⤷ Title: Zomato Privacy Flaw: How the ‘Friend Recommendations’ Feature Enables Location Stalking
════════════════════════
𐀪 Author: Jatin Banga
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:35:50 GMT
════════════════════════
⌗ Tags: #osint #cybersecurity #bug_bounty #bug_bounty_writeup #privacy
════════════════════════
𐀪 Author: Jatin Banga
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:35:50 GMT
════════════════════════
⌗ Tags: #osint #cybersecurity #bug_bounty #bug_bounty_writeup #privacy
Medium
Zomato Privacy Flaw: How the ‘Friend Recommendations’ Feature Enables Location Stalking
TL;DR: Zomato’s “Friend Recommendations” API allows unilateral contact syncing. By uploading a phone number, bad actors can extract a…
⤷ Title: I Found a Bug That Exposed Private Instagram Posts to Anyone.
════════════════════════
𐀪 Author: Jatin Banga
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:22:16 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #privacy #cybersecurity #penetration_testing #bug_bounty
════════════════════════
𐀪 Author: Jatin Banga
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:22:16 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #privacy #cybersecurity #penetration_testing #bug_bounty
Medium
I Found a Bug That Exposed Private Instagram Posts to Anyone.
In October 2025, I discovered a server-side vulnerability in Instagram that allowed completely unauthenticated access to private account…
⤷ Title: Chaining the Boredom: How a Quiet Weekday Led to a Full Database Heist
════════════════════════
𐀪 Author: k3rnelpan1c
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:18:40 GMT
════════════════════════
⌗ Tags: #infosec #penetration_testing #bug_bounty #cybersecurity #tryhackme
════════════════════════
𐀪 Author: k3rnelpan1c
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:18:40 GMT
════════════════════════
⌗ Tags: #infosec #penetration_testing #bug_bounty #cybersecurity #tryhackme
Medium
Chaining the Boredom: How a Quiet Weekday Led to a Full Database Heist
A ValenFind Walkthrough: Why “low” vulnerabilities are the key to Red Team success.
⤷ Title: Hackviser — Cryptanalysis walkthrough
════════════════════════
𐀪 Author: Mukilan Baskaran
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:17:45 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #security #ethical_hacking
════════════════════════
𐀪 Author: Mukilan Baskaran
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:17:45 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #security #ethical_hacking
Medium
Hackviser — Cryptanalysis walkthrough
CTF — Based
⤷ Title: HTTP Parameter Pollution (HPP)
════════════════════════
𐀪 Author: Lost_hacker
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:56:51 GMT
════════════════════════
⌗ Tags: #http_parameter_pollution #bugbounty_writeup #bug_bounty #parameter_pollution #hacking
════════════════════════
𐀪 Author: Lost_hacker
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:56:51 GMT
════════════════════════
⌗ Tags: #http_parameter_pollution #bugbounty_writeup #bug_bounty #parameter_pollution #hacking
Medium
HTTP Parameter Pollution (HPP)
1. Topic Overview — What, Why, Where, How, Which
⤷ Title: PostMessage Misconfiguration + AI Prompt Injection + Sandbox Escape = XSS & Data Exfiltration
════════════════════════
𐀪 Author: SJ_Source_Sink
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:40:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #prompt_injection_attack #bug_bounty #genai #bug_bounty_tips
════════════════════════
𐀪 Author: SJ_Source_Sink
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:40:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #prompt_injection_attack #bug_bounty #genai #bug_bounty_tips
Medium
PostMessage Misconfiguration + AI Prompt Injection + Sandbox Escape = XSS & Data Exfiltration
When three individually medium-severity issues chain together to compromise an AI assistant platform.
⤷ Title: XSS Bypass to Zero Click Account Takeover in AI Chatbot
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:37:07 GMT
════════════════════════
⌗ Tags: #report #bug_bounty #llm #cybersecurity #xss_attack
════════════════════════
𐀪 Author: Rahul Singh Chauhan
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:37:07 GMT
════════════════════════
⌗ Tags: #report #bug_bounty #llm #cybersecurity #xss_attack
Medium
XSS Bypass to Zero Click Account Takeover in AI Chatbot
Hi everyone, in this article, I’ll walk through a recent penetration test I conducted against a custom-built AI chatbot. As usual, we’ll…
⤷ Title: Chaining the Boredom: How a Quiet Weekday Led to a Full Database Heist
════════════════════════
𐀪 Author: k3rnelpan1c
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:18:38 GMT
════════════════════════
⌗ Tags: #infosec #penetration_testing #bug_bounty #cybersecurity #tryhackme
════════════════════════
𐀪 Author: k3rnelpan1c
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:18:38 GMT
════════════════════════
⌗ Tags: #infosec #penetration_testing #bug_bounty #cybersecurity #tryhackme
Medium
Chaining the Boredom: How a Quiet Weekday Led to a Full Database Heist
A ValenFind Walkthrough: Why “low” vulnerabilities are the key to Red Team success.
⤷ Title: Zero Trust for Oracle Fusion Cloud (ERP and HCM): SSO, MFA, and Conditional Access That Works in…
════════════════════════
𐀪 Author: Khader Nawaz khan
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:53:15 GMT
════════════════════════
⌗ Tags: #application_security #oracle #oracle_security #oracle_cloud
════════════════════════
𐀪 Author: Khader Nawaz khan
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:53:15 GMT
════════════════════════
⌗ Tags: #application_security #oracle #oracle_security #oracle_cloud
Medium
Zero Trust for Oracle Fusion Cloud (ERP and HCM): SSO, MFA, and Conditional Access That Works in the Real World
A security practitioner guide to harden Fusion Cloud access using strong federation, risk based MFA, device and network controls, and a…
⤷ Title: Team Work Makes The (CTF) Dream Work
════════════════════════
𐀪 Author: Amrit Arora - NoobMaster
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:36:42 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity #capture_the_flag #hacking #scriptctf
════════════════════════
𐀪 Author: Amrit Arora - NoobMaster
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:36:42 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity #capture_the_flag #hacking #scriptctf
Medium
Team Work Makes The (CTF) Dream Work
All you need to know to create and manage your CTF team
⤷ Title: Eavesdropper (THM) Tryhackme WriteUp
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:06:29 GMT
════════════════════════
⌗ Tags: #tryhackme #eavesdropping #hacking #privilege_escalation #cybersecurity
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:06:29 GMT
════════════════════════
⌗ Tags: #tryhackme #eavesdropping #hacking #privilege_escalation #cybersecurity
Medium
Eavesdropper (THM) Tryhackme WriteUp
Description : Listen closely, you might hear a password!
⤷ Title: Windows Forensics Artifacts: SRUM, Jump Lists, Recycle Bin, Search Index, RDP Cache, and Thumbnail…
════════════════════════
𐀪 Author: Sidhantchaurasiya
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:38:08 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #blue_team #disk_analysis #digital_forensics
════════════════════════
𐀪 Author: Sidhantchaurasiya
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:38:08 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #blue_team #disk_analysis #digital_forensics
Medium
Windows Forensics Artifacts: SRUM, Jump Lists, Recycle Bin, Search Index, RDP Cache, and Thumbnail…
Digital forensics investigations on Windows systems rely heavily on system artifacts that record user and system activity. Many of these…
⤷ Title: Active Directory Lab: From Setup to Golden Ticket & Defense ️
════════════════════════
𐀪 Author: Zyad Roshdy
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:07:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #active_directory #blue_team #infosec
════════════════════════
𐀪 Author: Zyad Roshdy
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:07:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #active_directory #blue_team #infosec
Medium
Active Directory Lab: From Setup to Golden Ticket & Defense 🛡️
By: Zyad Roshdy
⤷ Title: Red Teaming RAG Systems: Chaining Features for Maximum Impact
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:11:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #llm_security #penetration_testing #red_team #artificial_intelligence
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 03:11:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #llm_security #penetration_testing #red_team #artificial_intelligence
Medium
Red Teaming RAG Systems: Chaining Features for Maximum Impact
The dashboard looked perfectly normal.
⤷ Title: Active Directory : Basic Enumeration by TryhackMe — Write Up
════════════════════════
𐀪 Author: Alvinkurniawan
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:56:48 GMT
════════════════════════
⌗ Tags: #writeup #tryhackme #linux #active_directory #penetration_testing
════════════════════════
𐀪 Author: Alvinkurniawan
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:56:48 GMT
════════════════════════
⌗ Tags: #writeup #tryhackme #linux #active_directory #penetration_testing
Medium
Active Directory : Basic Enumeration by TryhackMe — Write Up
TryHackMe adalah platform pembelajaran keamanan siber yang menyediakan berbagai lab interaktif untuk mempelajari penetration testing…
⤷ Title: SQHell — When Every Input Is a Weapon
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:17:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #offensive_security #pentesting #ctf #tryhackme
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:17:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #offensive_security #pentesting #ctf #tryhackme
Medium
SQHell — When Every Input Is a Weapon
SQHell is a web-focused machine built around one core weakness: SQL injection everywhere.
⤷ Title: TryHackMe Writeup: AD Basic Enumeration
════════════════════════
𐀪 Author: Aiko Devy Ratnasari
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:02:32 GMT
════════════════════════
⌗ Tags: #password_spraying #smb_enumeration #active_directory #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Aiko Devy Ratnasari
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:02:32 GMT
════════════════════════
⌗ Tags: #password_spraying #smb_enumeration #active_directory #tryhackme #cybersecurity
Medium
TryHackMe Writeup: AD Basic Enumeration
Disini saya akan berbagi writeup dari room TryHackMe AD: Basic Enumeration. Room ini mengajarkan cara melakukan enumerasi jaringan Active…
⤷ Title: Inside a Real Cyber Attack: How Hackers Break Into Systems Step by Step
════════════════════════
𐀪 Author: Sam Writes Security
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:35:19 GMT
════════════════════════
⌗ Tags: #information_security #networking #technology #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Sam Writes Security
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 04:35:19 GMT
════════════════════════
⌗ Tags: #information_security #networking #technology #cybersecurity #ethical_hacking
Medium
Inside a Real Cyber Attack: How Hackers Break Into Systems Step by Step
Most people imagine hacking like a scene from a movie.
⤷ Title: Five Malicious Rust Crates and AI Bot Exploit CI/CD Pipelines to Steal Developer Secrets
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 10:42:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 10:42:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: jsleak: uncover secrets and links in JavaScript files or source code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 06:52:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #jsleak
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 06:52:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #jsleak
Penetration Testing Tools
jsleak: uncover secrets and links in JavaScript files or source code
jsleak is easy-to-use command-line tool designed to uncover secrets and links in JavaScript files or source code.
⤷ Title: Critical 9.8 CVSS Bypass Unearthed in HPE Aruba AOS-CX Switches
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 06:47:49 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AOS_CX #Authentication Bypass #Command Injection #CVE_2026_23813 #CVE_2026_23814 #Enterprise Switching #HPE Aruba #Infrastructure Security #network_security #Remote Code Execution #Tech News 2026
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 06:47:49 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AOS_CX #Authentication Bypass #Command Injection #CVE_2026_23813 #CVE_2026_23814 #Enterprise Switching #HPE Aruba #Infrastructure Security #network_security #Remote Code Execution #Tech News 2026
Daily CyberSecurity
Critical 9.8 CVSS Bypass Unearthed in HPE Aruba AOS-CX Switches
HPE Aruba patches a critical 9.8 CVSS bypass in AOS-CX switches that allows unauthenticated password resets. Upgrade to 10.17.1001+ to secure your network now.