⤷ Title: findme — picoCTF Write-up | Finding a Flag Hidden in HTTP Redirects
════════════════════════
𐀪 Author: Affanhaxor
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 05:38:07 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #redirection #cybersecurity #web_security
════════════════════════
𐀪 Author: Affanhaxor
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 05:38:07 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #redirection #cybersecurity #web_security
Medium
findme — picoCTF Write-up | Finding a Flag Hidden in HTTP Redirects
Introduction
⤷ Title: Inside My 5-Day Certified Penetration Tester Journey at Cybertronium, Malaysia
════════════════════════
𐀪 Author: HEMANTH KARAL VARMAA M
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 13:08:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #penetration_testing #web_security #offensive_security
════════════════════════
𐀪 Author: HEMANTH KARAL VARMAA M
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 13:08:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #penetration_testing #web_security #offensive_security
Medium
Inside My 5-Day Certified Penetration Tester Journey at Cybertronium, Malaysia 🇲🇾
From cybersecurity fundamentals and vulnerability assessment to controlled exploitation, social engineering, web security, SQL Injection…
⤷ Title: Mastering Insecure Deserialization: A Complete PortSwigger Lab Writeup
════════════════════════
𐀪 Author: Bhanvararam choudhary
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 14:02:49 GMT
════════════════════════
⌗ Tags: #web_security #insecure_deserialization #cybersecurity #ethical_hacking #portswigger
════════════════════════
𐀪 Author: Bhanvararam choudhary
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 14:02:49 GMT
════════════════════════
⌗ Tags: #web_security #insecure_deserialization #cybersecurity #ethical_hacking #portswigger
Medium
Mastering Insecure Deserialization: A Complete PortSwigger Lab Writeup
From basic cookie manipulation to custom gadget chains in PHP, Java, and Ruby (Apprentice to Expert).
⤷ Title: picoCTF-NO FA Write-up
════════════════════════
𐀪 Author: Rayenbenali
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 17:21:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #capture_the_flag #web_security #ctf_write_ups #ethical_hacking
════════════════════════
𐀪 Author: Rayenbenali
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 17:21:14 GMT
════════════════════════
⌗ Tags: #cybersecurity #capture_the_flag #web_security #ctf_write_ups #ethical_hacking
Medium
picoCTF-NO FA Write-up
CTF Name: No FA
⤷ Title: 52 Request Smuggling Reports. Two Rules Decide the Payout.
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 22:42:06 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_security #bug_bounty #http_request_smuggling #cybersecurity
════════════════════════
𐀪 Author: Raj Namdev
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 22:42:06 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_security #bug_bounty #http_request_smuggling #cybersecurity
Medium
52 Request Smuggling Reports. Two Rules Decide the Payout.
30-Second Version: On August 5, PortSwigger published “CRLF-Powered Desync Attacks,” which turns plain HTTP header injection into full…
⤷ Title: TryHackMe Fools Mate Walkthrough
════════════════════════
𐀪 Author: 0xPwner
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 22:28:01 GMT
════════════════════════
⌗ Tags: #web_security #tryhackme #tryhackme_walkthrough #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: 0xPwner
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 22:28:01 GMT
════════════════════════
⌗ Tags: #web_security #tryhackme #tryhackme_walkthrough #cybersecurity #penetration_testing
Medium
TryHackMe Fools Mate Walkthrough
Room: Fools Mate Difficulty: Easy Author: 0xPwner Target IP: 10.114.185.13 Category: Web Exploitation
⤷ Title: I Entered -100 in an E-Commerce Cart. The Server Accepted It.
════════════════════════
𐀪 Author: Fenil sheta
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 02:19:18 GMT
════════════════════════
⌗ Tags: #appsec #bug_bounty #cybersecurity #web_security #information_security
════════════════════════
𐀪 Author: Fenil sheta
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 02:19:18 GMT
════════════════════════
⌗ Tags: #appsec #bug_bounty #cybersecurity #web_security #information_security
Medium
🛒 I Entered -100 in an E-Commerce Cart. The Server Accepted It.
A short security research story about a business logic vulnerability in an e-commerce application.
⤷ Title: Roboto Sans — picoCTF Write-up | Finding a Hidden File Through robots.txt and Base64
════════════════════════
𐀪 Author: Affanhaxor
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 05:52:54 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #reconnaissance #web_security #cybersecurity
════════════════════════
𐀪 Author: Affanhaxor
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 05:52:54 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #reconnaissance #web_security #cybersecurity
Medium
Roboto Sans — picoCTF Write-up | Finding a Hidden File Through robots.txt and Base64
Introduction
⤷ Title: Critical Next.js RCE Vulnerability Fixed in Version 16.3.6
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 07:54:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_94545 #cybersecurity #Next.js #Remote Code Execution #Vercel #Web Security
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 07:54:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_94545 #cybersecurity #Next.js #Remote Code Execution #Vercel #Web Security
Daily CyberSecurity
Critical Next.js RCE Vulnerability Fixed in Version 16.3.6
TL;DR On September 22, 2026, Vercel published an emergency fix for a critical Next.js RCE vulnerability. Tracked as CVE-2026-94545, this flaw allows unauthenticated remote attackers to execute arb…
⤷ Title: How I Found a DOM XSS Through a JWT alg:none — and Earned a $400 Bounty
════════════════════════
𐀪 Author: yOnly
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 08:50:43 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #jwt #web_security #ethical_hacking
════════════════════════
𐀪 Author: yOnly
════════════════════════
ⴵ Time: Wed, 23 Sep 2026 08:50:43 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #jwt #web_security #ethical_hacking
Medium
How I Found a DOM XSS Through a JWT alg:none — and Earned a $400 Bounty
When I was testing a KYC verification flow during a bug bounty program, I came across an endpoint that accepted a JWT through a URL…