⤷ Title: eadingReading
════════════════════════
𐀪 Author: zimthegoat
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 10:37:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #jwt #authentication #api_security #web_development
════════════════════════
𐀪 Author: zimthegoat
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 10:37:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #jwt #authentication #api_security #web_development
Medium
eadingReading
JWT Vulnerabilities: Common Attacks and Security Best Practices
⤷ Title: Mass Account Lockout Using Organization Invites
════════════════════════
𐀪 Author: Killua199
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:54:55 GMT
════════════════════════
⌗ Tags: #web_security #owasp #bug_bounty #cybersecurity #bug_hunting
════════════════════════
𐀪 Author: Killua199
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:54:55 GMT
════════════════════════
⌗ Tags: #web_security #owasp #bug_bounty #cybersecurity #bug_hunting
Medium
Mass Account Lockout Using Organization Invites
الحمد لله الذي عَلَّمَ بالقلم.. عَلَّمَ الإنسانَ ما لم يَعْلَم والصلاةُ والسلامُ على خيرِ مُعَلِّمي الناسِ الخير محمد أما بعد
⤷ Title: My First CVSS 10.0 Bug: How I Took Control of Industrial Robots from My Bedroom ?
════════════════════════
𐀪 Author: razhack_26
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:47:46 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #druid #ethical_hacking #razhack
════════════════════════
𐀪 Author: razhack_26
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:47:46 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #druid #ethical_hacking #razhack
Medium
My First CVSS 10.0 Bug: How I Took Control of Industrial Robots from My Bedroom ?
What if I told you that from my student bedroom, I was able to control robots located thousands of kilometers away? No, this isn’t science…
⤷ Title: The Invite That Took Over Accounts: A Logic Flaw
════════════════════════
𐀪 Author: Parth Narula
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:33:15 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #bug_bounty_writeup #bug_bounty_tips #pentesting
════════════════════════
𐀪 Author: Parth Narula
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:33:15 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #bug_bounty_writeup #bug_bounty_tips #pentesting
Medium
The Invite That Took Over Accounts: A Logic Flaw
Hey Hackers, I am Parth Narula. A penetration tester, bug hunter, red teamer and overall a security researcher. I live for those moments…
⤷ Title: Exploiting Weak JWT Secrets in a Bug Bounty Target
════════════════════════
𐀪 Author: Z3DX
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:32:47 GMT
════════════════════════
⌗ Tags: #vulnerability #bug_bounty #web_security #cyper_security #jwt_token
════════════════════════
𐀪 Author: Z3DX
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:32:47 GMT
════════════════════════
⌗ Tags: #vulnerability #bug_bounty #web_security #cyper_security #jwt_token
Medium
Exploiting Weak JWT Secrets in a Bug Bounty Target
In this report, I will walk through a JWT-related security issue identified during testing and explain the steps taken to analyze it.
⤷ Title: WP-Hunter v2.0.2 Released: Faster, Smarter WordPress Security Scanning with 23 Exclusive PHP Rules
════════════════════════
𐀪 Author: Ali Sünbül (xeloxa)
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:29:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #web_security #open_source #wordpress
════════════════════════
𐀪 Author: Ali Sünbül (xeloxa)
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:29:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #web_security #open_source #wordpress
Medium
WP-Hunter v2.0.2 Released: Faster, Smarter WordPress Security Scanning with 23 Exclusive PHP Rules
The ultimate open-source WordPress security scanner just got even better.
⤷ Title: How I found CVE-2026–27161 (Sensitive Disclosure) | Cyber Tamarin
════════════════════════
𐀪 Author: Cyber Tamarin
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:58:27 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability
════════════════════════
𐀪 Author: Cyber Tamarin
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:58:27 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability
Medium
How I found CVE-2026–27161 (Sensitive Disclosure) | Cyber Tamarin
How I found CVE-2026–27161 (Sensitive Disclosure) | Cyber Tamarin Introduction During continued testing of the application — after identifying Stored XSS and CSRF vulnerabilities — I focused on …
⤷ Title: Why SAST is Broken!
════════════════════════
𐀪 Author: Brett Crawley
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 09:54:56 GMT
════════════════════════
⌗ Tags: #sast #application_security #appsec #secure_coding
════════════════════════
𐀪 Author: Brett Crawley
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 09:54:56 GMT
════════════════════════
⌗ Tags: #sast #application_security #appsec #secure_coding
Medium
Why SAST is Broken!
Why SAST is broken, and how it could be addressed
⤷ Title: Shadow World : Decryption — Chapter Five (Teaser Edition)
════════════════════════
𐀪 Author: Bond Leung
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:53:57 GMT
════════════════════════
⌗ Tags: #fiction #hacking #cybersecurity #techno_thriller #thriller
════════════════════════
𐀪 Author: Bond Leung
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:53:57 GMT
════════════════════════
⌗ Tags: #fiction #hacking #cybersecurity #techno_thriller #thriller
Medium
Shadow World : Decryption — Chapter Five (Teaser Edition)
At zero, the strike team arrives… and someone far deadlier gets there first.
⤷ Title: Hacking Study Notes — Netcat Usage (Basics)
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:35:43 GMT
════════════════════════
⌗ Tags: #shell #hacking #netcat
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:35:43 GMT
════════════════════════
⌗ Tags: #shell #hacking #netcat
Medium
Hacking Study Notes — Netcat Usage (Basics)
Netcat is a networking utility that can create network connections and send/receive data using TCP or UDP protocols. In simple terms, it is…
⤷ Title: Hacking Study Notes — Netcat Usage (Advanced)
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:35:27 GMT
════════════════════════
⌗ Tags: #netcat #shell #hacking
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:35:27 GMT
════════════════════════
⌗ Tags: #netcat #shell #hacking
Medium
Hacking Study Notes — Netcat Usage (Advanced)
In the basics edition, we covered how to use netcat’s basic reverse shell and bind shell.
⤷ Title: How Android Malware Makes Itself Unkillable and “Un”-Uninstallable
════════════════════════
𐀪 Author: carson12345
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:57:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #android #malware
════════════════════════
𐀪 Author: carson12345
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:57:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #android #malware
Medium
How Android Malware Makes Itself Unkillable and “Un”-Uninstallable
How is the Android malware stopping you from clicking the uninstall button? Why does it still run after you kill the app?
⤷ Title: From .env to RCE: Exploiting a Leaked Laravel APP_KEY
════════════════════════
𐀪 Author: Igniterobot
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:41:17 GMT
════════════════════════
⌗ Tags: #cve_2024_55556 #red_team #penetration_testing #php #laravel
════════════════════════
𐀪 Author: Igniterobot
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:41:17 GMT
════════════════════════
⌗ Tags: #cve_2024_55556 #red_team #penetration_testing #php #laravel
Medium
From .env to RCE: Exploiting a Leaked Laravel APP_KEY
Introduction
⤷ Title: HTB Giveback Writeup & Walkthrough
════════════════════════
𐀪 Author: The Mastermind Notes
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:48:19 GMT
════════════════════════
⌗ Tags: #tryhackme #hackthebox #cybersecurity
════════════════════════
𐀪 Author: The Mastermind Notes
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 12:48:19 GMT
════════════════════════
⌗ Tags: #tryhackme #hackthebox #cybersecurity
Medium
HTB Giveback Writeup & Walkthrough
⤷ Title: SIEM Explained: A Complete Guide to Security Information & Event Management (Log Collection…
════════════════════════
𐀪 Author: Cyber Wolf
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:05:10 GMT
════════════════════════
⌗ Tags: #blue_team #ethical_hacking #cybersecurity #soc #siem
════════════════════════
𐀪 Author: Cyber Wolf
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:05:10 GMT
════════════════════════
⌗ Tags: #blue_team #ethical_hacking #cybersecurity #soc #siem
Medium
🔐 SIEM Explained: A Complete Guide to Security Information & Event Management (Log Collection, Aggregation, Storage & Alerting)
Security Information and Event Management — better known as SIEM — is one of the most critical systems in modern cybersecurity. It…
⤷ Title: API SECURITY CONTROLS-Part2
════════════════════════
𐀪 Author: crązŷrąiɲ
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:42:52 GMT
════════════════════════
⌗ Tags: #api_security
════════════════════════
𐀪 Author: crązŷrąiɲ
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 11:42:52 GMT
════════════════════════
⌗ Tags: #api_security
Medium
API SECURITY CONTROLS-Part2
JSON Web Tokens (JWT)
⤷ Title: Privilege Escalation via Role Manipulation
════════════════════════
𐀪 Author: C0deRevenant
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 13:00:26 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #bug_bounty
════════════════════════
𐀪 Author: C0deRevenant
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 13:00:26 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #hacking #bug_bounty
Medium
Privilege Escalation via Role Manipulation
Last month I discovered a vulnerability in a private healthcare program that rewarded me $$$$ through their bug bounty program.
⤷ Title: Hackers Hide Pulsar RAT Inside PNG Images in New NPM Supply Chain Attack
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 13:08:04 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Malware #Cyber Attack #Cybersecurity #Developers #Images #NPM #PNG #Pulsar RAT #Steganography #Typosquatting #Windows
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 13:08:04 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Malware #Cyber Attack #Cybersecurity #Developers #Images #NPM #PNG #Pulsar RAT #Steganography #Typosquatting #Windows
Hackread
Hackers Hide Pulsar RAT Inside PNG Images in New NPM Supply Chain Attack
Cybersecurity researchers at Veracode reveal a typosquatting attack that disguises Pulsar RAT as images to bypass Windows security and antivirus programs.
⤷ Title: 6. WebSocket Authorization Bypass Vulnerability leads to $$$
════════════════════════
𐀪 Author: Abhijeet kumawat
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 14:46:01 GMT
════════════════════════
⌗ Tags: #ai #hacking #bug_bounty_tips #bug_bounty #infosec
════════════════════════
𐀪 Author: Abhijeet kumawat
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 14:46:01 GMT
════════════════════════
⌗ Tags: #ai #hacking #bug_bounty_tips #bug_bounty #infosec
Medium
6. WebSocket Authorization Bypass Vulnerability leads to $$$
Modern applications love WebSockets.
⤷ Title: Lab: CORS vulnerability with basic origin reflection(Portswigger Labs)
════════════════════════
𐀪 Author: Mukilan Baskaran
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 14:45:43 GMT
════════════════════════
⌗ Tags: #security #ethical_hacking #bug_bounty #hacking #cybersecurity
════════════════════════
𐀪 Author: Mukilan Baskaran
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 14:45:43 GMT
════════════════════════
⌗ Tags: #security #ethical_hacking #bug_bounty #hacking #cybersecurity
Medium
Lab: CORS vulnerability with basic origin reflection(Portswigger Labs)
This website has an insecure CORS configuration in that it trusts all origins.
⤷ Title: How I Bought a $1400 Jacket for Free Using a Business Logic Flaw
════════════════════════
𐀪 Author: Aashif
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 14:45:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #business_logic_flaw #bug_bounty #web_security #coding
════════════════════════
𐀪 Author: Aashif
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 14:45:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #business_logic_flaw #bug_bounty #web_security #coding
Medium
How I Bought a $400 Jacket for Free Using a Business Logic Flaw
Coupon code exploitation !!