Truths Through Search
════════════════════════
𐀪 Author: Nida Arshad
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:15:01 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Nida Arshad
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:15:01 GMT
════════════════════════
⌗ Tags: #penetration_testing #ethical_hacking #cybersecurity
Medium
Google Dorking: The Art of Uncovering Hidden Truths Through Search
In the hands of a curious mind, Google transforms from a simple search engine into a powerful reconnaissance tool — thanks to the technique…
⤷ Title: Tryhackme’s Intermediate Nmap
════════════════════════
𐀪 Author: CyberFuFu
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 13:26:43 GMT
════════════════════════
⌗ Tags: #ethical_hacking #red_teaming #ctf #tryhackme #penetration_testing
════════════════════════
𐀪 Author: CyberFuFu
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 13:26:43 GMT
════════════════════════
⌗ Tags: #ethical_hacking #red_teaming #ctf #tryhackme #penetration_testing
Medium
Tryhackme’s Intermediate Nmap
Hello and welcome everybody!
⤷ Title: Pyrat: Solving the other way (with root cause)
════════════════════════
𐀪 Author: Ishtiaque Foysol
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:53:44 GMT
════════════════════════
⌗ Tags: #python #ctf #tryhackme
════════════════════════
𐀪 Author: Ishtiaque Foysol
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:53:44 GMT
════════════════════════
⌗ Tags: #python #ctf #tryhackme
Medium
Pyrat: Solving the other way (with root cause)
So, the other day after another impotent SQA role interview session where I failed to implement a problem solving in Python code — out of…
⤷ Title: How API Pen-Testers Approach Systems: Tools, Mindset, and Methodology
════════════════════════
𐀪 Author: Madalitso Cheyo
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 13:44:54 GMT
════════════════════════
⌗ Tags: #api_security #api_penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Madalitso Cheyo
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 13:44:54 GMT
════════════════════════
⌗ Tags: #api_security #api_penetration_testing #cybersecurity
Medium
How API Pen-Testers Approach Systems: Tools, Mindset, and Methodology
When I first dipped my toes into API Pen-Testing, I assumed attacking an API would feel just like testing a website, only with fewer…
⤷ Title: Microsoft Discloses DNS-Based ClickFix Attack Using Nslookup for Malware Staging
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 19:40:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 19:40:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Vulnerability scanning with Metasploit
════════════════════════
𐀪 Author: Mylescorey
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 16:16:10 GMT
════════════════════════
⌗ Tags: #metasploit #hacking
════════════════════════
𐀪 Author: Mylescorey
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 16:16:10 GMT
════════════════════════
⌗ Tags: #metasploit #hacking
Medium
Vulnerability scanning with Metasploit
I started by running an Nmap stealth scan to avoid detection and identify any open ports. The scan showed that port 8080 was open and…
⤷ Title: How I Hacked My Own AWS Account: Simulating the $80M Capital One Breach
════════════════════════
𐀪 Author: Karol
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 15:22:17 GMT
════════════════════════
⌗ Tags: #aws #cloud_security #cybersecurity #infosec #devsecops
════════════════════════
𐀪 Author: Karol
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 15:22:17 GMT
════════════════════════
⌗ Tags: #aws #cloud_security #cybersecurity #infosec #devsecops
Medium
How I Hacked My Own AWS Account: Simulating the $80M Capital One Breach
In this project, I took on the role of an ethical hacker to demonstrate how a simple web vulnerability can lead to a full-scale cloud data…
⤷ Title: Diva Android Challenge walkthrough
════════════════════════
𐀪 Author: 0X0DOoOM
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 16:50:36 GMT
════════════════════════
⌗ Tags: #bug_hunting #mobile_security #mobile_penetration_test #bug_bounty #penetration_testing
════════════════════════
𐀪 Author: 0X0DOoOM
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 16:50:36 GMT
════════════════════════
⌗ Tags: #bug_hunting #mobile_security #mobile_penetration_test #bug_bounty #penetration_testing
Medium
Diva Android Challenge walkthrough
اللَّهُمَّ صَلِّ عَلَى مُحَمَّدٍ عَبْدِكَ وَرَسُولِكَ
⤷ Title: Breaking Into DarkHole V2: From Zero to Root
════════════════════════
𐀪 Author: HEKKO
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 15:18:13 GMT
════════════════════════
⌗ Tags: #ctf #student_life #ethical_hacking #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: HEKKO
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 15:18:13 GMT
════════════════════════
⌗ Tags: #ctf #student_life #ethical_hacking #penetration_testing #cybersecurity
Medium
Breaking Into DarkHole V2: From Zero to Root
My Journey Compromising a Vulnerable Machine (And What I Learned)
⤷ Title: Discovering Security Weaknesses: A Practical Guide to Vulnerability Scanning
════════════════════════
𐀪 Author: Allen Ace
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 16:04:42 GMT
════════════════════════
⌗ Tags: #kali_linux #nessus #vulnerability_scanning #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Allen Ace
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 16:04:42 GMT
════════════════════════
⌗ Tags: #kali_linux #nessus #vulnerability_scanning #ethical_hacking #cybersecurity
Medium
Discovering Security Weaknesses: A Practical Guide to Vulnerability Scanning
This hands-on project explores vulnerability scanning through practical implementation. We’ll install Nessus on a Kali Linux virtual…
⤷ Title: Thinking Like an Attacker: How API Pen-Testers Identify Authentication Bypass
════════════════════════
𐀪 Author: Madalitso Cheyo
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:52:43 GMT
════════════════════════
⌗ Tags: #api_security #api_authentication #cybersecurity #authentication_bypass
════════════════════════
𐀪 Author: Madalitso Cheyo
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 14:52:43 GMT
════════════════════════
⌗ Tags: #api_security #api_authentication #cybersecurity #authentication_bypass
Medium
Thinking Like an Attacker: How API Pen-Testers Identify Authentication Bypass
When I first started exploring API security, I assumed authentication was solid by default. After all, if there’s a login endpoint and…
⤷ Title: How I Discovered React2Shell (CVE-2025–55182) During a VAPT Engagement Using a Simple Browser…
════════════════════════
𐀪 Author: prometheus
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 15:40:11 GMT
════════════════════════
⌗ Tags: #vapt #bugbounty_writeup #cybersecurity
════════════════════════
𐀪 Author: prometheus
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 15:40:11 GMT
════════════════════════
⌗ Tags: #vapt #bugbounty_writeup #cybersecurity
Medium
How I Discovered React2Shell (CVE-2025–55182) During a VAPT Engagement Using a Simple Browser…
What is React2Shell (CVE-2025–55182)?
⤷ Title: I Wasn’t Looking at the Target — I Was Watching the Hackers First
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:04:33 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #bug_bounty_tips #cybersecurity #info_sec_writeups
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:04:33 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #bug_bounty_tips #cybersecurity #info_sec_writeups
Medium
I Wasn’t Looking at the Target — I Was Watching the Hackers First 👀🌑
Free Link 🎈
⤷ Title: Expanding React2Shell for Serverless Lambda Function
════════════════════════
𐀪 Author: Matthew Keeley
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:04:28 GMT
════════════════════════
⌗ Tags: #security #bug_bounty #nextjs #red_team #pentesting
════════════════════════
𐀪 Author: Matthew Keeley
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:04:28 GMT
════════════════════════
⌗ Tags: #security #bug_bounty #nextjs #red_team #pentesting
Medium
Expanding React2Shell for Serverless Lambda Function
Existing scanners miss CVE-2025–55182 in serverless Lambda deployments.
⤷ Title: How a Forgotten QA Page Led to an $800 Bounty: Unauthorized Document Access
════════════════════════
𐀪 Author: gopi krishnan
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:04:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #infosec #bug_bounty #broken_access_control
════════════════════════
𐀪 Author: gopi krishnan
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:04:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #infosec #bug_bounty #broken_access_control
Medium
How a Forgotten QA Page Led to an $800 Bounty: Unauthorized Document Access
How a Forgotten QA Page Led to an $800 Bounty: Unauthorized Document Access Before starting with the blog, i would like to introduce myself a bit. My name is Gopi and i hold a Bachelors degree in …
⤷ Title: Hacking Google Drive Integrations: A Deep Dive into OAuth Security
════════════════════════
𐀪 Author: Krishna Kumar
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:52:04 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #cybersecurity #hacking #bug_bounty_tips
════════════════════════
𐀪 Author: Krishna Kumar
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:52:04 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #cybersecurity #hacking #bug_bounty_tips
Medium
🎯 Hacking Google Drive Integrations: A Deep Dive into OAuth Security
How two critical vulnerabilities in Google Drive’s third-party integration system exposed millions of users to XSS and SSRF attacks
⤷ Title: From Leak to Lead: How Dark Web Dumps Helped Me Find a Live Vulnerability ️♂️
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:51:22 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #info_sec_writeups #bug_bounty #hacking #cybersecurity
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:51:22 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #info_sec_writeups #bug_bounty #hacking #cybersecurity
Medium
From Leak to Lead: How Dark Web Dumps Helped Me Find a Live Vulnerability 🕵️♂️📂
Free Link 🎈
⤷ Title: My First Bug Bounty: A Simple OTP Flaw That Led to Account Takeover
════════════════════════
𐀪 Author: montaser mohsen
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:41:04 GMT
════════════════════════
⌗ Tags: #authentication #brute_force #account_takeover #bug_bounty #otp_bypass
════════════════════════
𐀪 Author: montaser mohsen
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 18:41:04 GMT
════════════════════════
⌗ Tags: #authentication #brute_force #account_takeover #bug_bounty #otp_bypass
Medium
My First Bug Bounty: A Simple OTP Flaw That Led to Account Takeover
Who Am I?
⤷ Title: The Complete Web Penetration Testing Roadmap for 2026 (Part 2)
════════════════════════
𐀪 Author: Hossein Zarei
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:56:59 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #cybersecurity #penetration_testing #ethical_hacking
════════════════════════
𐀪 Author: Hossein Zarei
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:56:59 GMT
════════════════════════
⌗ Tags: #web_security #bug_bounty #cybersecurity #penetration_testing #ethical_hacking
Medium
The Complete Web Penetration Testing Roadmap for 2026 (Part 2)
Hello everyone 👋
⤷ Title: Chaining Vulnerabilities THM
════════════════════════
𐀪 Author: pad1ryoshi
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:37:37 GMT
════════════════════════
⌗ Tags: #offsec #tryhackme #bug_bounty #ctf
════════════════════════
𐀪 Author: pad1ryoshi
════════════════════════
ⴵ Time: Sun, 15 Feb 2026 17:37:37 GMT
════════════════════════
⌗ Tags: #offsec #tryhackme #bug_bounty #ctf
Medium
Chaining Vulnerabilities THM
Recentemente fiz uma room no THM chamada “Chaining Vulnerabilities” e acho que vale a pena escrever um pouco sobre ela.